SANS report finds AI and compliance are reshaping cybersecurity roles
SANS's 2026 Cybersecurity Workforce Research Report, based on 947 respondents across six regions, found AI is reshaping security teams faster than governance and training are keeping up. Seventy-four percent reported changes to team size or role structures, but only 38% provide comprehensive AI security training. Regulatory impact on hiring rose from 40% in 2025 to 95% in 2026, increasing demand for verified specialist skills.
SANS's third annual Cybersecurity Workforce Research Report surveyed 947 cybersecurity leaders, practitioners, and HR professionals across six regions. The results point to a workforce problem centered less on unfilled seats than on skills: 60% of respondents said capability gaps were the larger challenge, compared with 40% who chose staffing shortages.
AI is changing roles faster than training
SANS reported that 74% of organizations are already seeing AI affect security-team size or role structures. Most of the measured change was about work design rather than broad job elimination: 49% reported less manual analysis, 48% cited workflow automation, and 16% reported headcount reductions.
Governance and training have not kept pace. Although 54% said they have AI governance policies, only 21% reported a comprehensive AI security framework and 38% provide comprehensive AI security training. Among organizations adding roles, 34% had filled AI/ML security specialist positions, 32% added AI security engineers, and 30% employed AI governance analysts.
Compliance is widening specialist demand
The share of organizations saying regulatory directives affect hiring rose from 40% in 2025 to 95% in 2026. SANS also reported that demand for new specialist roles increased from 23% to 53%, while adoption of the NICE or European Cybersecurity Skills Framework rose from 46% to 56%. NIS2, CMMC, DORA, DoD 8140, and SEC requirements were among the cited drivers.
Independent Help Net Security coverage reached the same central conclusion: AI automation is changing the mix of security work while experienced practitioners remain difficult to recruit. It also highlighted the growing use of certifications and workforce frameworks to document skills.
For security leaders, the practical distinction is between buying an AI tool and building a team that can govern it. LDS interprets the report as support for pairing automation programs with role definitions, baseline AI-security training, documented competencies, and escalation paths. The survey measures reported workforce practices rather than proving that any one staffing model improves security outcomes.
Key Points
- 1SANS surveyed 947 respondents across six regions; 60% identified skills gaps as the larger workforce problem, versus 40% citing staffing shortages.
- 2Seventy-four percent said AI is affecting team size or role structures, but only 38% provide comprehensive AI security training.
- 3Regulatory impact on hiring rose from 40% to 95% year over year, while demand for new specialist roles increased from 23% to 53%.
Scoring Rationale
The third annual SANS and GIAC report provides useful workforce and training signals from 947 respondents across six regions. Its AI-governance, skills-gap, and regulatory-hiring findings are relevant to security leaders, although it is a survey rather than a new model, tool, regulation, or causal study.
Sources
Primary source and supporting public references used for this report.
Practice interview problems based on real data
1,625 SQL & Python problems across 15 industry datasets — the exact type of data you work with.
Try 250 free problems
