Program Sikkerhetsfestivalen 2026

Cloud & Security Architecture

Hawaii Pizza – How dare you? (or do I really care?)

Tirsdag 10 · HeartBox, Byscenen

EnglishDetailed 40 min

Øystein Balstad

Øystein Balstad

Chief Information Security Officer

Øystein er CISO og sikkerhetsarkitekt i Defendable og jobber daglig med å sørge for at både egen virksomhet og dens kunder kan håndtere sitt risikobilde.

Øystein er utdannet Forvaltningsinformatiker fra UiO og har erfaring fra flere sektorer. Han arbeider både strategisk, taktisk og operasjonelt med å gjøre sikkerhet til en muliggjører i virksomheten med en filosofi om at sikkerhet ikke har en egenverdi - sikkerhet er en egenskap av noe annet.

Maurice Smit

Maurice Smit

vCISO & Enterprise Security Architect at HelloRisk

Maurice is a Fractional CISO and Enterprise Security Architect with over 25 years of experience across the information security spectrum. He served as a Founding Member and Deputy Chief

Architect on the Board of Trustees at The SABSA Institute, and is now the Chair of the Dutch ISC2

chapter.

Is anything groundbreaking anymore? To what extent have the concepts and structures of cybersecurity evolved as years have gone by? Has AI lulled us into a bubble of comfort and consumption to the extent that we have forgotten how to think for ourselves? Are we simply consuming rather than developing or evolving?

When we look at LinkedIn and conference programs in our line of work it’s all the same – posts and sessions where everyone is basically nodding due to the affirmative, and a confirmation that we all face the same challenges. It’s the subject matter community showcasing to each other what they do, and very often copying some neighbor at some point. But rarely do we change, rarely do we take matter into our own hands and do something about the challenges we’re facing.

Is AI to blame, or are we simply too fooled by the glossy sales pitches and the notion of “AI as the groundbreaking technology for- and against cybersecurity”?

From the perspective of two security architects, this talk will enlighten all these different issues through a less glossy lens. We will dive into different architectural concepts and methods, challenge a few of the common notions and provide both food for thought as well as our suggestions for how to break out of the bubble and into a more pragmatic and reality-oriented world. This will be done using storytelling and the allegory of the evolution of pizzas.

And now: stop chasing technologies, start modelling your organization properly, and every new development becomes a manageable substitution rather than an existential crisis “

  1. Insecure Vibes: The Risks of AI-Assisted Coding 1 · Frimurerlosjen, rom 1
  2. When defenders go low, we go high(level) - bypassing application control using stage 1 beacons 1 · Frimurerlosjen, rom 2
  3. PQC-migrasjon for store virksomheter 10 · HeartBox ,Teatersalen
  4. Sikkerhetskrav i randsonen: Slik treffer sikkerhetskravene underleverandørene 11- Breiseth, Storlon
  5. A Recipe for Resilience: Using Purdue and IEC 62443 to Secure Europe's Food Supply 2 · Home hotel Hammer, moen nede
  6. The Endpoint that walks: Mobile Devices as Physical Security Risks 2 · Home hotel Hammer, moen oppe
  7. Innsiderisiko: forskningsperspektiver og foreløpige funn 3 · Hvelvet, Gullsalen
  8. Sykt mange sikkerhetskrav i offentlig anskaffelse: Må det være sånn? 4 · Kommunestyresalen, Lillehammer rådhus
  9. En felles IAM-virkelighet for offentlig sektor, er det mulig? 5 · Kulturhuset Banken, Expedisjon
  10. Maritime næring i skuddlinjen - erfaringer fra dagene da USA og Israel angrep Iran 5 · Kulturhuset Banken, Festsalen
  11. Når tiden forsvinner. Strategier for fremtidens digitale beredskapsarbeid 5 · Kulturhuset Banken, Holbøsalen
  12. AI i digital etterforskning 5 · Kulturhuset Banken, Kafeen
  13. Maverick RiskJockey: en AI-drevet CISO-funksjon 6 · Lillehammer kino, sal 2
  14. 10 «dumme» spørsmål - og hva de avslører om sikkerhetskulturen 6 · Lillehammer kino, sal 4
  15. Podcast O3C 7 · Microbryggeriet
  16. Et tu, vendor? A story of vendor ransomware leaks and heartaches 9 · Victoria Scandic, sal 1+2
  17. Multi-Agent Orchestration to Catch Bad Guys 9 · Victoria Scandic, sal 3