Security Notes
Study tracks

AI Security Engineer Track

AI security is the fastest-growing area in security job ads: in 2026 about 30% of cybersecurity postings asked for AI skills, double the year before. The role sits between application security and cloud security: securing products built on language models and agents, and the tools engineers use every day. This track takes you from prompt injection to agent design to interview-ready threat models.

2 min read 5 sections verified 2026-10
Opens each topic in order with a Next button at the bottom of the screen.

Last verified2026-10

Getting certified

Last verified2026-10

No dominant certificate yet

Interviewers care far more about whether you can threat-model an agent than about a credential.

ISACA AAISM (Advanced in AI Security Management)

Launched in 2025 for security managers. You can sit the exam first, but the certification is only awarded to holders of an active CISM or CISSP. It covers AI governance, risk and controls.

IAPP AIGP (AI Governance Professional)

Governance- and privacy-focused, popular in legal and compliance-heavy organisations.

Prove it instead

A threat model of a real agent, a write-up of an MCP server review, or a small red-team harness for a chatbot is stronger evidence than any of these.

Part 1 — How language-model applications fail

Part 2 — Agents and MCP

Part 3 — The security engineering underneath

Part 4 — Attackers using AI