Foster Nethercott
Certified Instructor CandidateFounder at Fortisec
Specialities
Offensive Operations, Artificial Intelligence

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsOffensive Operations, Artificial Intelligence

Foster Nethercott is a United States Marine Corps and Afghanistan Veteran with nearly a decade of experience in cybersecurity. He is also the founder of Fortisec, a security consulting firm, where he helps organizations strengthen their defenses through risk-based strategies and practical security implementations. At SANS, he is a course author for SEC535: Offensive AI – Attack Tools and Techniques and co-author of SEC536: Adversarial AI – Penetration Testing AI Systems.
Foster’s career began in the military, where he developed discipline, operational awareness, and a deep appreciation for structured problem-solving under pressure. After transitioning into cybersecurity, he held roles spanning threat analysis, investigative operations, and security consulting, including positions as a Cyber Security Intelligence and Threat Analyst and later as a Professional Security Analyst. He also served as Director of Investigative Operations, leading efforts in cyber investigations and risk-based analysis. These experiences directly shaped the course, where students explore how offensive teams leverage automation and AI to scale attacks and bypass traditional defenses.
He holds a Master of Science in Information Security Engineering (MSISE) with a specialization in Digital Forensics from the SANS Technology Institute and a Bachelor of Information Technology and Security. Foster has earned over 25 industry certifications, including the GIAC Certified Forensic Analyst (GCFA) and GIAC Reverse Engineering Malware Certification (GREM), demonstrating deep expertise across penetration testing, incident response, and secure development. His graduate research focused on using artificial intelligence to generate novel malware capable of evading traditional security controls—work that directly informs the labs and methodologies taught in the course. Foster is also a faculty member of the SANS Technology Institute - an NSA Center of Academic Excellence in Cyber Defense, and a multi-year winner of the National Cyber League competition.
Today, Foster helps professionals understand both sides of offensive security in AI: how practitioners can use AI to improve offensive operations and how to assess, attack, and secure AI-enabled systems. Known for his structured yet approachable teaching style, he emphasizes hands-on learning, critical thinking, and real-world application. Students value his ability to connect complex concepts to operational outcomes, leaving them better prepared to identify, emulate, and defend against emerging AI-driven threats.
Here are upcoming opportunities to train with this expert instructor.
Explore content featuring this instructor’s insights and expertise.
This session, based on the new SEC536: AI Penetration Testing course, shifts focus from AI's capabilities to its role as a new attack vector, encouraging critical evaluation of its use. Live demonstrations will show how production-grade AI assistants can be manipulated to bypass safeguards, leak confidential data, and perform prohibited actions.

人工知能(AI)が現代の企業において重要な役割を果たしていることは、もはや周知の事実です。

It’s no secret that artificial intelligence now plays a critical role in most modern enterprises. It does everything from screening resumes to triaging security alerts to even generating code, often without human oversight.

Artificial intelligence is reshaping the penetration testing landscape, yet most practitioners struggle to move beyond basic chatbot queries into meaningful operational integration.

Review relevant educational resources made with contribution from this instructor.