Artificial Intelligence & Emerging Tech Security

CA306: Security of Emerging Intelligent Systems

Course authored by:

Drinor Selmanaj, Perparim Mjeku, Rinor Shehu, Altin Gashi

27 Hours of Instruction

Includes lectures, guest speakers, and Q&A sessions

Hands-on
labs

6 Labs

Live Online or On-Demand Access

Join weekly synchronous sessions or access all material and recorded lectures anytime

Intermediate Level

Developing practical skills and deepening understanding of core concepts

Prerequisite

  • CA401 Linux Operations
  • CA403 Windows Security
  • CA402 Network Security

Course Overview

When a system makes autonomous decisions, a compromised model doesn't just leak data — it causes physical consequences. This course builds practical capability in securing AI-driven, autonomous, and cyber-physical systems across sensing, control, and decision-making layers. You analyze how vulnerabilities propagate through interconnected environments and apply structured approaches to threat modeling, trust management, and resilience engineering. By the end, you can assess and secure next-generation intelligent systems against evolving threats.

What You’ll Learn

* Identify vulnerabilities across AI models, autonomous systems, and cyber-physical environments
* Analyze adversarial ML threats including evasion, poisoning, and model exploitation
* Apply threat modeling techniques tailored to interconnected and real-time systems
* Design security controls that address both digital integrity and physical safety
* Implement monitoring, anomaly detection, and autonomous response strategies

Business Takeaways

* Reduce risk by understanding how cyber attacks translate into physical consequences
* Strengthen protection of critical infrastructure including transportation, utilities, and smart cities
* Mitigate supply chain risks across hardware, software, and AI components
* Support compliance with emerging regulations around cyber-physical and AI systems

Syllabus: 5 Sections to Transformation

The CA306 program explores the security of intelligent and cyber-physical systems, where software decisions directly impact the real world. It spans everything from AI model vulnerabilities to sensor-level attacks and large-scale interconnected infrastructure risks.

syllabus overview

Justify Training to Your Manager

section 1

FOUNDATIONS: INTELLIGENT SYSTEM SECURITY

Understand how AI, autonomous systems, and cyber-physical systems merge digital and physical risk.
Examine how system architecture and trust relationships influence real-world security outcomes.

TOPICS COVERED

  • Intersection of digital logic and physical systems.
  • Five-layer architecture (Physical, Sensing, Control, Decision, Coordination).
  • Trust models and system interaction pathways.
  • Attack surface vs consequence surface.
  • Risk categories (Loss of Control, View, Manipulation).

LABS

  • 5 Layers Architecture Mapping

section 2

AI SECURITY: MODEL WEAKNESSES & ATTACKS

Shift into how intelligent models behave under adversarial conditions.
Analyze how small input changes can break systems that appear highly accurate.

TOPICS COVERED

  • Machine learning lifecycle (data, training, deployment)
    Types of machine learning systems.
  • Evasion attacks across image, text, and time-series data.
  • Gradient-based adversarial techniques.
  • Data poisoning and hidden backdoors.
  • Model extraction and inversion risks.

LABS

  • Adversarial Input Simulation

section 3

AUTONOMOUS SYSTEMS & SENSOR SECURITY

Move into systems that interact with the physical world through movement and perception.
Evaluate how sensors, control logic, and communication channels become attack vectors.

TOPICS COVERED

  • Autonomous system architecture and control flow.
  • Navigation attacks (GPS spoofing).
  • Command and control channel security.
  • Multi-sensor fusion vulnerabilities.
  • Hardware roots of trust and embedded security.
  • Firmware, protocols, and edge device risks.

LABS

  • GPS Spoofing Scenario Analysis

  • Sensor, Decision & Action chain Analysis

section 4

SMART INFRASTRUCTURE & SUPPLY CHAIN SECURITY

Expand into large-scale intelligent environments and interconnected systems.
Understand how dependencies and external components introduce systemic risk.

TOPICS COVERED

  • Smart infrastructure and connected environments.
  • Critical systems (transportation, utilities, public safety).
  • Cascading failures in interconnected networks.
  • Digital simulation and system modeling.
  • Hardware and software supply chain risks.
  • SBOM concepts and secure distribution.

LABS

  • Infrastructure Cascade Failure Analysis

section 5

MONITORING, DETECTION & RESILIENCE

Conclude with defensive strategies for detecting and responding to system anomalies.
Focus on maintaining reliability even when systems are partially compromised.

TOPICS COVERED

  • Observability in complex systems.
  • Behavioral anomaly detection.
  • Large-scale monitoring strategies.
  • Automated response and recovery.
  • Resilience and fail-safe design principles.

LABS

  • Architecture Design Anomaly

Course Schedule
& Pricing

Looking for Group Purchase Options? See below

Next Start Date

March 5, 2026

Duration

14 Weeks Intensive

Format

Live with Zoom Meeting

What's Included

499€

Seats Filling Fast for January 2026

Location

Start Date

Start Time

Prishtina, Kosovo

March 20, 2026

10:30 AM (CEST)

Prishtina, Kosovo

April 15, 2026

4:30 PM (CEST)

Prishtina, Kosovo

May 10, 2026

11:00 AM (CEST)

Next Start Date

March 5, 2026

Duration

14 Weeks Intensive

Format

Live with Zoom Meeting

What's Included

499€

Seats Filling Fast for January 2026

Location

Start Date

Start Time

Prishtina, Kosovo

March 20, 2026

10:30 AM (CEST)

Prishtina, Kosovo

April 15, 2026

4:30 PM (CEST)

Prishtina, Kosovo

May 10, 2026

11:00 AM (CEST)

Next Start Date

March 5, 2026

Duration

14 Weeks Intensive

Format

Live with Zoom Meeting

What's Included

499€

Seats Filling Fast for January 2026

Location

Start Date

Start Time

Prishtina, Kosovo

March 20, 2026

10:30 AM (CEST)

Prishtina, Kosovo

April 15, 2026

4:30 PM (CEST)

Prishtina, Kosovo

May 10, 2026

11:00 AM (CEST)

Frequently Asked Questions

Mission-critical information for prospective operatives

Why do intelligent systems introduce new cybersecurity risks?

Intelligent systems combine software, sensors, autonomous decision-making, and physical operations into a single operational chain. This means attackers can influence not only data, but also real-world actions such as movement, routing, industrial control, and autonomous behavior, turning cyber compromise into physical consequence.

Machine learning systems rely on patterns and statistical correlations rather than true understanding. Because of this, small manipulations in data or inputs can mislead models and cause incorrect decisions, even when the system appears to operate normally.

Adversarial attacks manipulate AI inputs in subtle ways to force incorrect predictions or classifications. These attacks can target images, text, sensor data, or sequential systems while remaining difficult for humans or traditional validation systems to detect.

Autonomous systems operate at a speed and scale where humans cannot constantly verify every action. Because of this, systems must rely on strong identity, hardware-backed trust, attestation, and continuous validation to ensure devices and services are authentic and operating in a trustworthy state.

Resilient systems are designed with the assumption that software and decision logic may eventually fail. Instead of relying entirely on software trust, resilient architectures use safeguards such as semantic integrity checks, hardware interlocks, safety systems, and independent emergency controls to prevent digital compromise from becoming uncontrolled physical impact.