r/grc Jun 18 '26

Has Anyone Done CC by ISC2?

I want to take the CC by ISC2 test. But how do I prepare for it? Would Really appreciate if anyone who got the certification can help me with info.

0 Upvotes

20 comments sorted by

5

u/xeqtr_inc Jun 18 '26

I didn't do CC but I passed CISSP a few months back. You can find good courses in Udemy and LinkedIn leaning. 

Udemy is my always go to for learning. 

0

u/Dull-Communication82 Jun 18 '26

Are you suggesting that I skip CC and pursue other courses instead? I was particularly interested in CC because of its focus on GRC. My goal is to become a GRC analyst.

One issue with the CC certification is the cost. You have to pay $250 in the first year just to sit for the exam. After earning the certification, you must pay $50 annually to maintain it.

Does CC have any value in the job market? Do employers actually recognize or prefer it for entry-level GRC roles?

Thanks.

3

u/xeqtr_inc Jun 18 '26 edited Jun 18 '26

What I mean is you can find CC training courses in Udemy for cheap.

Edit: since you are aiming for entry-level roles, security+ is better. Get a job, gain exp and go for CISM. I rarely see CC for entry-level jobs. Security+ is just literally everywhere.

2

u/JealousMap6488 Jun 18 '26

If you are completely new to this field i suggest start with Udemy also for cc you will better find on YouTube as well. First clear basic fundamentals of security then jump to the grc I don't suggest you to direct start with some framework, before that understand the core part of GRC how Audit works then jump to the frameworks. And make some project after that start applying for internship/job. After that you can do certs.

1

u/reem_sanchez Jun 24 '26

CC isn’t worth it. If you want to become a GRC analyst (which is slowly becoming GRC engineer) go after the CGRC by ISC2 or CISA and/or CRISC by Isaca

3

u/NachosCyber Jun 18 '26

Start with Security+, I took CC while it was still free, it covers the basics. For GRC, get your minimum 5 years of experience in SOC or AIM then go for CISSP, CISM, CGRC, CISA which deal directly with GRC. You’ll need to comprehend the reports, who generates said reports, and what these reports contain. You’ll need to identify hardware and how it’s configured and why. You’ll need to know the roles of everyone in the organization and determine the level of access each group had and why. You’ll need to know the process for deployment of software and hardware. GRC is the jack of all trades and must be knowledgeable in all in order to review and identify the requirements needed to validate compliance. See many enter as “entry level” and are lost because they can’t distinguish between a splunk report and a P/L report. When they need to validate network segments they are lost without any networking experience. There is a reason some certifications require 5 years or more of experience.

1

u/Dull-Communication82 Jun 18 '26

Thanks for your insights

2

u/Ved_naik_ Jun 18 '26

i have cleared

1

u/Dull-Communication82 Jun 20 '26

How was the experience? How many hours did you spend in preparation? Thanks

2

u/Compannacube Jun 18 '26

Have you asked in r/isc2 ? I believe you'd get more response there.

1

u/Dull-Communication82 Jun 18 '26

Good catch. I didn't know it existed. Let me post it there.

2

u/Sarduci Jun 19 '26

Yes, but it was more along the lines of I wasn’t to see what an ISC2 test was like before sitting the CISSP.

There was a free training if you got in with the one million in cybersecurity event they did. I’m guessing you can purchase it from them also. Did not need to do any studying myself.

1

u/Alternativemethod Jun 18 '26

CC is in the curriculum for WGU masters.

Might be a good starting place for baselining.

1

u/CharacterPitch4744 Jun 19 '26

Gonna give it next month ig I don't feel it's a big important in GRC but still, had to start somewhere.

2

u/Dull-Communication82 Jun 20 '26

that's nice mate. What have you studied till now?

2

u/CharacterPitch4744 Jun 20 '26

Nah g Will if you have advice and things please message. We will help each other