SEC536: Adversarial AI - Penetration Testing AI Systems


The GIAC Open Source Intelligence (GOSI) certification confirms that you have a strong foundation in OSINT methodologies and frameworks. It shows you can collect, analyze, and report on people, businesses, and network infrastructure using publicly available data, while applying sound operational security practices throughout an investigation.
The GOSI exam is a single proctored exam made up of 75 questions, with a 2-hour time limit and a minimum passing score of 69%. GIAC periodically reviews exam specifications, so confirm the current format and passing score in the Certification Information section of your GIAC account before you sit the exam.
GIAC certifications are renewed on a recurring cycle through continuing education credits and a maintenance fee. For the current renewal requirements, see GIAC’s renewal page.
GOSI fits practitioners who need to turn public information into actionable findings: OSINT investigators and analysts, cyber threat intelligence analysts, digital forensics and incident response (DFIR) professionals, penetration testers and social engineers, law enforcement and intelligence personnel, private and insurance investigators, and recruiters or HR professionals doing background research. SEC497, the course that prepares you for it, also draws journalists and red team members who rely on the same research skills.
SEC497: Practical Open-Source Intelligence (OSINT) is the SANS course built to prepare you for GOSI. It runs 6 days instructor-led or 36 hours self-paced, is available in-person, virtual, or self-paced, and carries 36 CPEs. The course includes 29 hands-on labs covering search techniques, metadata and image analysis, username and email investigation, breach data, infrastructure research, and dark web investigation, and it closes with a multi-hour Capture the Flag capstone where you build a threat assessment for a fictional client.