Chief AI Officer at SANS and the godfather of DFIR, he helps businesses adopt AI securely— where AI security and cybersecurity go hand in hand, and you can't forgo either.






A fully autonomous attack, reviewed by the responders who lived through it.
Your AI tools may refuse to help mid-incident.
Deception just got cheap and effective.
Someone must be able to shut a high-risk agent down.
Machine-speed exploitation, a 13-item risk register, and 11 priority actions for security leaders.
Protect, Utilize, Govern — a three-pillar model for adopting AI without losing control.
How traditional security approaches drive shadow AI adoption — and what to do instead.
Practical steps to move from shadow AI chaos to working governance without 18-month frameworks.
Why AI conversation logs represent an unprecedented security challenge for organizations.
Defined how modern incident response works, shaped national-security policy, and trains the teams defending the world's most critical systems.
Methodologies for discovering and managing unauthorized AI deployments across the enterprise.
Comprehensive frameworks for responsible AI implementation and compliance.
Attack vectors and defense strategies for securing AI systems in production.
Risk assessment methodologies built for real enterprise AI deployments.
Rob leads the world's most trusted AI security training and research at SANS — developed by practitioners, for practitioners.
Visit the SANS AI Security HubOwning AI securely means addressing all three dimensions at once. Protecting AI without utilizing it leaves capability on the table. Utilizing it without governance risks chaos. And governance without technical protection creates a false sense of security.
Defend models, applications, and data pipelines from tampering, poisoning, prompt injection, and other adversarial techniques — from development through deployment.
Integrate AI into SOC workflows, threat hunting, and incident analysis to improve detection, response, and resilience — matching attacker speed and scale.
Translate complex AI regulations into actionable governance frameworks boards can implement — clear structures, real compliance, aligned with enterprise risk.

Twenty years turning how the world investigates digital crime into how it will defend against autonomous AI.
A former U.S. Air Force officer who later served with the NSA and CIA, Rob is Chief AI Officer and Chief of Research at SANS Institute and a Technical Advisor to the Foreign Intelligence Surveillance Court. He created the SIFT Workstation, coined the terms DFIR and CTI, and has trained more than 100,000 professionals.
Full biographyA clear language and structure for AI literacy at the board level — from someone who has built the programs and read the breach reports.
What adoption actually looks like when tools get ahead of policy, and how to set guardrails early without killing momentum.
How adversaries already use AI to scale attacks and break defenses — drawn from national-security and incident-response work.
What readiness looks like across SOCs, C-suites, and startups, from decades spent building the global cyber workforce.
Occasional, practical notes on leading secure AI transformation.