SEC536: Adversarial AI - Penetration Testing AI Systems


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact Us
Your Incident Response plan is lying to you. Not deliberately—it just hasn't met the incident yet. Steve unpicks the gap between the plan your board signed off and the ransomware incident your team is actually fighting at three in the morning.
The spice must flow, the business must keep running, and somewhere between those two truths sits an Incident Commander trying very hard not to pull their hand out of the pain box.
This is a Dune themed working session on the habits, instincts and small acts of discipline that separate Incident Commanders who hold the line from those who panic-pay the ransom by lunchtime. Bring your runbooks. Leave the blue pill at the door. The worm is already coming.


Steve Armstrong-Godwin brings 30+ years in incident management and response across defence, consulting, multinational business, financial services, gaming, and national military cyber operations.
Read more about Steve Armstrong-Godwin