What You Will Learn

This intensive 2-day workshop equips enterprise teams with the knowledge and hands-on skills to secure AI systems across the full stack — from RAG pipelines and AI agents to MCP tool integrations and production operations. Participants will work through a battle-tested six-layer security blueprint while building real defenses against the attacks that matter most: document poisoning, prompt injection, agent manipulation, tool abuse, and data exfiltration. Every concept is reinforced with hands-on labs where attendees first observe attacks succeeding on vulnerable systems, then implement and verify layered defenses. By the end, participants will have a concrete implementation roadmap and practical experience with the security controls needed to deploy AI responsibly at enterprise scale.

Duration: 2 days (6 hours per day, 12 hours total)

Lab Environment: GitHub Codespace with pre-configured Python, Node.js, and security tooling

Target Audience: Software engineers, security practitioners, DevOps/platform engineers, engineering managers, architects, and technical leaders responsible for building or governing AI systems. Content is primarily technical but structured so that leaders and decision-makers gain the strategic context needed to fund, prioritize, and oversee AI security initiatives.

Prerequisites:

  • Basic familiarity with Python (reading and running scripts)
  • General understanding of how LLMs and AI applications work
  • A laptop with a modern browser (Chrome recommended) and GitHub account
  • No prior AI security experience required

What Participants Will Learn:

  • How AI systems differ from traditional software from a security perspective
  • The OWASP Top 10 for LLM Applications (2025) and how each risk manifests in real systems
  • A six-layer enterprise AI security blueprint covering identity, data boundaries, prompt defenses, model governance, audit trails, and operational controls
  • How to detect and defend against document poisoning in RAG systems
  • How to build multi-agent systems with enterprise-grade budget enforcement
  • How to secure agents against goal hijacking, data exfiltration, and privilege escalation
  • How to implement authentication, authorization, and per-tool scopes for MCP servers
  • How to build defense-in-depth MCP security with rate limiting, input validation, and output sanitization
  • How to design PII tokenization and multi-tenant isolation pipelines
  • How to implement structured audit logging for compliance and incident response
  • How to build operational controls including kill switches and cost caps
  • How to create an implementation roadmap tailored to their organization's maturity

What Participants Will Take Away:

  • Hands-on experience with 16 security labs covering attack and defense scenarios
  • A reusable six-layer security blueprint framework
  • Code samples and patterns for every defense technique covered
  • An implementation roadmap with phased rollout guidance
  • A Monday-morning checklist for immediate action

Training Includes

  • World-Class Instructors
  • Registration & Breakfast: 8AM - 9AM
  • Training Schedule: 9AM - 5PM
  • Lunch will be served: 12PM
  • Attendance is Limited to 35
  • Training Materials
  • Hands-On Labs
  • Certificate of Completion
  • Breakfast and Lunch Daily
  • NFJS Swag
St. Louis Marriott West
660 Maryville Centre Drive
St. Louis, MO 63141
314-878-2747
St. Louis Marriott West
Travel Details