SEC536: Adversarial AI - Penetration Testing AI Systems


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsSecuring AI agents requires a different approach than securing traditional software. Non-human identities are already operating in your environment — and most organizations can't count them, govern them, or detect when they've been compromised. This checklist gives practitioners a tiered, actionable framework for getting ahead of the problem: from building the agent inventory and enforcing least privilege, to deploying Zero Trust architecture, to baselining behavior and defining incident response before an incident forces the issue.
This content supports SEC530: Defensible Security Architecture and Engineering: Implementing Zero Trust for the Hybrid Enterprise.


Ismael is a Senior SANS Instructor and Arctic Wolf VP. Author of SEC530 and a prestigious GSE-certified expert, he blends decades of SOC, threat research, and community contributions to equip defenders with resilient, adversary-aware strategies.
Read more about Ismael Valenzuela

















