SEC504: Hacker Tools, Techniques, and Incident Handling

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsIndustrial Control Systems (ICS) and Operational Technology (OT) are increasingly targeted by cyber threats, putting businesses, governments, and national infrastructure at risk. Specialized ICS/OT security training is vital to securing operations across all industries and defending the systems that make, move, and power the world.
Unlike traditional IT environments, ICS/OT systems face unique risks that demand both cybersecurity expertise and operational awareness. SANS ICS security training prepares defenders for the evolving threats targeting essential industries worldwide. From foundational to advanced—SANS training, led by expert instructors with real-world labs using cyber physical systems, provides the knowledge and hands-on skills to defend the critical infrastructure and industrial operations that drive economies.
Understand the unique attack surfaces of ICS/OT environments and apply defense-in-depth strategies to mitigate real-world threats.
Learn how to design, assess, and strengthen industrial systems while aligning with industry frameworks and regulatory requirements.
Develop the skills to detect, investigate, and respond to cyber threats targeting industrial operations, minimizing downtime and business disruption.
Even in the tech industry, ICS security is often overlooked. This training showed me how ICS threats impact all sectors and gave me the skills to mitigate them.
Mark loves the ever-changing landscape of security and views it as a puzzle that must be solved. He especially loves the challenges in ICS security, where the cyber meets the physical. There is no greater success than a safe and effective process.
Learn moreLesley is Technical Director of Incident Response for North America for Dragos and teaches SANS Industrial Control System courses. She's a recognized leader in cybersecurity and has won a number of prestigious awards in the field.
Learn moreJason D. Christopher has significantly influenced national cybersecurity policies through his leadership in developing the NERC Critical Infrastructure Protection standards and the U.S. Department of Energy's Cybersecurity Capability Maturity Model.
Learn moreTim serves as the Technical Director of ICS and SCADA programs at SANS, and he is responsible for developing, reviewing, and implementing technical components of the SANS ICS and SCADA product offerings.
Learn moreJason Dely brings over 20 years of experience and a diverse industrial control system background to SANS and the industrial control system (ICS) community.
Learn moreMonta Elkins is currently "Hacker-in-Chief" for FoxGuard Solutions, an ICS patch provider. A security researcher and consultant; he was formerly Security Architect for Rackspace, and the first ISO for Radford University.
Learn moreAcquires and manages resources, supports, and performs key industrial security protection while adhering to safety and engineering goals.
Explore learning pathEnsures control system network security compliance and best practises for control networks.
Explore learning pathExecutes specific industrial incident response for incidents that threaten or impact control system networks and assets, while maintaining the safety and reliability of operations.
Explore learning pathTests, programs, troubleshoots, and oversees changes of existing processes or implements new engineering processes through the deployment and operations of engineering systems and automation devices.
Explore learning pathBuilds and maintains business relationships with engineering staff and C-suite stakeholders by communicating and managing cyber-to- physical risks while reducing security risk to engineering operations and simultaneously prioritising safety.
Explore learning pathAs cyber threats become increasingly advanced and persistent, traditional perimeter-based defenses are no longer sufficient to protect critical infrastructure.
Did you know that much of your OT security risk comes from indirect effects to networks and operations?
Water and electric utilities form the backbone of our critical infrastructure, yet they are increasingly targeted by sophisticated cyber attacks aiming to disrupt essential services and threaten public safety. This free virtual event brings together cybersecurity professionals, utility operators, government stakeholders, and industry experts to explore the unique challenges and emerging threats facing the energy and water sectors. Participants will gain insights into recent attack trends, vulnerabilities in operational technology (OT) environments, and practical approaches to strengthening cyber resilience across interconnected systems.
Since 2017, the SANS ICS/OT Cybersecurity Survey has been a foundational benchmark for critical infrastructure asset owners and operators. Each year, SANS explores the growing trends in cyber threats, vulnerabilities, and risks across industrial environments, including actionable recommendations for how organizations can improve their security posture.
This talk will cover various data sources and attacks on data, including data sources used for AI/ML processing. The focus will be on how to confront and mitigate these data attacks in ICS/OT environments.