SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact Us
Learn to leverage threat intelligence for Red Team engagements using both manual analysis and AI-assisted workflows. Participants will research the HAFNIUM state-sponsored threat group, extract TTPs from multiple intelligence sources (Microsoft, Mandiant, Volexity reports), and map techniques to the MITRE ATT&CK framework.
The workshop introduces CrewAI, an open-source framework for orchestrating AI agents, to validate and enhance threat intelligence analysis. Participants will build multi-agent workflows that automatically read threat reports, extract technical indicators, and generate comprehensive adversary profiles—demonstrating how AI can augment human expertise in Red Team planning.
SOFTWARE PACKAGES:
API KEYS (CrewAI supports 20+ LLM providers via LiteLLM):
Participants need ONE of the following:
FOR WEB SEARCH OPTION (Optional):
This workshop supports content and knowledge from SEC565: Red Team Operations and Adversary Emulation To learn more about this course and explore upcoming sessions, Click Here.


Jean-François is based in Portugal, where he is the CEO of Offensive Guardian, a boutique red and purple teaming shop providing freelance services to various organizations. He has worked for other noteworthy firms, including, but not limited to: Neuvik, TrustedSec, Fortra's Cobalt-Strike team, and NVISO.
Read more about Jean-François Maes