Jan D'Herdt
Certified InstructorCISO Advisor, Enterprise Security Architect
Specialities
Cybersecurity Leadership

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsCybersecurity Leadership

Jan D’Herdt is a SANS Certified Instructor and cybersecurity executive with deep expertise in enterprise security architecture, governance, and risk management. He teaches LDR512: Security Leadership Essentials for Managers and SEC566: Implementing and Auditing CIS Controls, equipping both security leaders and practitioners with the frameworks needed to align cybersecurity programs with business objectives and measurable risk reduction. He currently works as an independent Enterprise Security Architect and Consultant, helping organizations implement and transform the CISO organization, and align cybersecurity with governance and business risk.
Jan’s career spans more than 20 years across consulting, audit, architecture, and executive leadership roles. He previously served as Chief Information Security Officer (CISO) and Global Lead of Cybersecurity at a global biotech, where he led the global security program and aligned cybersecurity with business strategy. Before that, he was Head of Enterprise Security Architecture at a global biopharma organization, following roles at Euroclear, Johnson & Johnson, IBM, and Deloitte. Earlier in his career, he worked across IT security consulting and governance, building a foundation in audits, penetration testing, and compliance.
Jan is the author of publications such as Security in Advanced Analytics and Machine Learning Environments and Detecting Cryptocurrency Mining in Corporate Environments and regularly contributes to the cybersecurity community through speaking and mentoring.
Jan’s teaching philosophy is grounded in realism and connection. He believes students should recognize their own challenges in the material and leave with solutions they can apply immediately. He places strong emphasis on communication, helping students explain security risks to non-technical stakeholders and drive change within their organizations. Outside of cybersecurity, Jan enjoys basketball and traveling. As a father of two, he jokes that he is a “daily risk assessor” at home, a mindset that reflects his practical and relatable approach to both leadership and teaching.
Here are upcoming opportunities to train with this expert instructor.
Explore content featuring this instructor’s insights and expertise.
Ideal for CISOs, security leaders, and anyone building or defending a security budget for the year ahead.

Cyberattacks accelerated last year with the rise of AI, while the familiar root causes remained largely unchanged. Industry reporting shows record ransomware victim counts and a sharp increase in active threat groups, with AI accelerating phishing and data triage. However, the primary causes continue to be exploited vulnerabilities and resource gaps.

Organisations rely on third parties to operate and scale. Blind reliance introduces risk — and most vendor risk programmes are not built to catch it.

Organisations rely on third parties to operate and scale. Blind reliance introduces risk — and most vendor risk programmes are not built to catch it.

Organizations rely on third-party vendors to operate and scale, but blind reliance introduces risk. Learn why vendor risk matters, lessons from real breaches, and how to build a modern, continuous TPRM program aligned to NIS2, DORA, and GDPR.

This talk explores the growing threat of illicit crypto mining within enterprise networks.

In an era where data breaches and privacy concerns are increasingly prevalent, safeguarding personal and organizational information has become paramount.

In today's rapidly evolving digital landscape, effective vulnerability management is applicable for both Operational Technology (OT) and Information Technology (IT) systems.

Review relevant educational resources made with contribution from this instructor.