SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsIn this episode, Ciaran and James sit down with Katie Moussouris, Founder of Luta Security and one of the pioneers of vulnerability research and bug bounties, to discuss how the industry has changed over time. Katie shares her expertise on vulnerability disclosure programmes, researcher protection and equity, and why she still bets on people in an AI-driven world.
From hacker culture to vulnerability research
How the early hacker scene shaped vulnerability research, disclosure norms, and how security research first took form.
The DNS flaw that changed everything
Bug bounties: where they work (and where they don’t)
A closer look at how bug bounties reshaped security research
How Hack the Pentagon actually happened
When bug bounty thinking made its way into government and led to the first legal hacking programme of its kind.
Why protection for researchers still matters
How policy has evolved (but not fully caught up).
Pay equity and who gets to thrive in cyber
AI, disruption, and betting on people
Changing vulnerability research, security work, and why human judgement still matters.
Additional resources:


Katie Moussouris is the founder and CEO of Luta Security, a company that creates and manages sustainable bug bounty and vulnerability disclosure programs. She advises companies and governments on emerging trends in AI and cybersecurity and how the dynamics are shifting between attack, defense, national security, and human expertise adaptation and co-evolution.
Learn more

James has spent the past 20 years of his life chasing cybercriminals around the Internet and, as a self-professed “massive geek”, has been involved in most cyber security disciplines.
Learn more

Respected as a world leader among public authorities for cybersecurity, Ciaran Martin is the UK’s National Cyber Security Centre’s (NCSC) founder and former head.
Learn more