Program Sikkerhetsfestivalen 2026

Business Continuity & Resilience

AI-empowered Digital Twin-based Security Orchestration, Automation and Response

Tirsdag 5 · Kulturhuset Banken, Holbøsalen

EnglishDetailed 40 min

Phu Nguyen

Phu Nguyen

Senior Research Scientist at SINTEF Digital

Phu (Foo) Nguyen is a senior research scientist at SINTEF, Norway. He works in the Trustworthy Green IoT Software group, developing new tools and methodologies for software development and operation of intelligent and trustworthy systems spanning across the IoT, edge, and cloud continuum with a particular focus on sustainability. Phu has an international education and research background, from Vietnam (BSc) to the Netherlands (MSc), Luxembourg (Ph.D.), and Norway. He is highly experienced in international research projects, mostly in Europe, as well as research and development projects with industry in Norway. Many of such projects address cyber security challenges.

The digitisation leveraging technologies in the Internet of Things (IoT) and Cyber-Physical Systems (CPS) has been largely adopted together with the Digital Twin (DT) paradigm. However, the distributed and heterogeneous nature of IoT or CPS poses significant challenges in safeguarding against diverse attack surfaces, including physical devices, network infrastructures, and third-party integration. Furthermore, the evolving security threats and potential cascading effects from cyber attacks add another layer of complexity to the security landscape. In this talk, we present an AI-driven digital twin-based security orchestration automation and response framework, striving for business continuity (SOAR4BC). Leveraging system contexts from the DT in combination with security intelligence from the security tools gives us a holistic context for SOAR, which has not been seen in the existing approaches. By subjecting different types of (cyber-)security incident responses to rigorous experimental evaluation, we substantiate the efficacy and reliability of the SOAR4BC framework in detecting and responding to security (and business continuity) violations. Through this talk, we offer novel insights into the convergence of AI, digital twin technology and cybersecurity, illuminating the unique challenges and opportunities inherent in DT-based IoT and CPS systems.

  1. Your Agents Have Trust Issues: Securing AI in the "Wild West" of LLMs 1 · Frimurerlosjen, rom 1
  2. Role Confusion in DNS 1 · Frimurerlosjen, rom 2
  3. Riv PKIene 10 · HeartBox ,Teatersalen
  4. Security at Scale: Lessons learned from Equinor’s Security Configuration Initiative 10 · HeartBox, Byscenen
  5. Digitale spøkelser: KI agenter uten kontroll i norske virksomheter 11- Breiseth, Storlon
  6. OT-sikkerhet i matbransjen – noen erfaringer 2 · Home hotel Hammer, moen nede
  7. Sertifiseringen deres stopper meg ikke i døra! - Fysisk sikkerhet fra papir til praksis 2 · Home hotel Hammer, moen oppe
  8. Ingunn Nesheim 3 · Hvelvet, Gullsalen
  9. Fra kontroll til samarbeid: Slik bygger vi reell sikkerhet i leverandørrelasjoner 4 · Kommunestyresalen, Lillehammer rådhus
  10. Vet du hvor mange som jobber for deg? AI-agenter som risiko og en styringsmodell som virker 5 · Kulturhuset Banken, Expedisjon
  11. Cyberoperasjoner som sikkerhetspolitisk virkemiddel 5 · Kulturhuset Banken, Festsalen
  12. Cloud Forensics: Challenges and Best Practices 5 · Kulturhuset Banken, Kafeen
  13. Slutt å late som du jobber risikobasert! 6 · Lillehammer kino, sal 2
  14. The Average Employee Doesn’t Exist: Measuring Security Culture in Practice 6 · Lillehammer kino, sal 4
  15. State of the Union: AI in Security 2026 7 · Microbryggeriet
  16. Nobody Cares About Your Intel (Until They Do): Lessons from Building CTI That Sticks 9 · Victoria Scandic, sal 1+2
  17. Phishing dekonstruert: Hva virker og hva kan vi lære av det? 9 · Victoria Scandic, sal 3