SEC536: Adversarial AI - Penetration Testing AI Systems

It was developed by Mandiant with input from Mandiant and non-Mandiant CTI professionals, and written up by SANS-certified instructor John Doyle. It was published as a SANS white paper in August 2022 and reflects the state of the CTI field as of May 2022.
Twelve core competencies, grouped into four pillars: Problem Solving, Professional Effectiveness, Technical Literacy, and Cyber Threat Proficiency.
No. Half of the pillars — Problem Solving and Professional Effectiveness — focus on cognitive and interpersonal skills like critical thinking, communication, teamwork, and business acumen. The other half, Technical Literacy and Cyber Threat Proficiency, cover the hands-on technical and threat-specific knowledge.
It builds on and updates earlier work from INSA (2015) and Carnegie Mellon University (2012), expanding the scope of required KSAs to reflect newer realities like cloud and hybrid environments, evolving detection technologies, and shifts in adversary tradecraft.
The original white paper, "The Mandiant Cyber Threat Intelligence (CTI) Analyst Core Competencies Framework" by John Doyle, is available from SANS at sans.org/white-papers.