Organizations that are larger, more digitally mature or in regulated industries requiring a higher level of cybersecurity assurance.
Cyber threats are evolving fast, demanding protection beyond basic controls. The Cyber Trust Mark, developed by the Cyber Security Agency of Singapore (CSA), recognizes organizations with mature, risk-based cybersecurity frameworks across classical IT, cloud, operational technology (OT) and artificial intelligence (AI). As a CSA-appointed certification body, we assess and certify your cybersecurity maturity, helping you demonstrate governance, resilience and leadership in Singapore’s SG Cyber Safe Programme.
Why choose Cyber Trust Mark certification with SGS?
- Demonstrate cybersecurity leadership
Show your ability to manage advanced cyber risks and earn recognition under Singapore’s SG Cyber Safe Programme.
- Strengthen governance and resilience
Enhance your cybersecurity maturity across 22 domains, covering governance, people, process and technology.
- Gain competitive recognition
Stand out as a trusted partner and enjoy potential benefits, such as insurance premium discounts.
- Access government funding
Qualify for CSA subsidies towards certification costs.
What is the certification process?
- Self-assessment
Evaluate your organizational maturity using CSA’s guided template.
- Pre-certification (optional)
Conduct a gap audit before the formal assessment.
- Independent assessment by SGS
Stage 1 – documentation review. Stage 2 – on-site verification.
- Certification awarded
Receive the Cyber Trust Mark, valid for three years.
- Surveillance audits
We provide annual audits to maintain certification validity.
CSA-recognized certification assessments from a trusted provider
As a CSA-appointed certification body and global cybersecurity leader, we combine international expertise with local insight.
You benefit from:
- Accredited auditors with deep expertise in cybersecurity governance and risk frameworks
- Comprehensive support, from readiness assessment to surveillance audits
- Recognition aligned with Singapore’s national cybersecurity standards
- A trusted pathway from Cyber Essentials to Cyber Trust certification

FAQs
Three years, with annual surveillance audits by SGS to ensure continued compliance.
Up to 22 domains across governance, people, process and technology, including risk management, training, access control and incident response.
We provide end-to-end support, from self-assessment and pre-certification checks to independent audits and renewals.
Eligible organizations can receive up to SGD 3,600 in CSA subsidies, depending on the number of endpoints and scope of certification. The funding support is deducted directly from certification fees charged by SGS and will remain available until February 6, 2028.
| Quantity of endpoints | Classical cybersecurity | Cloud security, OT security or AI security* |
|---|---|---|
| 1–10 | $1,375 | $225 |
| 11–20 | $1,375 | $225 |
| 21–50 | $1,675 | $225 |
| 51–100 | $1,875 | $225 |
| 101–200 | $2,250 | $450 |
*Funding support applies to each digital technology pillar, including cloud security, OT security and AI security.
Important notes:
- Funding support is applicable only for the first successful Cyber Trust Mark certification per organization
- Eligibility is limited to SMEs and Non-Profit Organizations (NPOs) incorporated in Singapore
- Applications must be submitted directly to SGS, your CSA-appointed certification partner
Cyber Essentials demonstrates baseline cyber hygiene, while Cyber Trust Mark recognizes advanced risk-based maturity for digitally mature organizations.
| Feature | Cyber Essentials Mark | Cyber Trust Mark |
|---|---|---|
| Target Organizations | SMEs, startups, businesses with limited IT or cybersecurity resources | Larger, digitally mature organizations, regulated sectors |
| Objective | Demonstrates adoption of baseline cybersecurity practices | Recognizes advanced, risk-based cybersecurity resilience |
| Scope | 5 essential areas: Assets, Secure/Protect, Update, Backup, Respond | Up to 22 domains across Governance, People, Process, and Technology |
| Feature | Cyber Essentials Mark | Cyber Trust Mark |
|---|---|---|
| Certification Validity | 2 years | 3 years |
| Ongoing Requirement | Re-certification after expiry | Annual surveillance audits |
| Funding Support | Subsidy deducted from SGS certification fees until February 6, 2028 | Subsidy deducted from SGS certification fees until February 6, 2028 |
| Maximum Funding Support | According to CSA’s Cyber Essentials table | Up to $3,600, depending on number of endpoints and certification scope |
| Benefits | Builds customer and partner confidence, establishes cybersecurity hygiene | Strengthens governance, compliance and risk management, recognition in SG Cyber Safe Programme, potential insurance premium discounts |
Contact us today. Our cybersecurity experts will help scope, assess and certify your organization.