SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals


Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsConfront emerging threats, secure your environment, and strengthen cyber resilience with SANS
Equip yourself or your team with comprehensive hands-on cybersecurity training. Explore 85+ courses covering technical skills, leadership, and real-world defense against evolving cyber threats.






According to Anthropic, their new Claude Mythos model discovered thousands of zero-day vulnerabilities across every major operating system and web browser — and the model is so powerful they will not release it publicly. The conversation so far has been heavy on alarm and light on practical guidance.
SANS faculty have 15 months of hands-on experience using current AI models to find critical flaws that human reviewers missed. See what AI-assisted vulnerability discovery actually looks like.
Thursday, April 16, 2026 | 12:00 PM ET | No registration required.

AI-driven threats aren’t slowing down — and neither can you.
Join us at the SANS AI Cybersecurity Summit to see how AI is reshaping the security landscape.
Tune in Live Online for free to hear keynotes and lightning talks from some of the most influential voices in AI and cybersecurity. Walk away with fresh insights, real-world perspectives, and ideas you can put to work right away.

Dive into deep, hands-on learning in a distraction-free setting with world-renowned experts at SANSFIRE 2026. Returning to Washington, DC this year in a new venue! Join us in-person at the Grand Hyatt Washington from Mon, July 13- Sat, July 18.
35 Courses 2 NetWars Tournaments Networking, Night Talks, and Workshops
Register early to save on your course.

As AI reshapes today’s workforce, the 2026 Cybersecurity Workforce Research Report examines emerging skill needs, shifting team structures, and the strategic changes driven by new compliance mandates. Leaders gain workforce clarity, and practitioners gain career insight.

This playbook highlights six critical Windows artifacts investigators rely on to reconstruct system activity and identify evidence during analysis. It explains what each artifact is, where it is stored, and what it reveals, serving as a practical reference for consistent, artifact-driven investigations in Windows environments.

Whether you're getting started or advancing your skills, choose from world-class training, industry-recognized certifications, or explore with free course demos. Start building your path with SANS.
Learn your way, whether in person, live instruction delivered in an online format, or self-paced, on your own schedule, with cybersecurity courses from top industry experts.
Master the skills to earn GIAC certifications, the industry's most rigorous credentials, with expert exam preparation from SANS.
Preview 70+ SANS courses, assess course difficulty, watch expert instructors, and experience the SANS OnDemand training platform firsthand.
The real value of this training lies at the intersection of quality content and delivery by a subject-matter expert actively working in the field, making it incredibly relevant and immediately applicable to my job.
You cannot beat the quality of SANS classes and instructors. I came back to work and was able to implement my skills learned in class on day one. Invaluable.
SANS is the best information security training you’ll find anywhere. World-class instructors, hands-on instruction, actionable information you can really use, and NetWars.
Effective cybersecurity operations rely on layers of offensive testing, defensive architecture and monitoring, forensics and incident response, cloud security, and leadership. Advancing your capabilities in these focus areas is our mission because it furthers your ability to protect us all.
Artificial Intelligence (AI) Cyber Security Training and Resources Ensure professionals at every level are prepared to navigate the complexities of an AI-driven future, equipping them with critical understanding of AI-powered threats and the skills to leverage AI to enhance security operations.
Learn moreTraining in penetration testing, red teaming, purple teaming, and exploit development, provides the skills needed to simulate real-world attacks, evade defenses, and enhance security through adversary emulation and improving defense strategies.
Learn moreEffective Cyber Defense enables organizations to anticipate, withstand, and recover from cyber-attacks through proactive monitoring, threat detection, and incident response. It combines security operations, automation, and resilient architecture to reduce risk and minimize attack impact.
Learn moreOn Friday afternoon, Gadi Evron asked if I wanted to collaborate on a CISO community document. "Releasing Monday." I said "Sure." (That word has cost me more sleep than any APT.)




Governments around the world rely on SANS for best-in-class training, equipping local and international cybersecurity teams with the skills necessary to protect critical infrastructure and stay ahead of adversaries

Cybersecurity professionals of all skill levels train with SANS to learn from industry experts and gain hands-on, practical knowledge that can be applied immediately, effectively preparing them for real-world threats.

SANS Institute is GIAC’s preferred partner for exam preparation, offering focused curriculums that help individuals pass with confidence and validate their expertise in various cybersecurity domains.

Fortune 500 companies partner with SANS to recruit, build, and retain high-performing, outcome-driven teams through industry-leading training solutions that bolster cyber resilience.
Equip your team with cutting-edge cybersecurity skills, designed to address your organization’s most critical security needs.
Empower your leaders with strategies that drive better decision-making, stronger risk management, and improved cyber resilience.
Mitigate human risk and ensure compliance with advanced training that addresses evolving threats and security regulations.
Adapt to new SEC mandates with a 10-module training course designed to expand cyber literacy and help leaders facilitate an engaged, united cybersecurity culture.

Join the SANS CISO network, exclusively for senior security executives. Connect with experts and thought leaders, share ideas and lessons learned and help drive industry breakthroughs.

Gain exclusive access to free resources, tools, and expert content—news, training, podcasts, whitepapers, and more. Explore unique member benefits designed for cybersecurity professionals that you won’t find anywhere else.

When you join the SANS community, you gain access to free cybersecurity resources, including free training, 150+ instructor-developed tools, the latest industry updates, and more.
Artificial intelligence is transforming how security teams detect threats, automate response, and make critical decisions—but effective adoption requires more than just powerful tools. This Solutions Track session explores real-world approaches to applying AI in cybersecurity programs, focusing on how to move from theory to measurable impact.

Join SANS ICS expert Dean Parsons for practical guidance on strengthening defenses, improving visibility, and maintaining operational integrity across industrial environments.

Artificial intelligence is transforming how security teams detect threats, automate response, and make critical decisions—but effective adoption requires more than just powerful tools. This Solutions Track session explores real-world approaches to applying AI in cybersecurity programs, focusing on how to move from theory to measurable impact.

Identity compromise now drives 80% of cyber intrusions—making it the primary attack vector in modern cybersecurity. When Active Directory fails, entire business operations halt: employees can't authenticate, applications fail, and critical services go dark.

In this talk, we will go into tips and tricks you can employ to stretch yourself out of your comfort zone and allow you to shine in your career to current and future employers.

Microservices and AI-generated code expand your attack surface fast. In Part 2, learn how to use kubectl-ai, the Kubernetes Gateway API, and Kong Ingress Controller to identify exposed services and enforce secure, centralized traffic controls.

Air-Gapped Security in a Connected World

Your biggest email threats aren’t strangers, they’re trusted partners whose accounts have been compromised. Discover how self‑learning AI uncovers subtle behavioral shifts that signal BEC and supply chain attacks before damage is done.

AI is already in your workplace...often without guardrails. This webinar helps leaders understand generative and agentic AI risks and design practical, enablement-driven strategies to ensure employees use AI securely and responsibly.

The "Grace Period" for enterprise defense has officially expired. While attackers have always weaponized new disclosures within 15 minutes, Agentic AI has turned that speed into an unthinkable scale.

This scenario-driven workshop challenges leaders to make high-impact security decisions under pressure, balance risk and business priorities, and sharpen operational judgment through fast-paced gameplay and practical situations.

Join SANS Cyber Defense instructors to explore the tools, tactics, and tradecraft defenders rely on to detect, respond, and stay ahead of modern threats in 2026.

This webcast examines how OpenText Endpoint Forensics and Response can bridge the gap between detection tools and deep forensic investigation, enabling organizations to pivot directly from discovery to containment and recovery.

The 2026 Emerging Technologies Track of the SANS Spring Cyber Solutions Fest will bring together leading cybersecurity innovators and thought leaders to explore the newest frontiers in defensive technology.

The Detection & Response Track at SANS Spring Cyber Solutions Fest 2026 brings together frontline experts, innovative practitioners, and cutting-edge solution providers to explore how modern security teams are adapting to an evolving threat landscape.

In 2026, the Cloud Security Track at the SANS Spring Cyber Solutions Fest will once again assemble leading experts and practitioners to examine the evolving challenges of cloud environments — now further complicated by the rapid adoption of AI-native workloads, multi-cloud architectures, and hybrid on-premise/cloud deployments.

AI in cybersecurity isn’t all wins. This webinar shares real successes, failures, and lessons from deploying LLMs in security workflows, plus practical defenses mapped to the OWASP Top 10 for LLMs.

The SANS Spring Cyber Solutions Fest 2026 Exposure Management Track explores how modern security teams can proactively identify, quantify, and reduce cyber risk across dynamic attack surfaces.

The Insider Threat / Malware / Ransomware Track at SANS Spring Cyber Solutions Fest 2026 brings together leading practitioners, researchers, and solution providers to explore how modern threats are evolving inside and outside the organization.

Stepping into a CISO role without preparation is common. This webinar equips security leaders with proven strategies to build credibility, communicate with executives, and succeed in high-stakes, board-facing leadership roles.
