SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsConfront emerging threats, secure your environment, and strengthen cyber resilience with SANS
Equip yourself or your team with comprehensive hands-on cybersecurity training. Explore 85+ courses covering technical skills, leadership, and real-world defense against evolving cyber threats.








From hot topics to hands-on tips, SANS Community Nights bring learning and connection to cyber pros across Asia Pacific. Find the latest events and join us for a great night of learning.

The SANS AI Security Maturity Model™ eBook gives you and your team a clear, actionable roadmap for understanding where your organization stands on AI security and exactly what it takes to get to the next level. What's Covered:
- Assess where you stand across Protect, Utilize, & Govern with an evidence-based scoring model - Progress to AI-native security with a 5-stage framework, defined controls, & actions at every level - Align with global standards (NIST AI RMF, EU AI Act, ISO 42001, & OWASP)

Explore SANS training in Asia Pacific either in person or online. Learn from industry experts and build mission-critical skills.

Hosted by SANS CEO James Lyne and Professor Ciaran Martin, Cyber Leaders Podcast brings together the world's top CISOs and security leaders for frank, unfiltered dialogue on the challenges that define modern security leadership. Separating hype from reality — one conversation at a time.

Whether you're getting started or advancing your skills, choose from world-class training, industry-recognized certifications, or explore with free course demos. Start building your path with SANS.
Learn your way, whether in person, live instruction delivered in an online format, or self-paced, on your own schedule, with cybersecurity courses from top industry experts.
Master the skills to earn GIAC certifications, the industry's most rigorous credentials, with expert exam preparation from SANS.
Preview 70+ SANS courses, assess course difficulty, watch expert instructors, and experience the SANS OnDemand training platform firsthand.
The real value of this training lies at the intersection of quality content and delivery by a subject-matter expert actively working in the field, making it incredibly relevant and immediately applicable to my job.
You cannot beat the quality of SANS classes and instructors. I came back to work and was able to implement my skills learned in class on day one. Invaluable.
SANS is the best information security training you’ll find anywhere. World-class instructors, hands-on instruction, actionable information you can really use, and NetWars.
Effective cybersecurity operations rely on layers of offensive testing, defensive architecture and monitoring, forensics and incident response, cloud security, and leadership. Advancing your capabilities in these focus areas is our mission because it furthers your ability to protect us all.
Training in penetration testing, red teaming, purple teaming, and exploit development, provides the skills needed to simulate real-world attacks, evade defenses, and enhance security through adversary emulation and improving defense strategies.
Learn moreEffective Cyber Defense enables organizations to anticipate, withstand, and recover from cyber-attacks through proactive monitoring, threat detection, and incident response. It combines security operations, automation, and resilient architecture to reduce risk and minimize attack impact.
Learn moreCloud security encompasses technologies, policies, and controls that protect data, applications, and infrastructure in cloud environments. Knowing how to safeguard sensitive information in cloud environments is crucial for preventing cyber threats, ensuring compliance, and maintaining business continuity.
Learn moreIdentity-based attacks remain a dominant initial access vector in breaches today. Attackers obtain valid credentials through credential stuffing from prior breach databases, password spraying against exposed services, or phishing campaigns — and use them to walk through the front door. No exploits needed. Just a valid username and password.



Governments around the world rely on SANS for best-in-class training, equipping local and international cybersecurity teams with the skills necessary to protect critical infrastructure and stay ahead of adversaries

Cybersecurity professionals of all skill levels train with SANS to learn from industry experts and gain hands-on, practical knowledge that can be applied immediately, effectively preparing them for real-world threats.

SANS Institute is GIAC’s preferred partner for exam preparation, offering focused curriculums that help individuals pass with confidence and validate their expertise in various cybersecurity domains.

Fortune 500 companies partner with SANS to recruit, build, and retain high-performing, outcome-driven teams through industry-leading training solutions that bolster cyber resilience.
Equip your team with cutting-edge cybersecurity skills, designed to address your organization’s most critical security needs.
Empower your leaders with strategies that drive better decision-making, stronger risk management, and improved cyber resilience.
Mitigate human risk and ensure compliance with advanced training that addresses evolving threats and security regulations.
Adapt to new SEC mandates with a 10-module training course designed to expand cyber literacy and help leaders facilitate an engaged, united cybersecurity culture.

Join the SANS Cyber Leaders Network, exclusively for senior security executives. Connect with experts and thought leaders, share ideas and lessons learned and help drive industry breakthroughs.

Gain exclusive access to free resources, tools, and expert content—news, training, podcasts, whitepapers, and more. Explore unique member benefits designed for cybersecurity professionals that you won’t find anywhere else.

When you join the SANS community, you gain access to free cybersecurity resources, including free training, 150+ instructor-developed tools, the latest industry updates, and more.
This webcast explores how Data Security Posture Management (DSPM) helps modern organizations regain visibility into where data lives, what that data is, who can access it, and where the greatest exposures exist.

In 2026, as information security professionals, you’re facing your own steam-powered saw: Artificial Intelligence. AI is reshaping cybersecurity faster than Paul could clear a forest, and some of you might feel like you’re swinging your axe against an unstoppable machine.

You don’t need to be an expert, or a great writer, to publish an infosec book. This session breaks down what to write, how to get published, and how to make your work matter in a rapidly evolving field.

Join SANS instructor Terrence Williams and Kevin Gonzalez for a deep dive into the data and actionable insights into detection engineering practices

In this session, we dive into the first two pillars of the SANS Top 5 Critical ICS Controls: ICS Incident Response and Defensible Architecture.

Join SANS instructor Tim Conway for an exclusive session exploring how organisations can use structured cyber exercises to strengthen incident response, improve cross-team coordination, and uncover hidden vulnerabilities before adversaries do.

This session shows how to turn a SANS template into a governance-ready policy in 60 minutes, with clear scope, measurable requirements, and a repeatable workflow for real-world enforcement.

Non-human identities are multiplying, and static secrets can’t keep up. This webcast shows how SPIFFE enables dynamic, short-lived credentials and runtime authorization to secure modern cloud workloads without relying on long-lived keys or tokens.

Top ICS/OT vendors will showcase cutting-edge tools for anomaly detection, ransomware containment, and engineering-aware industrial ICS/OT incident response—proving how defenders can protect the systems that make, move, and power our world.

Want to make a real impact in infosec? This session explores the startup path, covering ideas, funding options, and exit strategies, helping security professionals understand how to turn innovation into a high-growth, disruptive business.

Autonomous security is reshaping leadership. This webcast explores how AI-driven teams are changing security operations and how leaders can adapt, manage agent-supported workflows, and evolve governance in an increasingly automated landscape.

In this session, we explore how attackers are leveraging generative AI, voice cloning, deepfakes, and conversational bots to exploit human trust with unprecedented precision.

Attack surfaces are expanding while attackers move faster than ever. Traditional vulnerability management can’t keep up. Learn how AI-driven exposure management improves visibility, prioritization, and reduces real-world risk.

Over the past few years, the cyber threat landscape has been defined by supply chain compromises, the targeting of cloud and SaaS environments, and the growing use of AI by both defenders and adversaries.

Join Kevin Garvey and Andy Grayland as they explore practical approaches for engaging senior stakeholders and connecting threat intelligence to business risk.

In this webcast, SANS CEO James Lyne and SANS Certified Instructor Jason D. Christopher break down the current ICS threat landscape, what defenders are up against, and what practical steps organizations can take to start closing the gap.

Microservices and AI workloads demand deeper visibility. In Part 4, learn how to use OpenTelemetry and Kong Gateway to collect metrics, logs, and traces in Kubernetes - build dashboards, monitor traffic, and detect attacks in real time.

In times of conflict, industrial control systems face rapidly evolving cyber and physical threats. This talk explores how to leverage OT-focused intelligence to understand adversary activity and assess exposure.

AI won't fix a broken SOC, but deployed right, it changes everything.

Join host Raghu Nandakumara, Vice President, Industry Solutions at Illumio, and guests: John Kindervag, Creator of Zero Trust and Chief Evangelist at Illumio, Jerome Saiz Founder & CEO, OPFOR Intelligence for an expert discussion on navigating the next phase of cyber security.
