
2025 ASIS CPP Exam Format & Content Outline: What’s New?
Securing a Certified Protection Professional (CPP) certification is a good step up for anyone working in security. The qualification has become a respected worldwide symbol of leadership and skill in security management, managed by ASIS International. We’ll examine the changes in the 2025 ASIS CPP exam, covering the structure, the subjects tested and the updates. The test is revised often by ASIS so it remains helpful and reflects the threats in the current security field.
Overview of the 2025 ASIS CPP Exam Format
Total Number of Questions:
You will find 200 multiple-choice questions on the exam in total. From those, 175 are actually scored questions, while the remaining 25 are unscored pretest questions. Pretest questions are put in the exam randomly and are used to prepare for what’s coming next, so you’ll never know which are unscored.
Duration:
It will take you 4 hours to finish the exam. You are given this period so that you can read, understand and respond to each question thoughtfully.
Question Type:
Each question gives you four possible answers to choose from. You must choose the right answer for each question. The questions aim to judge your understanding and your skill in using that understanding outside of the classroom.
Delivery Method:
Exam participants test through computer systems at Prometric centers. Some locations and individuals are eligible for remote proctoring, giving you the option to do your exam at home over the Internet.
Scoring Process and Passing Score:
The ASIS CPP exam follows a method of scaled scoring. Your raw answer count is turned into a scaled score which can fall between 200 and 800. You will only pass the test if your scaled score is at least 700.
What’s New in the 2025 Exam?
The 2025 ASIS CPP exam now covers the new challenges facing security management. ASIS International redesigns the exam content from time to time to reflect ongoing developments in the security field and emerging trends.
This year’s updates reflect the rising value of cybersecurity by including more sections on AI, surveillance analytics and drone security. The use of standardized risk frameworks such as ISO 31000, is growing, pointing to the need for proper ways to handle risk assessment.
Moreover, international case studies and global security standards are now included, acknowledging that security matters can happen anywhere in the world. Recent updates to DEI in security leadership highlight how important inclusion is within the sector.
ASIS CPP Exam Content Domains – Detailed Breakdown
Security Principles and Practices
It includes planning, creating, executing and overseeing security programs to secure what the organization owns. Such topics are organizational planning principles, establishing organization, control, security theory, techniques, processes (like those involving AI and IoT), industry standards for security (ASIS/ISO), regular assessment, continuous improvement steps, team efforts across job functions and Enterprise Security Risk Management (ESRM).
Business Principles and Practices
Its purpose is to bring security into the mainstream of company operations. It involves making a budget, managing money, obtaining needed equipment, handling contracts, planning the future and complying with security laws. Organizations should ensure security management matches their main objectives.
Investigations
It covers different types of investigations (internal, external, civil, criminal), learning how to conduct interviews, managing evidence and liaising with law enforcement. The main focus is on careful and fair investigations.
Personnel Security
What matters most is administrating employees to protect the organization’s interests. Issues covered are hiring background checks, overseeing insider threats, procedures for firing employees and compliance with regulations and rules. Keeping the trustworthiness and dependability of working personnel is essential.
Physical Security
This area handles areas like security perimeter, who can enter, environmental planning with CPTED, conducting safety audits and planning in case of emergencies. The objective is to protect the physical environment by design.
Information Security
This field is concerned with protecting information assets and includes data protection policies, basic cybersecurity, secured communication systems and managing what happens to data throughout its life. More reliance on digital systems means it’s important for companies to focus on this area for their stability.
Crisis Management
It involves business continuity planning, disaster recovery, strategies for communicating during crises and planning for managing incidents. The purpose is to maintain a stable company during challenging times.
Security Risk Management
Security Risk Management has been set up as a separate domain in ASIS CPP, due to its increased significance. It requires figuring out risks, managing them, relying on tools including risk matrices and heat maps and applying worldwide standards such as ISO and NIST.
If you’re preparing for the ASIS CPP exam, use the most recent versions of the Protection of Assets (POA) books and updated ASIS standards since they contain the most current information. Make sure the programs or classes you find claim that they’re designed for the 2025 edition. If your job requires full-time hours, work out a study plan you can stick to every week, even if it’s just a bit each day.