SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals







A look at the evolving trends within cybersecurity using a recent IR case study as an example.
This bonus sessions is only available to in-person and virtual attendees of this event. Links to the virtual presentations will be shared on the event slack channels in advance of the presentations.
In-Person & Virtual
This talk is about throwing everything but the kitchen sink at the problem of C2 detection and obsessing over the nitty-gritty details of spotting beaconing traffic. We are going to look at various data science approaches like statistical methods, signal processing, probability theory, machine learning, and... what? AI? Sure, maybe that one too! I mean, why not? However, these solutions are not fast, nor perfect out of the box, so we are going to leave behind all those JupyterLab notebooks to address code optimization, multi-threading, and using accelerated computing as well.
In-Person & Virtual
Registration: All students who register for a 4–6 day course will be eligible to play NetWars for free. Registration for this event will be through your SANS Account Dashboard the week of the event.
About DFIR NetWars: Focused on digital forensics, incident response, threat hunting, and malware analysis, this tool-agnostic approach covers everything from low-level artifacts to high-level behavioral observations.
In-Person & Virtual
Registration: All students who register for a 4–6 day course will be eligible to play NetWars for free. Registration for this event will be through your SANS Account Dashboard the week of the event.
About DFIR NetWars: Focused on digital forensics, incident response, threat hunting, and malware analysis, this tool-agnostic approach covers everything from low-level artifacts to high-level behavioral observations.
In-Person & Virtual