SEC536: Adversarial AI - Penetration Testing AI Systems


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact Us
Thomas Roccia is the Founder and Threat Researcher at SecurityBreak, a company dedicated to AI Threat Intelligence and AI security. With more than 15 years of experience in cybersecurity, he has investigated major cyberattacks, led threat research at Microsoft and McAfee, collaborated with law enforcement, and helped organizations understand and respond to emerging threats.
Speaker / Contributor: This individual participates in SANS events, presentations, written content, or other community resources as an external contributor. They are not a SANS employee, instructor, or affiliate.
Since 2022, Thomas has focused on AI Threat Intelligence, researching how attackers target AI systems and how defenders can secure the growing AI ecosystem. He is recognized as one of the early pioneers in applying generative AI to cyber threat intelligence through practical research, open-source projects, and industry education.
Thomas is the creator of several widely used open-source initiatives, including the Unprotect Project and NOVA, one of the first detection-rule frameworks for prompt pattern matching and AI security monitoring. NOVA won the SANS AI Cybersecurity Hackathon in 2025, and Thomas received the SANS Difference Makers Award (DMA) the same year for his contributions to the cybersecurity community. He is also the author of the bestselling book Visual Threat Intelligence: An Illustrated Guide for Threat Researchers, recipient of the Bronze Foreword INDIES Award in the Science & Technology category.
A regular speaker at leading security conferences, including BlackHat, DEFCON, BSides, and SANS events, Thomas teaches AI Threat Intelligence to security professionals around the world, to help defenders apply AI to real-world investigations while understanding the risks attackers pose to the AI ecosystem.
Through SecurityBreak, Thomas develops research, intelligence, and products that help organizations monitor, detect, and defend against attacks targeting AI models, agents, tools, and the broader AI ecosystem.
Review relevant educational resources made with contribution from this instructor.