GEVA — GIAC Enterprise Vulnerability Assessor
**Status:** Officially in abeyance — no longer available for purchase, CPE renewal only. GIAC's enterprise vulnerability assessment certification — currently in abeyance, meaning no new exam vouchers are being sold, but existing holders can renew via CPE credits. The only GIAC/SANS certification dedicated specifically to vulnerability management, and DoD 8140 approved. SANS's associated course LDR516 (Strategic Vulnerability and Threat Management) continues to be offered but GEVA exam availability for new candidates has been suspended with no announced replacement or reactivation timeline. If you already hold GEVA, renew it. If you're a new candidate, this is not currently obtainable — plan around CySA+ or platform-specific certs instead.
| Issuer | GIAC / SANS Institute |
| Level | intermediate |
| Domains | Offensive Security, Vulnerability Management |
| Practical weight | 25% |
| Cost (USD) | 999 |
| Renewal | 4 years |
| DoD 8140 | Yes |
| Skills | enterprise_vulnerability_assessment, vulnerability_scanning_methodology, vulnerability_prioritization, risk_based_remediation, vm_program_management, vulnerability_reporting |
Official certification page
Browse all 426 cybersecurity certifications on EBCertMap