Advanced
AI Automation for Red, Blue and Purple Teams
This advanced course in Toronto is about applying AI automation across a whole security function, offence, defence, and the purple team collaboration between them. You will build agents that measurably reduce operator workload on real tasks.
The discipline that separates useful automation from dangerous automation is knowing which decisions must never be delegated to a model. That judgement runs through every exercise, whether you are emulating an adversary or triaging an alert queue.
- Duration
- 8 weeks
- Format
- Live online, instructor-led
- Prerequisites
- AI Powered Security Automation with Python
- Class size
- Capped at 12 learners

What you will be able to do
- Identify security tasks where AI automation genuinely pays off
- Build agents that assist red, blue, or purple work
- Measure the workload an automation actually removes
- Apply a clear rule for which decisions stay human
- Integrate automation into existing team workflows
- Recognize and avoid the failure modes of over-automation
Course outline
6 modules
- Task selection across red, blue, and purple work
- Cost, risk, and payoff of automating a task
- The line between assistance and autonomy
- Measuring workload before and after
What you need before you start
- You have completed AI Powered Security Automation with Python or equivalent
- You work in a red, blue, or purple team role
- You can build a Python tool that calls an API and a model
- You are willing to measure results rather than assume benefit
Who this course is for
- Red, blue, and purple team members adopting AI
- Team leads deciding where automation is worth the risk
- Security engineers building shared team tooling
- Operations managers measuring the value of AI investment
Questions about this course
More in ai security
Ready to launch your cyber security career?
Join the next live online cohort. No experience required, just bring the curiosity.



