Frank Kim
FellowVenture Advisor at YL Ventures
Specialities
Cybersecurity Leadership, Cloud Security
Experience SANS training through course previews.
Learn MoreLet us help.
Contact usConnect, learn, and share with other cybersecurity professionals
Engage, challenge, and network with fellow CISOs in this exclusive community of security leaders
Become a member for instant access to our free resources.
Sign UpMission-focused cybersecurity training for government, defense, and education
Explore industry-specific programming and customized training solutions
Sponsor a SANS event or research paper
We're here to help.
Contact UsCybersecurity Leadership, Cloud Security
Frank Kim is a SANS Fellow where he leads the Cloud Security and Cybersecurity Leadership curricula to help shape and develop the next generation of security leaders. Previously, he served as the organization's CISO where he led the information risk function for the most trusted source of cybersecurity training and certification in the world. He was also the CISO-in-Residence at YL Ventures where he supported cybersecurity entrepreneurs with ideation and market research, conducted due diligence for potential investments, and engaged in go-to-market activities of the firm's portfolio companies. Frank continues to serve as an advisor to numerous security startups and authors and teaches courses on CISO leadership, strategic planning, DevSecOps, and cloud security. Frank is also the author and instructor of LDR512: Security Leadership Essentials for Managers, LDR514: Security Strategic Planning, Policy, and Leadership, and co-author of SEC540: Cloud Security and DevSecOps Automation.
Frank Kim is an awesome instructor! His teaching style is great and his grasp on the course material, live examples and ability to bring people together is exceptional!! This course beats taking 3 months certificate courses at top tier schools from practical contents and learning perspective!!
Frank is fantastic! His style, humor, real-world examples & willingness to consider questions is SUPER!
Frank impresses me more each day. He really brings the content to life - admire his energy, excitement, sense of humor and he knows this content exceedingly well.
Here are upcoming opportunities to train with this expert instructor.
Explore content featuring this instructor’s insights and expertise.
Not sure how to make the leap from engineer to manager? Questioning whether or not you really want a leadership position? Unclear if you really have what it takes to be a CISO? Come hear real world case studies and learn tips and tools to help you on your path and take the next step in your career.
Where can you find leaders from Cloud Security Controls and Mitigations, and SANS Institute together on one virtual stage? Attend our second-annual, 100% free, online Cloud Security Exchange to learn what’s working and what’s not working in cloud security architecture and cloud threat detection. Build leading cloud security capabilities at your organization with implementation best practices from the world’s foremost cloud security experts.Thousands from around the globe joined us for the inaugural Cloud Security Exchange in 2022 to hear from cloud security experts from SANS Institute and the world’s top cloud security providers. It worked so well that we’re doing it again!We are SO excited to bring you the Cloud Security Exchange 2023 on Friday, August 18th! To view the full agenda, lineup of guest speakers, and details about this event, please visit our event landing page.Download the presentations by logging into your SANS portal and hit download slides.
Artificial Intelligence, Large Language Models (LLMs), Generative AI (GenAI), and transformers have made headlines since ChatGPT was released at the end of 2022. Now every security organization is considering how GenAI will impact their customers and business. As a result, security professionals have to understand how these technologies work and, importantly, how to use them securely. Come learn what is being done to secure the 1) usage of GenAI 2) development of AI models and 3) integration of GenAI functionality into business applications.
Not sure how to make the leap from engineer to manager? Questioning whether or not you really want a leadership position? Unclear if you really have what it takes to be a CISO? Come hear real world case studies and learn tips and tools to help you on your path and take the next step in your career.
このWebcastでは、セキュリティエンジニアがキャリアを次のステップに進めるためのヒントや活用できるツールを、実際のケーススタディを通じて紹介します.
Join us for an interactive SANS Day where cybersecurity experts and enthusiasts come together to explore the latest trends, challenges, and innovations in the field. This event promises a full day of insightful presentations, hands-on experiences, and valuable networking opportunities, and is designed for professionals at all levels. You will have the opportunity to engage with SANS Instructors and hear their insights on cybersecurity threats, customer landscape, AI, and how you can continue to development and advance in your career path. This is a must attend event for anyone passionate about staying ahead in the rapidly evolving world of cybersecurity. Don't miss out on the chance to learn, engage, connect, and grow in your cybersecurity journey!
Join us for an interactive SANS Day where cybersecurity experts and enthusiasts come together to explore the latest trends, challenges, and innovations in the field. This event promises a full day of insightful presentations, hands-on experiences, and valuable networking opportunities, and is designed for professionals at all levels. You will have the opportunity to engage with SANS Instructors and hear their insights on cybersecurity threats, customer landscape, AI, and how you can continue to development and advance in your career path. This is a must attend event for anyone passionate about staying ahead in the rapidly evolving world of cybersecurity. Don't miss out on the chance to learn, engage, connect, and grow in your cybersecurity journey!
Learn about five timeless trends that security leaders and CISOs must constantly keep in mind to improve their security programs, their teams, and themselves.
Get ready to dive into the ultimate cloud security experience! Mark your calendars for SANS Cloud Security Exchange 2024 on Tuesday, August 27th, at 11:00 AM ET (15:00 UTC). Where else can you find top-notch experts from the world’s leading cloud security providers all on one virtual stage? Right here, of course!This event, completely free of charge, offers a rare chance to learn rom the best in the business. Don’t miss out! Register for FREE. Discover what’s working and what’s not working in cloud security design, identity modernization, and Generative AI (GenAI) security. Hear where to start your cloud security journey, how to evolve your cloud security controls, and adopt modern best practices straight from the cloud providers and world’s foremost cloud security experts.Last year, thousands from around the globe joined us, and this year promises to be even bigger and better. Hear from renowned experts representing SANS Institute, Amazon Web Services (AWS), Google Cloud, and Microsoft Azure. The success of our past events has paved the way for another remarkable exchange of knowledge.Even if your schedule doesn’t allow for live attendance, be sure to register anyway! This way, you’ll have first access to free recordings and materials.
CISOs and security leaders are under increased scrutiny and pressure, not only from internal leadership, but also from external requirements like the updated SEC rules and NIS2 changes in Europe. We'll cover this new regulatory landscape, how to best communicate with the board, and how to build your business case in response to technology shifts like GenAI. Come learn about the top three CISO strategic issues and what you as a modern security leader can do about them.
Part 1: Building a Cloud Security Strategy: A Step-by-Step GuideIn this session, SANS Institute experts will guide you through the key steps in developing a robust cloud security strategy. Whether you're just starting or looking to strengthen your approach, this webcast covers everything from understanding your cloud environment to building a threat detection program and preparing for incident response.
Part 2: Secure by Design: Elevating Security Beyond DefaultsIn Part 2 of this series, we focus on how Secure by Design (SbD) shifts development approaches to integrate security from the ground up, reducing risks early and creating systems that are resilient and secure by default.
Part 3: Modernizing Identity: Navigating Challenges and Embracing Cloud SolutionsIn Part 3, we tackle the pressing need for identity modernization as organizations transition from legacy systems to cloud-based applications. As outdated protocols and misconfigurations become more prevalent, this webcast will explore the benefits of modern identity solutions and their role in enhancing security through conditional access and zero trust principles.
Modern security leaders must deal with an endless barrage of changes to the business, technology, and threat landscape.
Part 4: Evolving Cloud Security with a Modern ApproachIn this session, we'll explore how organizations can adapt their security practices to fit the dynamic nature of cloud infrastructure. While the cloud isn't inherently insecure, traditional on-premises security techniques often fall short. We'll dive into the shared responsibility model between cloud providers and users, the advantages of cloud-native security controls, and how AI tools can aid automation and threat detection-without losing sight of the critical role of human analysts.
Part 5: Key Insights from Cloud Security Experts: Straight Talk on Cloud SecurityIn this final session, industry leaders reflect on key lessons from the series, highlighting critical aspects of cloud security, such as the shared responsibility model, evolving security architectures, and the role of continuous monitoring. As AI and advanced tools for threat detection continue to grow, the panelists share advice on staying ahead of the curve by focusing on long-term security strategies and fostering collaboration between security teams and cloud providers.
Improving Windows Event Log Analysis with Yamato Security Tools presented by SANS Certified Instructor Zachary Mathis and Top Five Cloud Security Trends and Tips with SANS Professor Frank Kim.
Prepare for the Next Era of Cloud Security
Review relevant educational resources made with contribution from this instructor.