CSA (Cyber Security Agency) - Page 49 - Salary.sg Forums
Salary.sg Forums  

Go Back   Salary.sg Forums > The Salary.sg Discussion Forums: > Companies

Companies Discuss companies and organisations.




CSA (Cyber Security Agency)

Reply
 
Thread Tools
  #481 (permalink)  
Old 20-04-2022, 10:29 PM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
CSA deals w nation threat actors. Not many agencies do that. Its an interesting scope not found elsewhere.
govtech deals with state sponsored threat actors / apt groups also

c2 sector lead for sg govt is govtech

tension btw csg and csa when csa first launched over scope of work



Primary School English Grammar and Vocabulary Drills
Primary School English Grammar and Vocabulary Drills


SG Bus Timing App
SG Bus Timing App - the best bus app - available on iOS and Android


Bursa Stocks Android App - check share prices
Bursa Stocks [Android] App - check latest share prices on the go


SGX Stocks Android App - check share prices
SGX Stocks [Android] App - check latest share prices on the go


SGX Stocks for iPad - check latest Singapore share prices
SGX Stocks [iPad] app
| SGX Stocks [iPhone] app
Reply With Quote
  #482 (permalink)  
Old 20-04-2022, 10:30 PM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
CSA deals w nation threat actors. Not many agencies do that. Its an interesting scope not found elsewhere.
this might be true but you cant deny govtech's branding to other tech firms and to other CS as well. maybe not all teams in GT but surely advanced cybersecurity capabilities in GT is quite renowned arguably more so than CSA or HTX.

Reply With Quote
  #483 (permalink)  
Old 20-04-2022, 10:37 PM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
this might be true but you cant deny govtech's branding to other tech firms and to other CS as well. maybe not all teams in GT but surely advanced cybersecurity capabilities in GT is quite renowned arguably more so than CSA or HTX.
yes and top tier talent among whom is the infamous president scholar and top hackerone and top mindef bug bounty boy spaceraccoon

google him

Reply With Quote
  #484 (permalink)  
Old 20-04-2022, 10:43 PM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
this might be true but you cant deny govtech's branding to other tech firms and to other CS as well. maybe not all teams in GT but surely advanced cybersecurity capabilities in GT is quite renowned arguably more so than CSA or HTX.
Heard ACC has quite a number of uni valedictorians there... crazy competition
Reply With Quote
  #485 (permalink)  
Old 20-04-2022, 10:47 PM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
Heard ACC has quite a number of uni valedictorians there... crazy competition
Turnover at GT is also crazy. Obviously not a bed of roses.
Reply With Quote
  #486 (permalink)  
Old 20-04-2022, 10:52 PM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
Turnover at GT is also crazy. Obviously not a bed of roses.
Yea but CSG is quite good already based on the stats at the last GTechCon
Reply With Quote

  #487 (permalink)  
Old 21-04-2022, 07:22 AM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
Yea but CSG is quite good already based on the stats at the last GTechCon
Depends what an individual wants. No judgement. Pick the agency that you are keen. CSA has its pro too if the scope is what one is looking for. At least people are nice.
Reply With Quote
  #488 (permalink)  
Old 21-04-2022, 10:54 AM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
seeing a lot of comments regarding the CSDP scheme, my 2c and general feedback

pros:
+basic salary 4.x
+training opportunities (good)
+occasional training with reputable organisations and strategic partners
cons:
-training opportunities (bad)
-free certs with that grant absolutely no recognition in places that are worth their salt (CEH is seen as a negative value for some orgs)
-honestly speaking you might be better off paying your own and getting better intro level certs, it's not that expensive
-no autonomy in training, you are sent for training without your consulation on your interests or based what you already know
-not much hands on as we are a regulator, no getting your hands on data (see below)
-usually no visibility into what other parts of CSA are doing

summary:
-might be ok to start, but don't stay here too long

general csa:

+either plenty of free time and work-life balance or very busy depending on department
+strategic partnerships with many organisations
+training opportunities

-for technical folks, total annual salary packages are below market rate and will never keep up with inflation, especially for technical farmers
-bonus takes up large % of total compensation, depends on your performance grade/rating
-grades are given out on a bell curve, but technical people are not valued here, scholars and eunuchs are and they get most of the good performance grades
-demographics and DNA of this organization's senior and middle management are heavily skewed towards ex-military personnel spending the bulk of their career in non-cyber domains
-people with actual technical cyber experience in private sector are in an minority-most that join do not stay long, you will most likely not be able to learn and experience technical mentorship and guidance
-as the regulator, it is by design that they do not own any assets, and this means you will not be able to do pentests, take concrete and measurable interactions on threat intel, perform threat hunting at will or investigate incidents with any meaningful frequency
-thus for those looking to do actual cyber work, your amount of hands-on experience/year here will be a fraction of what you gain while working in other firms
-your work duties here will include usually include 1 or usually several other miscellaneous tasks not related to cybersecurity, as with any other civil service job-there is no concept of a purely technical role
-knowledge management in most teams/departments is very poor and almost non-existent across teams/divisions
-knowledge exists mostly in email, and old-timers just keep all the information to themselves
-knowledge sharing internally is few and far between, culture does not reward and encourage the rare few that try to do this
-they are in cybersecurity but they have little to no software dev capability internally, large reliance on external vendors and being at their mercy
-significant % of middle management and permstaff are happy to coast and farm the salaries here and show no drive to innovate
-the average tenure here is less than 2 years but they conduct employee surveys less frequently than that, and draw flawed conclusions about sentiment and effectiveness of policies
-new joiners are increasingly forming a large % of the organisation via the CSDP program, some departments have also given up hiring people from private sector
+new joiners are inexperienced but enthusiastic compared to the average permstaff
-WFH % will only decrease as COVID eases up, management tends to like to see staff in office
-internet surfing separation means that you will have to carry 2 laptops everywhere you go to work effectively, you will not be provided a separate internet machine-source your own.

this place is what it is, if you feel like you are stagnating or not growing just leave.
infosec roles are in major shortage right now at all levels
Let's not forget that there are specialisation cert given as well after the foundational phase.
Many went on to acquire OSCP, CREST, CRT, CISSP, CRISC n Cloud Certs at the end of the programme.
Reply With Quote
  #489 (permalink)  
Old 21-04-2022, 01:21 PM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
seeing a lot of comments regarding the CSDP scheme, my 2c and general feedback

pros:
+basic salary 4.x
+training opportunities (good)
+occasional training with reputable organisations and strategic partners
cons:
-training opportunities (bad)
-free certs with that grant absolutely no recognition in places that are worth their salt (CEH is seen as a negative value for some orgs)
-honestly speaking you might be better off paying your own and getting better intro level certs, it's not that expensive
-no autonomy in training, you are sent for training without your consulation on your interests or based what you already know
-not much hands on as we are a regulator, no getting your hands on data (see below)
-usually no visibility into what other parts of CSA are doing

summary:
-might be ok to start, but don't stay here too long

general csa:

+either plenty of free time and work-life balance or very busy depending on department
+strategic partnerships with many organisations
+training opportunities

-for technical folks, total annual salary packages are below market rate and will never keep up with inflation, especially for technical farmers
-bonus takes up large % of total compensation, depends on your performance grade/rating
-grades are given out on a bell curve, but technical people are not valued here, scholars and eunuchs are and they get most of the good performance grades
-demographics and DNA of this organization's senior and middle management are heavily skewed towards ex-military personnel spending the bulk of their career in non-cyber domains
-people with actual technical cyber experience in private sector are in an minority-most that join do not stay long, you will most likely not be able to learn and experience technical mentorship and guidance
-as the regulator, it is by design that they do not own any assets, and this means you will not be able to do pentests, take concrete and measurable interactions on threat intel, perform threat hunting at will or investigate incidents with any meaningful frequency
-thus for those looking to do actual cyber work, your amount of hands-on experience/year here will be a fraction of what you gain while working in other firms
-your work duties here will include usually include 1 or usually several other miscellaneous tasks not related to cybersecurity, as with any other civil service job-there is no concept of a purely technical role
-knowledge management in most teams/departments is very poor and almost non-existent across teams/divisions
-knowledge exists mostly in email, and old-timers just keep all the information to themselves
-knowledge sharing internally is few and far between, culture does not reward and encourage the rare few that try to do this
-they are in cybersecurity but they have little to no software dev capability internally, large reliance on external vendors and being at their mercy
-significant % of middle management and permstaff are happy to coast and farm the salaries here and show no drive to innovate
-the average tenure here is less than 2 years but they conduct employee surveys less frequently than that, and draw flawed conclusions about sentiment and effectiveness of policies
-new joiners are increasingly forming a large % of the organisation via the CSDP program, some departments have also given up hiring people from private sector
+new joiners are inexperienced but enthusiastic compared to the average permstaff
-WFH % will only decrease as COVID eases up, management tends to like to see staff in office
-internet surfing separation means that you will have to carry 2 laptops everywhere you go to work effectively, you will not be provided a separate internet machine-source your own.

this place is what it is, if you feel like you are stagnating or not growing just leave.
infosec roles are in major shortage right now at all levels

So are u still there?
Reply With Quote
  #490 (permalink)  
Old 21-04-2022, 02:21 PM
Unregistered
Guest
 
Posts: n/a
Default

Quote:
Originally Posted by Unregistered View Post
Let's not forget that there are specialisation cert given as well after the foundational phase.
Many went on to acquire OSCP, CREST, CRT, CISSP, CRISC n Cloud Certs at the end of the programme.
How is it that this is your only takeaway from what the above poster said? At this point its less about the actual certs obtained (as above OP mentioned u can take up more relevant ones yourself) and more about the agency and brand equity as a whole.

Dont miss the forest for the trees my friend.
Reply With Quote
Reply

Bookmarks

« Previous Thread | Next Thread »

Posting Rules
You may not post new threads
You may post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Question about CAT 1 security clearance juniordude Income and Jobs 7 03-09-2021 12:41 PM
Security Guard Makes 4k Salary.sg Income and Jobs 8 26-06-2021 10:57 PM
Cyber Security Associates and Technologists (CSAT) Programme Valkyrie Income and Jobs 0 13-05-2018 01:54 PM
IT Security Job Prospects nautilus Income and Jobs 15 25-03-2016 12:59 AM
Trainer at Security Institute (SII) borderlands Education and Personal Growth 0 28-12-2014 09:29 PM

» 30 Recent Threads
Q: Big4 - Yearly salary increment ( 1 2 3... Last Page)
16,195 Replies, 5,124,847 Views
Roles in accenture singapore ( 1 2 3... Last Page)
7,701 Replies, 2,401,342 Views
HTX (Home Team Science and... ( 1 2 3... Last Page)
833 Replies, 393,082 Views
How is life as a doctor in... ( 1 2 3... Last Page)
7,360 Replies, 3,474,081 Views
IMDA (under MCI) ( 1 2 3... Last Page)
1,288 Replies, 642,639 Views
DSTA (under Mindef) ( 1 2 3... Last Page)
1,514 Replies, 1,407,505 Views
Work culture in IHiS ( 1 2 3... Last Page)
728 Replies, 557,175 Views
AML/Compliance/KYC professionals... ( 1 2 3... Last Page)
1,855 Replies, 1,246,339 Views
Factual Local Bank Salaries - DBS... ( 1 2 3... Last Page)
1,832 Replies, 1,453,867 Views
Banks' Pay and Bonuses ( 1 2 3... Last Page)
558 Replies, 507,192 Views
GovTech ( 1 2 3... Last Page)
5,892 Replies, 2,325,467 Views
Career as Teacher ( 1 2 3... Last Page)
11,223 Replies, 6,865,301 Views
Civil Svc/ Statboard - Typical... ( 1 2 3... Last Page)
6,176 Replies, 3,817,540 Views
Ex-MOE Teachers ( 1 2 3... Last Page)
420 Replies, 504,010 Views
LTA (Land Transport Authority) ( 1 2 3... Last Page)
759 Replies, 418,675 Views
Lawyer Salary ( 1 2 3... Last Page)
21,179 Replies, 10,492,341 Views
Julius Baer Graduate Program 2023 ( 1 2 3... Last Page)
32 Replies, 17,365 Views
MAS for Mid Career Professionals ( 1 2 3... Last Page)
2,061 Replies, 1,093,626 Views
ST Electronics ( 1 2 3... Last Page)
3,818 Replies, 1,584,402 Views
NCS (SingTel subsidiary) ( 1 2 3... Last Page)
1,353 Replies, 1,170,469 Views
MINDEF DXO (All FAQ on it) ( 1 2 3... Last Page)
5,905 Replies, 4,740,048 Views
NUS (National University of... ( 1 2 3... Last Page)
324 Replies, 329,339 Views
Compare civil service salary ( 1 2 3... Last Page)
16,444 Replies, 12,622,282 Views
Civil Service Performance Bonus ( 1 2 3... Last Page)
5,426 Replies, 4,856,341 Views
Working in SMRT ( 1 2 3... Last Page)
41 Replies, 59,208 Views
ITE Polytechnic Scheme ( 1 2 3... Last Page)
331 Replies, 381,794 Views
Work culture in CPF board ( 1 2 3... Last Page)
35 Replies, 78,430 Views
DBS tech seed programme ( 1 2 3... Last Page)
3,768 Replies, 1,521,597 Views
UOB Management Associate Program ( 1 2 3... Last Page)
1,489 Replies, 808,628 Views
Maritime and Port Authority of... ( 1 2 3)
20 Replies, 20,410 Views
Powered by vBadvanced CMPS v3.2.2



All times are GMT +8. The time now is 08:45 PM.


Powered by vBulletin® Version 3.8.5
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.3.2