SEC536: Adversarial AI - Penetration Testing AI Systems


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsKey findings:
Across all three chapters, a consistent pattern emerges: the security fundamentals that organizations have struggled to fully implement in the cloud (identity governance, data classification, network segmentation) are the same fundamentals now determining how well organizations can secure AI systems and use AI defensively. Organizations that treat AI security as an extension of mature cloud security practices are better positioned than those approaching it as an entirely new discipline. Contributors: Dr. Paul Vixie and Brandon Evans (AWS and SANS), Dr. Anton Chuvakin and Dave Shackleford (Google Cloud and SANS), and Wesley Kuzma and Simon Vernon (Microsoft and SANS), with foreword by Frank Kim, SANS Fellow and Curriculum Lead.
Prepare for the Next Era of Cloud Security.

More than 70% of cloud security incidents stem from customer misconfigurations or weak credential practices rather than vulnerabilities in the cloud platforms themselves, according to Google's 2024 Threat Horizons report.
Not fully. While 66% of organizations expect AI to significantly impact cybersecurity in the coming year, only 37% have processes in place to evaluate AI system security before deployment, per the World Economic Forum's Global Cybersecurity Outlook 2025.
Identity and access management (IAM) is the most persistent issue, largely due to machine identity sprawl, over-permissioned roles, and legacy on-premises IAM models like Active Directory being poorly adapted to cloud environments.
No. Zero Trust operates on a "best effort with dramatically improved odds" model — it raises the cost of an attack and increases detection probability, with AI serving as a multiplier for these layered defenses, but it does not promise perfect security.
John Kindervag of Forrester Research formally coined the term "Zero Trust" in 2010, shifting the security model to treat all interactions as hostile until verified.


Dr. Anton Chuvakin is a security advisor in Google Cloud’s Office of the CISO, helping shape global cloud security strategy.
Learn more

Vice President, Distinguished Engineer and Deputy CISO at Amazon Web Services (AWS). The founder and CEO of five startup companies covering the fields of DNS, anti-spam, Internet exchange, Internet carriage and hosting, and Internet security.
Learn more

SANS Fellow Frank Kim helps to develop the next generation of CISOs and cyber leaders while teaching LDR512 and LDR514.
Learn more

Simon Vernon brings more than a quarter century of experience to his role as Head of Research and Development for SANS Institute where he is responsible for the creation and operations of all Jupiter Rockets, BootUP, and Community Cyber Ranges.
Learn more

Brandon Evans is a SANS Senior Instructor and Partner at Cyverity. As the lead author of SEC510, he guides cloud and DevSecOps professionals in securing AWS, Azure and GCP workloads through hands-on training.
Learn more

Cybersecurity leader Dave Shackleford combines decades of enterprise defense, cloud security, and hands-on consulting experience to help students master real-world security operations and modern threat defense.
Learn more


















