Aaron Cure
Principal InstructorPrincipal Security Consultant at Cypress Data Defense
Specialities
Offensive Operations, Cloud Security

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsOffensive Operations, Cloud Security

Aaron Cure is a SANS Principal Instructor and Director of Cyber Security at Cypress Data Defense, where he specializes in penetration testing, secure software development lifecycle (SDLC), static code analysis, and secure architecture. At SANS, he teaches SEC542: Web App Penetration Testing and Ethical Hacking and SEC588: Cloud Penetration Testing (co-authored), bringing deep, hands-on expertise into the classroom to help students understand how modern applications are attacked and secured in real-world environments.
Aaron’s career spans more than three decades across military, development, and cybersecurity domains. He began his professional journey in the U.S. Army, serving for 10 years as a Russian linguist and satellite repair technician, before transitioning into technical roles including database administration and programming on the Iridium project. He later worked as a telecommunications consultant and senior programmer, building a strong foundation in software development before entering the information security field in 2006. Since then, he has led and contributed to engagements involving secure code reviews, vulnerability assessments, penetration testing, and security research. His progression from developer to offensive security expert helps him connect with students and understand their trials, as he guides them through learning to think like attackers while building stronger defenses.
Aaron is knowledgeable and happy to share what he knows. He is dynamic, funny and encouraging. Overall awesome instructor!
Love how Aaron makes himself available for questions.
Aaron Cure was a great teacher, even in a remote setting, and all in all, it was excellent.
Here are upcoming opportunities to train with this expert instructor.
Explore content featuring this instructor’s insights and expertise.
Endpoint Detection and Response (EDR) has become the backbone of modern security programs—and for good reason.

The integration of AI in penetration testing promises to revolutionize cybersecurity assessments. Machine learning algorithms will automate vulnerability discovery, enabling real-time identification and exploitation of security weaknesses.

In this SANS Workshop, you will learn how to use Infrastructure as Code and open-source tools to automatically create an Azure Active Directory security lab which can be used for your own security simulations and use cases. After automatically creating Azure AD users, Applications, and RBAC role assignments, participants will have hands-on exercises to perform reconnaissance and a specific attack pathway that abuses mis-configured roles and permissions.
