SEC536: Adversarial AI - Penetration Testing AI Systems


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsKey findings:
The paper finds a persistent gap between how much organizations depend on cloud-based security controls and how prepared they are for those controls to fail. Most enterprises lack failover mechanisms, multicloud redundancy, or offline fallback options for critical functions like IAM, threat detection, and secure web gateways, even as the financial and operational cost of downtime continues to climb. Regulatory pressure from frameworks like DORA, NIST 800-53, and CISA's cloud resilience guidance is pushing this from a best practice into a compliance requirement. This white paper synthesizes third-party industry research and documented cloud outages from 2022 through 2025 rather than an original SANS survey. Cited data sources include Gartner, Veritis, Queue-IT, and the Carnegie Endowment for International Peace.


Cybersecurity leader Dave Shackleford combines decades of enterprise defense, cloud security, and hands-on consulting experience to help students master real-world security operations and modern threat defense.
Read more about Dave Shackleford








