SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsSANS is helping shape the secure, AI-capable workforce the future demands. Our industry-defining training and role-specific resources help organizations advance AI education, strengthen talent pipelines, and secure innovation. Backed by global standards leadership and real-world expertise, we prepare professionals at every level to lead safely and confidently in the age of AI.
AI is transforming cybersecurity roles faster than organizations can adapt. From incident response to governance, today’s defenders need new skills, and entirely new job functions are emerging. These roles demand fluency in AI-driven threats, secure system design, and policy leadership. Whether you're planning your own path or shaping a team, now is the time to understand what the future requires.
Building mastery in threat detection, incident response, and adversary emulation using GenAI to match the speed and complexity of modern attacks.
Delivering the know-how to build and test secure GenAI applications, defend RAG pipelines, while hardening LLMs, agents, and AI-powered workflows against real-world risks.
Driving the research – and the readiness – to shape policy, maintain compliance, and guide secure, ethical AI use across technical and business environments.
Developed by SANS researchers in collaboration with leading industry and government contributors, this expert-led framework defines the essential security controls needed to defend, govern, and deploy AI responsibly. Learn to address real-world threats across access control, model protection, inference security, monitoring, and GRC. From prompt injection and model poisoning to regulatory readiness and AI bill-of-materials tracking, this document provides actionable guidance for securing GenAI systems at scale. Whether you're building policies or fortifying infrastructure, this is the foundational reference trusted by cybersecurity professionals shaping the future of AI security.
Partnering to advance practical, open standards for secure AI deployment.
Keynotes and expert sessions driving the next wave of AI security.
Practitioner blogs covering real threats, real lessons, and real wins.
Acquire practical data science and machine learning skills to build custom AI-driven security solutions that transform your organization's threat detection capabilities.
Secure the full GenAI lifecycle, mastering hands-on strategies to defend LLMs, agents, and RAG-powered apps from development to deployment.
This course delivers essential training for Security Operations Center (SOC) analysts, equipping you with the skills to detect, stop cyberattacks, and safeguard your organization’s data and systems.
Transform your security team's potential by automating critical prevention, detection, and response workflows to outmaneuver emerging cyber threats.
Learn cutting-edge cybersecurity engineering and advanced threat detection skills for cloud, network, and endpoint environments in this comprehensive course.
Enhance advanced defensive strategies against AI-powered attacks by understanding adversarial threat models and implementing robust security controls.
Learn the advanced incident response and threat hunting skills you need to identify, counter, and recover from a wide range of threats within enterprise networks.
Learn to perform effective, secure OSINT research with practical techniques. Explore critical OSINT tools and apply your skills in hands-on labs based on real-world scenarios.
Master tactical, operational, and strategic cyber threat intelligence skills. Improve analytic processes and incident response effectiveness to support your detection and response programs.
Rob T. Lee is Chief of Research and Chief AI Officer at SANS Institute, where he leads research, mentors faculty, and helps cybersecurity teams and executive leaders prepare for AI and emerging threats.
Learn moreDavid Hoelzer has fundamentally advanced cybersecurity by pioneering the GIAC Security Expert (GSE) certification, leading AI-driven threat detection initiatives, and developing MAVIS, an open-source ML tool enhancing code review processes.
Learn moreAhmed Abugharbia is a SANS Certified Instructor and founder of Cyberdojo, focusing on GenAI and Cloud Security. With over 17 years of experience in security, Ahmed has worked and led projects in cloud security, network and application security, as well as incident handling.
Learn moreJess Garcia is the founder and technical lead of One eSecurity, a global Information Security company specialized in Incident Response and Digital Forensics.
Learn moreFrank Kim is the Founder of ThinkSec, a security consulting and CISO advisory firm. He leads the Cybersecurity Leadership and Cloud Security curricula at SANS, as well as authors and instructs multiple SANS courses.
Learn moreJason Ostrom has revolutionized cybersecurity by developing open-source tools like PurpleCloud and Automated Emulation, enabling scalable adversary emulation in cloud environments.
Learn moreI've been a heavy user of AI since the beginning, but the way that I use AI has recently shifted. In this fast-paced, fun talk, we'll cover the top ways that I've improved my efficiency and productivity by changing the way I interact with AI so far in 2025.
View DetailsThis webcast is built on insights from one of our most anticipated cybersecurity surveys of the year—offering an in-depth look at how the community is adopting, adapting to, and defending against artificial intelligence in all its forms. From broad AI applications to generative models like LLMs, the 2025 SANS AI Survey uncovers how security professionals are integrating AI into their workflows—and what risks and opportunities are emerging as a result.
View DetailsThe integration of AI in penetration testing promises to revolutionize cybersecurity assessments. Machine learning algorithms will automate vulnerability discovery, enabling real-time identification and exploitation of security weaknesses.
View DetailsThis talk will look at how attackers are actually making use of artificial intelligence to attack organizations through social engineering attacks, and what organizations can do to try and actually address these threats.