SEC536: Adversarial AI - Penetration Testing AI Systems

Important! Bring your own system configured according to these instructions.
A properly configured system is required to fully participate in this course. If you do not carefully read and follow these instructions, you will not be able to fully participate in hands-on exercises in your course. Therefore, please arrive with a system meeting all the specified requirements.
Back up your system before class. Better yet, use a system without any sensitive/critical data. SANS is not responsible for your system or data.
Mandatory System Hardware Requirements
Mandatory Host Configuration and Software Requirements
If you have additional questions about the laptop specifications, please contact customer service.
LDR539 is designed for cybersecurity leaders who are responsible for, or moving into, cyber risk management at the enterprise level. This includes CISOs, deputy CISOs, and senior security leaders who need to connect their risk programs to how the business makes decisions.
It is also well-suited for aspiring cyber risk leaders who want to move beyond framework compliance and metric reporting into a role that directly enables leadership decisions.
No formal prerequisites are required. Students should come with some experience in cybersecurity and an interest in how risk management operates at the organizational level.
There are no formal prerequisites. This course is best suited for cybersecurity leaders and senior risk professionals who already operate in or near enterprise risk management. Students should have experience in a security leadership, GRC, or cyber risk role and a working familiarity with how their organization makes risk-related decisions.
This is not an entry-level course. Students without prior exposure to security leadership or organizational risk management will find the content difficult to apply. It is most valuable for those in mid-to-large organizations where alignment between cybersecurity and enterprise risk is an active challenge.
LDR539 is part of the SANS Cybersecurity Leadership curriculum, which develops security leaders who can operate effectively at the intersection of technical expertise and business strategy. The curriculum spans security management, governance, risk, and executive leadership, building the skills needed to lead programs, influence decisions, and drive outcomes at the organizational level.
Enterprise risk management (ERM) is the discipline through which organizations identify, assess, and manage risk in a way that supports business strategy and leadership decision-making. For cybersecurity leaders, ERM is the operating environment where cyber risk either gets heard or gets ignored. When cyber risk is not aligned to ERM, programs can generate extensive data and still fail to influence a single leadership decision. When it is aligned, cyber risk becomes a direct input into how the business sets priorities, allocates resources, and takes action.
Senior security leaders are increasingly expected to do more than manage technical risk. They are expected to connect it to business outcomes. LDR539 gives you a transferable operating model for doing exactly that: interpreting risk appetite, contextualizing existing data, and enabling leadership decisions across any organization regardless of ERM maturity. Whether you are a GRC leader, a deputy CISO, or stepping into your first CISO role, this course builds the judgment and discipline that separates leaders who report on risk from those who shape how the business responds to it.
Beta courses are part of the SANS course development process, bringing new training to market in collaboration with the practitioner community. LDR539 delivers fully developed content, complete labs, and expert instruction at 25% off full course cost.

Get feedback from the world’s best cybersecurity experts and instructors

Choose how you want to learn - online, on demand, or at our live in-person training events

Get access to our range of industry-leading courses and resources