SEC536: Adversarial AI - Penetration Testing AI Systems

Important! Bring your own system configured according to these instructions.
A properly configured system is required to fully participate in this course. If you do not carefully read and follow these instructions, you will not be able to fully participate in hands-on exercises in your course. Therefore, please arrive with a system meeting all of the specified requirements.
Back up your system before class. Better yet, use a system without any sensitive/critical data. SANS is not responsible for your system or data.
Mandatory System Hardware Requirements
Mandatory Host Configuration And Software Requirements
Your course materials include a "Setup Instructions" document that details important steps you must take before you travel to a live class event or start an online class. It may take 30 minutes or more to complete these instructions.
Your class uses an electronic workbook for its lab instructions. In this new environment, a second monitor and/or a tablet device can be useful for keeping class materials visible while you are working on your course's labs.
If you have additional questions about the laptop specifications, please contact customer service.
SEC541 training is recommended for a diverse range of individuals, including:
The GIAC Cloud Threat Detection (GCTD) certification validates a practitioner's ability to detect and investigate suspicious activity in cloud infrastructure. GCTD-certified professionals are experienced in cyber threat intelligence, secure cloud configuration, and other practices needed to defend cloud solutions and services.
Students should be familiar and have hands-on experience with AWS or Azure, especially security professionals working in the cloud security field who understand basic threats and attack vectors.
The course assumes that students can understand or do the following without help:
Common prerequisite SANS courses for SEC541 are either:
The SEC541 course is part of both the Cloud Security Analyst and Cloud Detection and Response journeys. The journeys prepare professionals to utilize security solutions to enable defenses, detect attacks, and monitor and test cloud environments to identify and investigate threats.
Cloud security threat detection involves monitoring, analyzing, and responding to suspicious activities across cloud environments. This approach uses cloud-native logs, specialized monitoring tools, and detection services to identify unauthorized access, data exfiltration, and other security threats in AWS, Azure, and other cloud platforms.
This course enhances your value as a security professional by providing rare hands-on experience in cloud-specific threat detection, a skill in high demand as organizations migrate critical systems to the cloud. You'll develop practical expertise that bridges on-premises and cloud security, positioning you for roles in SOC operations, detection engineering, and cloud security architecture.

Get feedback from the world’s best cybersecurity experts and instructors

Choose how you want to learn - online, on demand, or at our live in-person training events

Get access to our range of industry-leading courses and resources