MYCPE ONE

CSX Cybersecurity Practitioner (CSX-P) Continuing Professional Education (CPE) Requirements

Know Your Requirement

CSX Cybersecurity Practitioner (CSX-P) CPE Requirements Overview

Last Reviewed on: 20 Mar, 2026

CPE Requirements

Earn at least 20 CPE hours each year and at least 120 CPE hours over each 3-year period.

License Renewal Period

Maintenance is ongoing on an annual basis, with continuing compliance also measured over a 3-year certification cycle.

CPE Reporting Cycle

The annual reporting period begins on 1 January of each year. The three-year certification period varies and is indicated on each annual invoice and on the letter confirming annual compliance.

Ethics Requirement

No minimum ethics requirement.

Carry Over Credits

Carry forward of credits is not allowed.

Subject Area Restriction

At least 10 of the 20 annual hours must be skills-based training or lab activities.

Need guidance with compliance requirements?

Speak with our Compliance Advisor

compliance requirements

Simplifying Regulations for 2026

CPE Requirement

Complete 20 CPE hours each year and 120 CPE hours over each 3-year period. At least 10 annual hours must be skills-based training or lab activities.

Ethics Requirement

No minimum ethics requirement.

Initial CPE Hours

The public CSX-P maintenance pages reviewed do not clearly publish a separate proration rule for newly certified holders. Check your MyISACA dashboard for your exact annual and 3-year requirements.

Subject Areas

Qualifying learning should strengthen CSX-P-related cybersecurity knowledge and tasks across the identify, protect, detect, respond, and recover functions. Click here for more information.

Learning Modes

100% of CPD can be through self-study.

Eligible Learning Activities

Accepted activities include ISACA and non-ISACA training, self-study courses, teaching or presenting, publications, exam question development, passing related professional examinations, work on ISACA boards or committees, contributions to the profession, and mentoring. Published annual caps include vendor sales presentations 10 hours, boards or committees 20 hours, contributions to the profession 20 hours, and mentoring 10 hours. View more.

CPE Deadline

January 1 to 31 December annually.

Fast Track CPE

Our Fast Track CSX Cybersecurity Practitioner (CSX-P) CPE packages are expertly curated bundles that meet CSX Cybersecurity Practitioner professionals' exact continuing education requirements. Save significant time selecting individual courses by choosing our comprehensive packages that cover all your CPE needs. Visit site

Reporting Period

ISACA applies both an annual requirement and a 3-year certification cycle. The verification tool notes that the certificate expiration date reflects the 3-year cycle, while annual requirements must still be met each year.

License Renewal

To keep CSX-P active, meet the annual and 3-year CPE requirements, pay the annual maintenance fee, comply with the audit if selected, and follow ISACA's ethics rules. Failure to comply can lead to revocation.

Carry Over Credits

Carry forward of excess CE is not allowed.

Record Retention

Retain supporting documentation for 12 months after the end of each 3-year reporting cycle.

Renewal Fees

The annual maintenance fee is US$45 for ISACA members and US$85 for non-members. Approved reinstatement appeals also require any outstanding maintenance fees plus a US$50 reinstatement fee. Read more.

Do MYCPE ONE Courses Qualify for CSX Cybersecurity Practitioner (CSX-P)? Yes

ISACA’s public CSX-P maintenance rules describe an activity-based CPE framework. The official pages reviewed focus on relevance to CSX-P job-related knowledge, documentation, annual and 3-year totals, and the separate skills-based lab requirement. They do not identify a public third-party provider pre-approval registry for CSX-P CPE.

MYCPE ONE courses may qualify when the learning is directly relevant to CSX-P-related cybersecurity work and proper completion records are retained. They may support general annual CPE through formats such as:

  • Group Internet-Based,
  • QAS Self-Study
  • E-book

For convenient access to our courses, Click here to explore the MYCPE ONE course catalog. We offer an all-inclusive subscription model, similar to Netflix, where a single subscription gives you access to the most extensive online course catalog. Plus, our subscription rates are 60% lower than other platforms. Subscribe today!

Contact Information for ISACA

ISACA Global
1700 E. Golf Road, Suite 400
Schaumburg, Illinois 60173, USA
Telephone: 1-847-253-1545
Customer Support: 1-847-660-5505
Fax: 1-847-253-1443
Support: Submit a Ticket
Website: Visit site

We Review CPE Compliance Requirements Every Twelve Months

At MYCPE ONE, we are committed to providing professionals across all designations with the most accurate and up-to-date continuing education information. Our team reviews and updates the CPE requirement information for CSX Cybersecurity Practitioner (CSX-P) every twelve months to reflect the latest standards and policies set by ISACA.

While we work diligently to ensure accuracy, we encourage professionals to confirm the requirements directly with their respective boards or credentialing authorities through the official links provided here.

Get Started with Unlimited Learning

Select your plan, complete your payment, and access a world of knowledge.

NEW YEAR
Sale Ends Soon!

Get Started Today

Start your journey towards learning and compliance.

card

$299$199 For 12 Months

Your information is securely encrypted using SSL

Get Started Today

Click Here

More Reasons to Subscribe

  • true true

    80% of Content Rated 4.5+ Stars

    High-quality content rated by professionals.
  • true true

    4X More Content at 1/3rd the Price

    Serious value compared to your regular provider!
  • true true

    Non-Sponsored Content

    Purely educational, unbiased content for your learning.
  • true true

    Monthly & Quarterly Updates

    Keeping you ahead of trends and changes.
  • true true

    Podcasts with Industry Leaders

    Learn and Earn CPE from experts on the go.
More Reasons

CSX Cybersecurity Practitioner (CSX-P) CPE Compliance

All-in-one package to fast-track your CSX Cybersecurity Practitioner (CSX-P) compliance, saving time and effort.

Frequently Asked Questions

CSX-P holders must earn and report at least 20 CPE hours each year.

Yes. CSX-P holders must earn and report at least 120 CPE hours over each 3-year period.

At least 10 of the 20 annual hours must be skills-based training or lab activities.

No. ISACA states that the CSX-P certification is retired, but maintenance remains available for existing holders.

No minimum ethics requirement.

Qualifying activities include ISACA and non-ISACA professional education, structured self-study with a certificate of completion, conferences, seminars, workshops, university courses, teaching, publishing, exam question development, and certain professional contributions.

Yes. Structured self-study courses and on-demand learning can count when they are relevant, properly documented, and meet ISACA’s qualifying activity rules.

The public CSX-P pages reviewed do not publish a percentage cap for self-study. You must still meet the separate 10-hour annual skills-based training or lab requirement.

Yes. ISACA states that the same professional activity may count toward multiple ISACA certifications when it is applicable to the job-related knowledge of each certification.

Keep independent proof such as a certificate of completion, attendance roster, letter, verification form, or similar attestation showing the attendee's name, sponsor, activity title, description, date, and hours claimed.

Documentation should be retained for 12 months after the end of each 3-year reporting cycle.

ISACA states that failure to comply with maintenance requirements or a selected annual CPE audit can result in revocation of the CSX-P certification.

A revoked certification may be appealed for reinstatement. If approved, the holder must pay outstanding maintenance fees plus a US$50 reinstatement fee; if not approved, the individual must re-take the exam and re-apply.

The annual maintenance fee is due by 1 January and renews the certification through the upcoming calendar year.