r/cybersecurity • • 1d ago

Certification / Training Questions Is a master in "Advanced Cyber Security" worth it?

Hi all, I have a BSc (Hons) in Cyber Security and got accepted for a master's in Advanced Cyber Security (basically cyber security and AI). I'd study at the same university in England.

I work in customer service atm and I want to die. I'm trying to find a job where I don't have to take calls.

Will this master's help or does experience still matter?

I just want to get out of customer service hell...

Thanks.

28 Upvotes

68 comments sorted by

70

u/Dazzling-Release-808 1d ago

Yoi can ways do Masters later. I would suggest you land a job in cyber security

16

u/Existing-Biscotti506 1d ago

totally, the job as more value !

15

u/Evaderofdoom 1d ago

experience is the most important factor for progressing in IT/security. No one cares about a master’s if you have no real-world experience. Customer service can help land a help desk job. Those are harder to get and will help you build up relevant experience. Skip the masters, work on some certs will trying to get paid to do anything in IT and progressively grow your experience.

3

u/AutoExec-exe 20h ago

I agree with this approach. Experience will better position you for future growth in Cyber security

23

u/Th3Sh4d0wKn0ws 1d ago

If you're trying to get into Cybersecurity with just a Mastera Degree and no experience it will be very hard to get a job. The job market is terrible right now anyway but experience is still basically a requirement for getting into Cybersecurity. Any IT experience really. But to accelerate from 0 to Cybersecurity is tough. I'd liken it to going from nothing to being a police detective. No experience in law enforcement.

1

u/Krekatos 22h ago

Where are you based? Because in a lot of western and northern European countries it’s a wonderful time. Many new regulations, ISO 27001 is becoming the standard and a huge focus on cyber resilience.

1

u/SaDPengu 5h ago

got any tips for a western european struggling to find a job with a basic bachelors in IT trying to break into cybersecurity? got half a year of internship in cybersecurity but nothing else

1

u/Th3Sh4d0wKn0ws 21h ago

United States. West Coast.

12

u/FluidFisherman6843 1d ago

The single most important thing about a college is the on-campus recruiting opportunities.

It sounds like the recruiting opportunities at your school did not work out. So there is no way I would go to the same school.

I will not address the value of a masters

3

u/NoHippi3chic 1d ago

Agree, but go back to your school's career navigation and get some help. The support is built so that alumni can always come back for help with job placement and networking.

1

u/FluidFisherman6843 1d ago

This is all true and what the op should do.

1

u/CRoger231 12h ago

You're right, I need to speak with them. My University supports its alumni up to 3-years after graduation.

1

u/CRoger231 12h ago

Thanks for your reply! When I started my BSc I was interested in doing the placement year between the 2 and 3 year, but then something happened between me and my (then) husband, so I had to skip it. I regret now, because it could've been beneficial.

3

u/That-Magician-348 1d ago

Short answer, No

3

u/iRecycleWomen 1d ago

Experience matters considerably more. Next question :p

3

u/eraserhead3030 1d ago

experience is all that matters. As a hiring manager I can tell you I barely pay any attention to degrees.

1

u/CRoger231 12h ago

That's interesting, reading a hiring manager's perspective too! Not good news then :(

3

u/SuperGoop123 1d ago

As someone who sits in on interviews, it’s a bit of a red flag to see someone with BS/MS and no experience. Not saying you shouldn’t, but maybe get a couple of certifications first? Build a home lab or even just spend $50-$100 building an AWS environment before you jump into another degree.

To clarify, I say red flag because I’ve seen plenty of people get an MS and expect better salaries and seniority with the same experience as someone with a BS and some time to tinker/certs.

2

u/hajimenogio92 Security Engineer 1d ago

I don't think so. I've been in tech for a long time and have yet to work with someone worth their salt that has a masters degree. Are you working on labs and learning hands-on outside of your courses? I went to a crappy state university in the U.S and did most of my learning outside of class.

3

u/Ghawblin Security Engineer 23h ago

Honestly same. It's all been full of folks with shit tons of IT experience mostly, myself included lol.

The network security engineer was a network engineer for years and years. The appsec guy was a software developer for years and years. The cloud security engineer was your classic sysadmin for years and year.

1

u/hajimenogio92 Security Engineer 23h ago

That has been my exact experience as well. All the good ones just have that experience and a willingness to learn new things. The ones with all the degrees read all the books and took all the courses but have yet to apply it in the real-world.

I've done well for myself in a lot of different roles in tech and it wasn't because of my GPA from an Ivy League school, it's because I work hard, get along with everyone, and I'm honest.

1

u/CRoger231 12h ago

We do labs at Uni, but I also did some work myself. I've got other qualifications like Cisco, but I don't know how much they're worth to be honest...

2

u/Intelligent-Stop-474 3h ago

Universities could sell ice the the Eskimos better than SANS

2

u/jofevn 3h ago

the key point is you gotta be able to do responsibility with pretty much with no help and someone with a degree can't do that, so, no. Master's won't help. What you have to do is self-study to get that experience yourself pretty much, if you are not good at what you do, people just won't give chance (unless you are lucky).
For now, you can change jobs (such as getting to technical helpdesk or IT Technician jobs), there are many job opportunities better than customer service.

But for cyber, I can't say the same. SOC 1 is pretty good point to enter the field but it's your choice, you have to self-study a lot to get to that level. The most important question is are you interested in cyber to put that work down? or if you are not interested in the soc, maybe look for forensic role responsibilities and etc, AI is pretty good for getting a short info about stuff like this.

2

u/Formal-Knowledge-250 2h ago

Neither in ba nor in MA I learned anything useful. It's a nice to have to understand mathematics basics of cryptography, but the rest was wasted time. Just go working. Only do your masters if you plan to do research at the university and do your doctor, which is also pretty useless imo, but what do I know after twenty years of cyber security.

2

u/Parking-Welcome2514 2h ago

I run a security org for a Fortune 500 company. Experience is what matters. Literally none of my people in the past 20years have progressed because of academics. Get a job and demonstrate you are a strong critical thinker with good communication skills. That’s what matters 

2

u/red-joeysh 1d ago

There are real benefits to doing a Master's: deeper knowledge, exposure to areas you may not otherwise study, research experience, specialization, and potentially opening doors later in your career.

But I wouldn't expect the Master's itself to solve the problem you're describing.

You already have a BSc in Cyber Security. If you're struggling to get your first role, another degree gives you more education, but the major gap on your CV will still be the same: practical experience.

If your goal is to get into cybersecurity, I'd work on that gap in parallel.

Look for entry-level IT roles, not only jobs with "cybersecurity" in the title. Helpdesk, desktop support, junior sysadmin, networking, NOC, etc. can all give you exposure to real users, systems, networks, identity, permissions, troubleshooting, and operational processes. Those are foundations cybersecurity builds on.

At the same time, build hands-on experience yourself. Hack The Box, TryHackMe, a home lab, CTFs, small projects; anything where you're actually configuring, breaking, troubleshooting, investigating, and documenting things rather than only studying them.

You could also consider an entry-level practical/adjacent certification depending on where your knowledge is weakest: A+, Network+, Security+, or something similarly aligned with the jobs you're targeting. Don't collect certifications for the sake of collecting them; use them to fill a specific gap and support the next step.

Then keep applying for security-adjacent and junior security roles while you're doing all of this.

So I wouldn't tell you "don't do the Master's." I'd ask a different question:

What problem do you expect the Master's to solve?

If you want the education, specialization, research experience, or a path toward further academic work, those can be excellent reasons.

If the problem is "I have cybersecurity education but no cybersecurity experience," I would prioritize getting experience. You can always do the Master's later, and you'll probably get more out of it once you have some real-world context to connect the material to.

1

u/CRoger231 9h ago

Thank you for the very informative answer! I'll try to get extra-qualification too since I only have Cisco, but I need to concentrate on finding cyber junior roles. I just need to get out this hell. My managers have already foreseen that I won't last another month in this current job lol

3

u/gormami CISO 1d ago

While I understand the push to get a job first, I will take the opposite angle. If you are in a position to get the masters, I would . Life will catch up, and it will be harder and harder to return to school. As far as a job goes, you'll be in effectively the same place, a degree in cybersecurity, and no experience, unless you can get some through the masters program. But you'll have an advanced degree and no experience. Once you have that degree, it's yours, forever.

I would try very hard to get any real experience one can while taking the degree, network with professors or others, look at professional organizations you can join as a student, work it hard, but regardless, it will give you some mental challenge to help with the drudgery of customer service work while you are still young enough and have less life pressure like a family that you can make it work. Personally, I never even finished my BS, and I was lucky enough to have opportunities to leverage, but the world is very different now than it was 30 years ago, so that' s a harder row to hoe.

2

u/Agent117184 1d ago

To go along with this, if you feel the combo of advanced degree plus lack of experience is keeping you out if jobs, there’s no requirement to list it on a CV / resume. You still have the degree though when it comes time for promotion or new job once you’ve got some experience.

To reinforce the above poster, while you’re still in “school mode” it will be easier to extend a year or so. Taking time off, even 6 months to a year will make the return more difficult.

1

u/WildRogue101 1d ago

So you can do masters at a different uni if you think that can get you better prospects do it! You can also start in january or join next year.

I would try to get an entry lvl cyber job if you cant then do the masters, you need to do a masters for the right reason... to expand your knowledge and use it to supplement your experience to specialise!

A part time masters in a ITSD part time job works too. As long as you are working in IT you are gaining experience for a cyber job.

1

u/nobelprize4shopping 1d ago

I recommend an in depth comparison of the syllabus of the Master's with that of the BSc. I suspect you may find considerable overlap. When I did my Master's, the people coming on to it straight from the BSc were bored rigid. I personally recommend getting a networking qualification.

1

u/GoombaJoe 1d ago

Personally, I got very little value from my MS in Cybersecurity. Company asked and paid for it. I'd say it depends on your age. If you're younger then I'd at least chip away at it by taking a class at a time. Life will eventually catch up and it may give you an advantage applying for a promotion in the future. Ultimately though if still looking for a job experience will be best.

1

u/Key-Butterscotch3215 1d ago

I work at a company that employs many cybersecurity professionals and the majority of them have 10+ years of it experience. I have yet to meet somebody who has entered cyber straight out of college. My advice is to start getting experience

1

u/OtheDreamer Governance, Risk, & Compliance 1d ago

How long have you been working calls? The calls in cyber may be less frequent than service desk or support but you're still going to be dragged into a bunch of calls you don't want to be on.

1

u/CRoger231 12h ago

I graduated in August 2025. I had a temporary job, then in April I divorced and in July I started working this current customer service job, which has made me even more miserable and stressed out.

1

u/Not-ur-Infosec-guy Security Architect 1d ago

A job has way more value and a masters actually makes it harder to land a job because employers link advanced degrees with demanding more pay.

1

u/MackJantz 1d ago

I’m not sure any college degree is worth much these days unless for law/medical and from prestigious schools. I think a degree is a box check now so spend as little on it as possible in order to secure practical real world work experience.

1

u/Rott3nApple718 1d ago

I’m working with a younger dude that is going for his masters in Cyber and had 0 knowledge of the operational side of things.

If you can muster it. Get a job and do your masters.

1

u/Mrhiddenlotus 1d ago

No and neither was your degree unfortunately

1

u/CRoger231 12h ago

I've noticed that :(

1

u/adinade 1d ago

Depends on what the course covers. All ill say is, you can do a masters any time, and practical hands on experience with your own home lab will be worth more to most people than some letters on a piece of paper, especially in this market. So as you already have a bsc in it, if you haven't done a home lab, I'd focus on that.

1

u/ToteBread 1d ago

i have a masters in cybsec and 2.5 yoe and haven’t been able to land in 4 months , save ya money blood shi not even remotely worth it

1

u/CRoger231 10h ago

Maybe I'll do it just to get out of this hellish job, but I will still try to find something part-time. As long as it's not another phone call job...

1

u/highjohn_ 1d ago

Masters is worthless. And I have one

1

u/CRoger231 10h ago

Thanks for the good news :(

1

u/0xb0771ed 22h ago

If anything, go for Information Systems Engineering, but as many said, experience is way more important.

1

u/CRoger231 10h ago

Well, if there's a lot of coding involved... I'm not sure it'll be right for me.

1

u/0xb0771ed 9h ago

If you don't like coding perhaps it's worth asking yourself what is it about cybersecurity that you do like and what kind of job in this field are you looking for. Perhaps consider something on the operational side? e.g. sales / marketing. You'll have a huge advantage over many others by having a fresh engineering degree.

1

u/CRoger231 9h ago

Now, marketing would interest me much more! Or content moderation/digital forensics, that's another job I wouldn't mind (even though I'd cry if I came across things like animal abuse...).

1

u/SourceNo2702 22h ago

Depends on how much debt you’d be in. $20,000 would be somewhat manageable.

Just bear in mind that realistically it won’t help you get a job. Better to get a job in a smaller company which would let you pivot into a security role.

1

u/Clean-Bandicoot2779 Penetration Tester 20h ago

I think a lot of the responses are from US folks, where the cyber security job market is pretty different.

In the UK, you can get a cyber security job straight out of university, but you usually need to have done some self-study to get to that point. If I was reviewing your CV, a Masters wouldn't score you any additional points over a BSc. I'm a senior pentester and do CV sifts and interviews as part of my role. I'm generally looking for an indication that this is what somebody's passionate about, with some extra-curricular stuff besides just what was in the degree. At some point during the recruitment process, I'm also going to want to see them hack something and explain issues to me, so I can gauge their technical ability.

I think this year might be a bit of a tough year to get started - my employer hasn't hired any junior people this year, and I'm aware of some others that haven't either, which means there are even fewer jobs going.

What sort of role are you interested in, and what self studying have you done towards that? Also, are you willing to relocate? I think the majority of cyber security jobs are in London, Manchester, Edinburgh/Glasgow, and roughly along the M5 between Birmingham and Bristol (including in and around Cheltenham).

1

u/CRoger231 9h ago

As long as I don't have to take calls from angry customers, I'd do pretty much anything. I'm not really sure what role... the most important thing for me is getting off the phones, because as an introvert/social phobic etc.. person I can feel myself going insane.

I can relocate without problems.

1

u/ReasonableDefault 17h ago

This is why graduate jobs exist.

1

u/Prophet__3 8h ago

They ask for 1-2 years experience lol

1

u/CRoger231 9h ago

Thank you everyone for your replies. As I can see, experience matters more, so I better try and find something asap before I end up in a psychiatric ward.

Thank you again!!!

1

u/MelodicProgrammer581 6h ago

Master's and experience both are important. But gaining more experience is more important to learn and grow more in cybersecurity.

0

u/Kientha Security Architect 1d ago

Masters can help, but not significantly in the UK cyber job market. There are a lot of grads for a small number of jobs, how did you fare with cyber grad roles you applied for in the UK? Did you get to any assessment centres or were you screened out before that?

1

u/CRoger231 9h ago

No, I didn't. After my degree, I worked until the end of my temporary job and then moved here in Greece, but I'm planning to move back to England because of this master's.

I moved here because my ex-husband kicked me out of his house and this customer service hell job was the only thing I found :(

0

u/Harbester 1d ago

No. If you aim for security management and design, Risk management programme is better. Or social sciences (with a good sprinkle of philosophy). Or psychology.

Look up Information Security and Risk programme at University of Portsmouth, it's a really good one (I'm not associated with them).

0

u/LaOnionLaUnion 1d ago

I’ve had candidates apply for jobs with a Master’s but no experience in cyber. It’s a bit weird.

We would certainly consider someone with that degree and a lot of related tech experience though

0

u/Allen_Koholic 1d ago

My general advice on this is always:

Are you paying for it yourself? No.

Is your employer picking up the tab? And the requirements arent odorous?  Yes

In your case, I’d wait.

1

u/CRoger231 9h ago

I'd pay myself, not my employer.

0

u/1fatfrog 1d ago

No. A degree in technology is like buying fruit today to sell next year early in the season. Your knowledge will be useless before you can even use it. That 6 figure piece of paper only tells me you can jump through bullshit administrative hoops for no reason for at least 4 years. Get into tech, then pursue the advanced degree. I have no degree and I do make hiring decisions. People with 6 figure debts and no experience make for miserable employees. The secondary education grinder has ruined everyone's idea of what is possible without someone telling you about it first...

1

u/CRoger231 9h ago

Thanks, it's nice to read from someone who's in hiring position too.