ISACA can allow the same relevant CPE activity to support multiple ISACA certifications when the activity is applicable to each credential, but the activity must still satisfy the current rules for every certification to which it is applied.
Keep annual and cycle obligations separate
ISACA maintenance is not satisfied by looking only at a three-year total. Track the annual minimum, three-year CPE total, annual maintenance fee, ethics obligation, and any audit documentation as separate status checks.
Use the policy for the correct reporting period
ISACA has announced policy changes effective January 1, 2027. A future-policy rule should not be retroactively applied to an earlier reporting year; save the effective date beside the requirement you use.
When one activity supports more than one certification
Record the activity once, then document why it is relevant to each certification before applying it across credentials. Reconcile the final totals with MyISACA rather than assuming a local spreadsheet has accepted the activity.
Sources and verification
ISACA certification maintenance pages state a 20-CPE annual minimum and 120 CPEs over three years for major credentials such as CISA, CISM and CRISC.
Open official/current source ↗