Internship project: Automation of Threat Modelling methodology using LLM/AI

Intern, Cybersecurity Programme Centre (CSPC)
Cyber Security Agency of Singapore
InternshipClosed
What the role is
What you will be working on
The successful candidate will explore the automation of the threat modelling methodology (based on MITRE ATT&CK framework), which is currently used by CSPC as part of our risk assessment approach for WOG via LLM/AI means.
This is carried out by:
- Identifying the latest trends in LLM/AI and see how it can apply to CSPC to increase our productivity.
- Exploring if CSPC can adopt some of these latest trends in LLM/AI to automate our current threat modelling methodology (based on MITRE ATT&CK framework) to act as an initial draft for the consultants to work on further. One challenge foreseen was whether the LLM/AI has the ability to ingress the system architecture uploaded and generate the potential attack paths based on the MITRE ATT&CK framework.
What we are looking for
- Degree/Diploma in Computer Science/Business Analytics/Computer Engineering
- Subject knowledge in the field of cybersecurity is preferred
- Has experiences with MITRE ATT&CK framework and LLM/AI coding
- Interns who can join from September 2025 onwards (6 months minimum commitment)
About Cyber Security Agency of Singapore
About the Cyber Security Agency of Singapore
Established in 2015, the Cyber Security Agency of Singapore (CSA) seeks to keep Singapore’s cyberspace safe and secure to underpin our Nation Security, power a Digital Economy and protect our Digital Way of Life. It maintains an oversight of national cybersecurity functions and works with sector leads to protect Singapore’s Critical Information Infrastructure. CSA also engages with various stakeholders to heighten cyber security awareness, build a vibrant cybersecurity ecosystem supported by a robust workforce, pursue international partnerships and drive regional cybersecurity capacity building programmes. CSA is part of the Prime Minister’s Office and is managed by the Ministry of Digital Development and Information. For more news and information, please visit www.csa.gov.sg
About your application process
If you do not hear from us within 4 weeks of the job ad closing date, we seek your understanding that it is likely that we are not moving forward with your application for this role. We thank you for your interest and would like to assure you that this does not affect your other job applications with the Public Service. We encourage you to explore and apply for other roles within Cyber Security Agency of Singapore or the wider Public Service.