AI-powered Security Operations Bootcamp









Registrations for this batch are now closed.
Next batch coming soon!
We are
now! Registrations open until 11 Am.
AI security is reshaping how modern enterprises build, deploy, and defend intelligent systems, creating both powerful capabilities and new attack surfaces. This bootcamp is designed to bridge that gap by combining AI fundamentals with real-world security practices. It focuses on how LLMs and agentic systems work, where they fail, and how they are exploited in production environments. Through structured, hands-on learning, it builds practical skills in AI threat analysis, red teaming, and secure system design for real-world security operations.
Urvesh
6+ Years of ExperienceUrvesh is an experienced cybersecurity professional specializing in threat detection, incident response, and SOC operations. He has deployed and managed SIEM/XDR platforms, built custom detection rules, and conducted advanced threat hunting. Urvesh has trained 300+ professionals globally, helping teams enhance detection, response, and forensic investigation capabilities.
Module 1: The AI Security Landscape
Builds the foundational vocabulary of AI security - how LLMs actually work under the hood, where they break, and how to map AI threats to the frameworks SOC teams already use every day.
- How LLMs actually work: tokens, context windows, RLHF, temperature, sampling
- OWASP Top 10 for LLMs and MITRE ATLAS, mapped alongside MITRE ATT&CK
- The AI attack surface from training data to inference and output handling
- Responsible AI security research and disclosure
Module 2: AI-Powered Threat Intel
Build a production-grade threat intel workflow where AI accelerates analyst work without becoming the source of truth & paste a real threat report URL, get back an analyst-ready evidence pack.
- AI-augmented IOC extraction from public threat reports
- Dynamic MITRE ATT&CK mapping with hallucination validation against the live ATT&CK dataset
- ATT&CK Navigator layer + SOC hunting pack generation (SPL + KQL starters)
- Analyst-in-the-loop validation: final / review / rejected separation
Module 3: AI for GRC
Use AI to draft, challenge, and validate compliance artifacts across ISO 27001, NIST CSF 2.0, EU AI Act, NIST AI RMF, and ISO 42001 without losing audit defensibility.
- ISO 27001:2022 Statement of Applicability drafting at scale
- NIST CSF 2.0 maturity assessment and gap analysis
- AI Governance through EU AI Act + ISO 42001 + NIST AI RMF lens
- GRC validation gate to catch hallucinated framework references and unsupported claims
Module 4: Assisted Detection Engineering Using AI
Bring AI into every stage of detection engineering, from drafting Sigma rules to validating them against telemetry, and then turn detection engineering back on AI systems themselves.
- AI-assisted Sigma rule generation from attacker behaviour
- AI-powered log triage, incident timeline construction, and IR report drafting
- Detection validation against real Windows Security and Sysmon logs
- Sigma detection rules FOR AI agent telemetry - tool-call anomalies, exfiltration patterns, memory-write events
Module 5: LLM Architecture
Understand the LLM internals that an attacker actually exploits, such as tokenisation, system prompt boundaries, sampling, and trust failures, because every attack starts here.
- Tokenisation deep-dive: token smuggling, homoglyphs, encoding bypass
- System prompt trust boundary failures
- Attack reliability across temperature and sampling: measuring ASR, not vibes
- Uncensored vs aligned open-weight models: behavioural comparison
Module 6: Prompt Injection & Jailbreaks
The most active LLM attack surface in 2026, direct, indirect, and multi-turn, all covered with a measured Attack Success Rate.
- Manual Crescendo + Auto Crescendo (attacker/target/judge model loop)
- Skeleton Key direct policy override
- Many-shot Jailbreak and Context Compliance Attack (CCA)
- EchoLeak reproduction - CVE-2025-32711 markdown image exfil chain end to-end
- PoisonedRAG - embedding-layer poisoning of a local FAISS / Chroma knowledge base
- Judge-model scoring, telemetry capture, and Attack Success Rate measurement
Module 7: Agentic Attacks & Red Teaming
Where the 2025-2026 attack frontier actually lives - multi-agent systems, MCP servers, memory poisoning, and automated red-team tooling, all mapped to OWASP Agentic Top 10 (ASI01–ASI10).
- Build a 3-agent system (Orchestrator + Email + File), break it with indirect injection, harden it with 3 defences
- Persistent memory poisoning across sessions, with SIEM-style detection
- Garak vulnerability scanning + aligned vs uncensored model comparison
- MCP Tool Poisoning & Rug Pulls - CVE-2025-54136 (MCPoison) and CVE 2025-54135 (CurXecute).
- PyRIT Automated Red Team - Microsoft's Crescendo and Tree-of-Attacks with Pruning orchestrators against your own targets
- Basic understanding of command-line interfaces (PowerShell / Terminal / Bash)
- Familiarity with security logs, IOCs, and MITRE ATT&CK framework
- Ability to read and make minor modifications in Python scripts
- 8 GB RAM minimum (16 GB recommended)
- 30 GB free disk space (50 GB recommended)
- Operating Systems: Windows 10/11, macOS 12+, or Ubuntu 22.04+
- GPU: Optional
- Ollama
- Python 3.10+
- Ollama models used during the sessions
- ollama pull llama3.2:3b
- ollama pull llama3.1:8b
- ollama pull dolphin-llama3
- ollama pull phi3:mini (only for systems with < 8 GB RAM)
- Access to session recordings for 60 days
- Get exclusive learning resources
Mohammed Waseemuddin
United Arab EmiratesA practical and well-structured training program for anyone looking to build real skills in AI in SecOps. The sessions were hands-on, easy to follow, and focused on current threats and real-world use cases, which made the learning experience more valuable.
Sumit Sharma
IndiaEnergetic instructor with strong knowledge, delivering a well-structured boot camp that helped build a good understanding of AI SecOps concepts.
Johnsey John
United KingdomExcellent course materials paired with a highly knowledgeable instructor who explained concepts clearly and effectively throughout the sessions.
Malaya Panda
IndiaThank you for sharing the knowledge; it was a great learning experience with many new concepts for me.
Joshua Rajarathnam
IndiaGreat bootcamp by InfosecTrain and the trainer, looking forward to an in-depth AISecOps workshop from him.
Interested in Joining the
Our advisor will contact you with event details, and exclusive offers!
131 People have registered