Train to become OSAI+ certified

AI-300 (OSAI+)
Advanced AI Red Teaming

The OffSec AI-300 teaches you advanced skills in the field of AI Red Teaming. You will learn how to specifically analyze and attack AI and machine learning systems and uncover vulnerabilities. The focus is on real-life attack scenarios against modern AI applications – from prompt injection to the manipulation of models and data. Through practical labs, you will develop a deep understanding of the security risks and defense measures in the environment of AI systems.

Included services

Your added value with the Red & Blue Alliance

  • Training with a strong practical orientation
  • Individually selected OffSec license (Course & Cert, Learn One, Learn Enterprise)
  • Professional team of trainers with many years of practical experience in IT security companies
  • Course language English – trainers are at least bilingual (DE/EN)
  • Catering included during the training days (for public face-to-face training courses)
  • Trainer support included – even after the course: Our Discord channel provides you with direct exchange with trainers, professional support and targeted guidance on your way to certification.

Aims of the training

AI-300 (OSAI+)

The training enables you to systematically check AI systems and assess their security risks.

  • You analyze AI and ML systems from an attacker’s perspective
  • You identify vulnerabilities in AI applications
  • You carry out targeted attacks (e.g. prompt injection)
  • You assess the risks and impact of AI attacks
  • You develop strategies for securing AI systems

This allows you to realistically test modern AI systems and make a sound assessment of their security level.

Target group & requirements

Target group

The course is aimed at experienced security specialists who want to deal with the protection and testing of AI systems.

  • Penetration Tester & Red Teamer
  • Security analysts with a focus on new technologies
  • AI/ML Engineers with an interest in security
  • Application security specialists

Ideal for you if you work or would like to work at the interface of cybersecurity and artificial intelligence.

Prerequisites

The course requires advanced knowledge of IT security and a basic understanding of AI.

  • Sound knowledge of IT security / penetration testing
  • Basic understanding of machine learning and AI concepts
  • Experience with web and API security
  • Basic knowledge of scripting or programming (e.g. Python)
  • Analytical and creative thinking

Experience at PEN-200 or WEB-200/300 level is an advantage.

Seminar content

Contents of the AI-300 (OSAI+)

The focus is on attack techniques and security analyses specifically for AI systems.

  • AI/ML Fundamentals for Security
    The basics of machine learning from an attacker’s perspective
  • Threat Modeling for AI Systems
    Identification of attack surfaces in AI architectures
  • Prompt Injection & LLM Attacks
    Manipulation of LLMs and AI-supported applications
  • Data Poisoning Attacks
    Manipulation of training data to influence models
  • Model Evasion Techniques
    Evasion of detection mechanisms in ML systems
  • Adversarial machine learning
    Creation of targeted inputs to deceive models
  • API & Integration Attacks
    Attacks on AI APIs and connected systems
  • Defense & Mitigation Strategies
    Development of protective measures for AI systems
  • AI Red Teaming Methodology
    Structured implementation of security assessments for AI

The aim is to understand AI systems holistically, attack them in a targeted manner and derive effective security measures.

The right license for your requirements

With Course & Cert, Learn One and Learn Enterprise, we offer three different learning models – from targeted certification to comprehensive, scalable training. The following overview shows the most important differences at a glance.

Course & Cert

The classic entry option for a single course.

  • 1 course + certification
  • 90 days Lab access
  • 1 examination attempt
  • Download the course materials

Ideal for you if you want to prepare specifically for certification

👉 In short: focused, affordable, but not very flexible

Learn One

Your annual subscription with significantly more options.

  • 1 200 or 300 level course + certification
  • 365 days Lab access
  • 2 exam attempts
  • Access to exercise environments, challenge labs and learning paths
  • Download the course materials

Ideal for you if you want to build up several skills or broaden your base

👉 In short: flexible, comprehensive, highly practice-oriented

Learn Enterprise

The corporate solution for structured team training.

  • Unlimited choice of courses
  • 6 examination attempts/certification per year
  • 365 days Lab access
  • Central management of users, progress and licenses
  • Reporting & analytics for training progress
  • Individual learning paths for different roles (e.g. SOC, Pentest, Blue Team)
  • Scalable for larger teams or entire departments

👉 In short: scalable, controllable, ideal for strategic training

Fancy more?

Find the training course that suits you!