SEC536: Adversarial AI - Penetration Testing AI Systems

Important! Bring your own system configured according to these instructions.
A properly configured system is required to fully participate in this course. If you do not carefully read and follow these instructions, you will not be able to fully participate in hands-on exercises in your course. Therefore, please arrive with a system meeting all of the specified requirements.
Back up your system before class. Better yet, use a system without any sensitive/critical data. SANS is not responsible for your system or data.
Mandatory System Hardware Requirements
Mandatory Host Configuration And Software Requirements
Your course materials include a "Setup Instructions" document that details important steps you must take before you travel to a live class event or start an online class. It may take 30 minutes or more to complete these instructions.
Your class uses an electronic workbook for its lab instructions. In this new environment, a second monitor and/or a tablet device can be useful for keeping class materials visible while you are working on your course's labs.
If you have additional questions about the laptop specifications, please contact customer service.
SEC502 training is recommended for a diverse range of individuals, including:
The GIAC Cloud Security Essentials (GCLD) certification validates a practitioner's ability to implement preventive, detective, and reactionary techniques to defend valuable cloud-based workloads.
SEC502 is part of the SANS Cloud Security curriculum and aligns with both the Cloud Security Analyst and Cloud Security Architect learning journeys.
In the Cloud Security Analyst journey, SEC502 complements courses including SEC510: Cloud Security Engineering and Controls and SEC541: Cloud Security Threat Detection, which focus on prevention, detection, and response in cloud environments.
In the Cloud Security Architect journey, SEC502 supports broader architectural and strategic objectives alongside courses like SEC549: Cloud Security Architecture and LDR520: Emerging Trends for Cyber Leaders: AI and Cloud.
The course provides hands-on, tactical skills applicable across technical and strategic cloud security roles.
Cloud security tactical defense refers to the practical strategies and controls used to actively protect cloud environments from real-world threats. This includes securing identities, hardening configurations, detecting intrusions, mitigating risk, and maintaining compliance across multicloud platforms like AWS, Azure, GCP, and others.
Tactical cloud defense is critical for reducing the likelihood and impact of breaches, aligning with the shared responsibility model, and enabling secure, scalable operations. It protects critical assets, supports regulatory requirements, and strengthens organizational resilience. SEC502: Cloud Security Tactical Defense™ builds these applied skills through immersive labs and real-world exercises—empowering professionals to secure cloud infrastructure with confidence and precision.
SEC502: Cloud Security Tactical Defense delivers job-ready skills in cloud configuration, identity management, and threat mitigation—making you a more valuable and capable security professional. The course provides hands-on experience in real AWS and Azure environments, enhancing your technical credibility and positioning you for advancement in cloud-focused roles. Backed by SANS and aligned with GIAC certification, it demonstrates your ability to lead tactical cloud defense efforts in high-stakes environments.

Get feedback from the world’s best cybersecurity experts and instructors

Choose how you want to learn - online, on demand, or at our live in-person training events

Get access to our range of industry-leading courses and resources