Skip to content
Getting Digital
IBM certificationsIBM · online exam, not proctored

Cybersecurity Fundamentals

IBM's Cybersecurity Fundamentals teaches defence by starting with offence. Before it explains how organisations prevent, detect and respond to attacks, it spends time on who the attackers are, how they operate and which real incidents made headlines.

IBM files it under three-to-ten-hour courses; a single closing assessment demands 80 percent, and the Credly badge costs nothing.

Certificate facts

Level
Foundational
Field
Cybersecurity
Access
Free
Assessment
Online exam, not proctored
Passing score
80 % or higher on the end-of-course assessment
Languages
EnglishEnglish catalogue edition read; other language editions of this credential were not verified
Price
Free (read 26 September 2026)
Validity
never expires
Exam delivery
Online on IBM SkillsBuild with unproctored quizzes and assessments; badges issued through Credly

Prerequisites: None stated. A free SkillsBuild account is required; IBM labels the credential intermediate.

Renewal: None stated. The Credly badge template shows no expiry date

Source: certificate page at IBM · Price: IBM SkillsBuild courses and the Credly credential are free to registered users; the badge template is marked free (read 2026-09-26)

How to prepare

  1. 1. The vendor's free learning path

    IBM publishes the exam objectives and a learning path free of charge — the authoritative source for scope and weighting. Open the learning path (opens in a new tab)

  2. 2. The programme

    The certificate is earned inside this programme. Its facts, price and the provider's own page are on the course page; the link there carries no commission.

Affiliate disclosure: the course link above is an affiliate link — buying through them may earn us a commission at no extra cost to you. The vendor's learning path and booking links carry no commission.

Why the offence-first order works

Security taught as a list of controls tends to slide off. Security taught as a response to a particular adversary sticks, because every control then answers a question you have already asked. IBM's redesigned course leans into that. It opens with threat groups and their motives, moves through the tactics they use, with social engineering and phishing given real attention, and uses case studies of well-known breaches to show how small failures compound. Only then does it turn to strategy: layered defences, encryption, and the prevent, detect and respond cycle that frames most security work. A closing section looks at how AI is changing both sides of the contest, which is the newest material in the course.

FactAs IBM states it
EffortThree to ten hours
How it is earnedComplete the course and pass the final assessment
Pass mark80 percent or more
ProctoredNo
CostNone
ExpiryNone shown

One assessment, one standard

Unlike IBM's AI and data credentials, which gate the badge on a series of quizzes, this one rests on a single end-of-course assessment. That makes the 80 percent threshold carry more weight: a weak section cannot be offset by a strong module quiz earlier on. It is still an unproctored online test, and the badge is a record of completing IBM's course rather than a professional certification. The list of skills on the badge page, which includes incident response and vulnerability management, describes what the course introduces, not what a holder can do on the job.

  • Choose it if you want a security introduction that reads like a briefing on real attackers rather than a glossary.
  • Choose Cisco's course instead if you want a gentler start centred on your own devices and accounts, or do both, since they approach the field from opposite ends.
  • Choose neither if security operations is already your day job; the material will be familiar and the badge will add little.
  • Plan the next step before you finish. IBM offers longer security learning on the same platform, and a proctored vendor-neutral exam is what employers screen for.

IBM describes the credential as usable for further education towards security roles, and that is the right way to read it. It orients a newcomer, gives them a vocabulary that matches what security teams actually talk about, and makes the case for or against a longer commitment. That is a useful thing to have for no money and a few evenings.

A shared baseline for teams

The badge also works well as a shared baseline inside a team. Because it is free, short and needs no prerequisite, managers sometimes ask non-technical colleagues to complete it so that conversations about risk start from the same vocabulary. Used that way the unproctored assessment is not a weakness: nobody is being screened, and the 80 percent bar still means each person had to engage with the material rather than click through it. It also gives newcomers a common reference point when they later meet the same ideas in a proctored syllabus.

What a question looks like

Written by us in the exam's style. It is not a real question from any question bank, and we do not publish those.

A finance clerk receives a phone call from someone who knows the name of the chief financial officer, the company's bank and an invoice number, and asks for an urgent change to a supplier's payment details. Which attack technique does this most resemble, and which organisational control would most reliably stop it?

The details make the call credible, and the obvious answer is technical. The question rewards recognising a social-engineering pretext and choosing a process control, such as independent verification through a known channel, over a technology that would not see the call at all.

What it costs to get and to keep

ItemAmountNote
Course, assessment and credential0 USDfree to registered SkillsBuild users; the Credly badge template is marked free (read 26 September 2026)
Renewalnot publishednone stated; the badge template shows no expiry (read 26 September 2026)

How much preparation, from where you are

Security is new to you
The intended reader. The case studies make the course easy to follow; the cryptography section is where most newcomers slow down.
You work in general IT
The lower end of the estimate is realistic. The attacker-profile material may be the part you have not seen organised this way before.
You are aiming at a proctored security exam
A free orientation, not preparation. The exam will expect far more detail on controls, architecture and operations.

What passing this does not prove

  • Any hands-on skill such as configuring security tools or analysing logs.
  • Your identity, since the assessment is unproctored.
  • Networking knowledge beyond what the course introduces.
  • Performance under the time pressure of a real incident.

Against the alternatives

CompTIA Security+ (SY0-701)
CompTIA's paid and supervised exam is what security recruiters search CVs for. IBM's course is a free way to learn the language and find out whether the field suits you before committing to Security+ preparation.
Introduction to Cybersecurity
Cisco's free course starts with personal security and reaches the organisation later; IBM's starts with the attacker. Similar effort, similar weight, different angle. Doing both is cheap and gives a rounder picture.

Cybersecurity Fundamentals — quick answers

Is IBM Cybersecurity Fundamentals free?

Yes. Registered SkillsBuild users pay nothing for any part of it, badge included.

What score do I need?

The badge page sets the bar at eighty percent on the closing assessment.

How long does it take?

The catalogue filter groups it with courses of three to ten hours. Beginners who read the case studies carefully tend towards the upper end.

Is it better than Cisco's free security course?

Neither is better; they differ in angle. Cisco begins with your own digital life, IBM with the attacker. Both are free, both end in an unproctored test, and both are introductions rather than qualifications.

Will this badge get me a security job?

Not on its own. It shows initiative and gives you vocabulary. Employers hiring for security roles expect proctored certifications and evidence of practical work.

Where this certificate sits in the field

What comes next

Concepts this certificate draws on

Glossary entries with the reason each one matters for Cybersecurity Fundamentals.

A vendor certificate — not a degree and not an accredited qualification. Facts are from the vendor's exam page on the date shown; prices are list prices that vary by country and tax.

Last reviewed 26 September 2026 · Getting Digital