Jason Christopher
Certified InstructorSenior Vice President of Cybersecurity and Digital Transformation for Research and Innovation at Energy Impact Partners (EIP)
Specialities
Industrial Control Systems Security

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsIndustrial Control Systems Security

Jason D. Christopher is a SANS Certified Instructor and the Senior Vice President of Cybersecurity and Digital Transformation (Research and Innovation) at Energy Impact Partners. He teaches SANS ICS456: Essentials for NERC Critical Infrastructure Protection and co-authors SANS ICS418: ICS Security Essentials for Leaders. Jason’s strength in the classroom comes from two decades bridging engineering, policy, and utility operations, turning regulatory complexity and real-world constraints into practical guidance.
Across his career, Jason served as the federal technical lead for the North American Electric Reliability Corporation Critical Infrastructure Protection standards (NERC CIP v5) at the Federal Energy Regulatory Commission, and he led the U.S. Department of Energy’s Cybersecurity Capability Maturity Model (C2M2) program before moving into executive roles advising utilities and energy innovators. That experience powers ICS456, where he demystifies NERC CIP by translating its requirements into labs, workflows, and audit-ready artifacts that improve reliability as well as compliance. In ICS418, he shifts to the leadership view, helping executives and plant leaders align industrial risk, investment, and governance with plant-floor reality using models like C2M2 and the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), and shaping KPIs, tabletop exercises, and roadmaps the business can defend.
Jason holds the GIAC Global Industrial Cyber Security Professional (GICSP) and GIAC Critical Infrastructure Protection (GCIP) certifications. He helped shape widely adopted guidance, including DOE’s C2M2 and the Energy Sector Cybersecurity Framework Implementation Guidance. He serves as lead author for SANS’s annual State of ICS/OT Cybersecurity Report, providing fresh, data-driven guidance each year. Jason is also a faculty member of the SANS Technology Institute, which has been designated an NSA Center of Academic Excellence in Cyber Defense and is a multi-year winner of the National Cyber League competition.
Students describe Jason’s teaching as lively, clear, and pragmatic: no “death by slides,” and lots of repeatable labs that respect safety and reliability. He’s known for bridging operator, engineer, and CISO perspectives, helping practitioners and leaders build programs that satisfy compliance and reduce real risk. Away from the classroom, he continues to advise across the energy ecosystem, advocate for measurable security, and champion ICS/OT defenders who keep critical services running.
[Jason] is making such a dry topic incredibly interesting and engaging. In addition, his background has provided great parallels to make the material more applicable to real-world scenarios.
Jason is a very experienced professional who adds a real-world perspective to the material.
Jason was great as an instructor, and I would gladly take any course he was giving.
Here are upcoming opportunities to train with this expert instructor.
Explore content featuring this instructor’s insights and expertise.
Join us to discuss insights from SANS 9th annual State of ICS/OT Security Survey. This trusted industry research captures how organizations across sectors are evolving their industrial cybersecurity strategies in response to regulatory pressures, emerging threats, and operational demands.

In this webcast, SANS CEO James Lyne and SANS Certified Instructor Jason D. Christopher break down the current ICS threat landscape, what defenders are up against, and what practical steps organizations can take to start closing the gap.

Grounded in current SANS research and frontline operational experience, this one-hour session brings together Tim Conway, Robert M. Lee, Jason D. Christopher, and Dean Parsons to deliver leadership-level guidance for practitioners and executives.

On this webcast, we will explore results from our 2025 survey. We will cover specific topics with an eye toward providing asset owners and operators with clear benchmarks for improving cyber threats, vulnerabilities, and risks across industrial environments.

Join us at the 2025 Government Security Forum on July 22nd at 10:00 AM ET to gain intelligence, tools, and real-world strategies needed to defend your agency against next-generation cyber threats. Register for free today!

Review relevant educational resources made with contribution from this instructor.