Loading...

CSR IOSEC

International workshop on Information & Operational Technology security, (IOSEC) 2026

Lisbon, Portugal (in-person event) • August 3–5, 2026


The recent advancements in Information and Communication Technologies (ICT) have given the opportunity to private and public entities, including Critical Infrastructures and other Operators of Essential Services (OES), to offer new and innovative services while lowering their operational costs. These advancements however, are often hastily adopted without proper evaluation of their impact on security, leaving current Information Technology (IT) and Operation Technology (OT) systems vulnerable to various kinds of cyber-attacks. The CSR IOSEC Workshop aims to bring together viewpoints from diverse areas to explore the commonalities of security problems and solutions for advancing the collective science and practice of IT and OT security.

The IOSEC workshop has been successfully organized since 2018, bringing together multiple EU research projects that demonstrated high-quality contributions in the area of cybersecurity. This year, the workshop is supported by the EU-funded projects  CUSTODES (https://custodes-project.eu/), CONSOLE (https://www.consoleproject.eu/), 6GXCEL (https://www.6g-xcel.eu/), CONSENTIS (https://consentis-project.eu/), CYBERSECDOME (https://cybersecdome.eu/), SAND5G (https://sand5g-project.eu/), CURIUM(https://curium-project.eu/), NATWORK (https://natwork-project.eu/), INTACT (https://intact-horizon.eu/), and is expected to enable discussions of state-of-the-art and emerging topics in areas that include (but not limited to):

 

Topics of Interest

› Security architectures and frameworks for enterprises, SMEs, public administration, or critical infrastructures
› Threat modeling, detection, analysis, classification and profiling
› Artificial intelligence (AI)/machine learning (ML) and generative AI in cybersecurity
› Vulnerability risk assessment and management
› Secure and resilient software development

› Identity Management & Privacy enabling technologies
› Cybersecurity certification
› Cyber threat intelligence and collaborative defense
› Advancements in tools, processes, and approaches for security operations centers (SOC)
› Intrusion detection and prevention

Important Dates

Paper submission deadline: April 13, 2026 May 13, 2026
Authors’ notification: May 4, 2026 June 4, 2026
Camera-ready submission: May 25, 2026 June 25, 2026
Registration deadline (authors): May 25, 2026 June 25, 2026
Workshop dates: August 3–5, 2026

Submission Guidelines

Submitted manuscripts should not exceed 6 pages (plus 2 extra pages, being subject to overlength page charges) and should be of sufficient detail to be evaluated by expert reviewers in the field. The workshop’s proceedings will be published by IEEE and will be included in IEEE Xplore subject to meeting IEEE Xplore’s scope and quality requirements.

The guidelines for authors, manuscript preparation guidelines, and policies of the IEEE CSR conference are applicable to IOSEC workshop. Please visit the authors’ instructions page for more details. When submitting your manuscript via the conference management system, please make sure that the workshop’s track 2T12 IOSEC is selected in the Topic Areas drop down list.

Workshop Committees

Workshop Chairs


Konstantinos Lampropoulos
University of Patras (GR)


Ciprian Oprisa
Technical University of Cluj-Napoca (RO)

Contact Us

klamprop@ece.upatras.gr
ciprian.oprisa@cs.utcluj.ro

Organizing Committee

Manos Athanatos, Technical University of Crete (GR)
Eva Rodriguez Luna, Universitat Politècnica de Catalunya (ES)
Vasileios Mavroeidis, University of Oslo (NO)
Jasmin Cosic, DEKRA (DE)
Mays Al-Naday, University of Essex (UK)

Technical Program Committee

Angeliki Aktypi, University of Cyprus (CY)
Serge Autexier
, DFKI – German Research Center for Artificial Intelligence (DE)
Mateusz Zych, University of Oslo (NO)
Christos Chrysoulas, Heriot-Watt, University, Edinburgh (UK)
Rodrigo Diaz, i2cat (ES)
Charles Frick, Johns Hopkins University APL (US)
Habtamu Abie, Norwegian Computing Centre (NO)
Fady Copty, Microsoft (US)
Kostas Fysarakis, Automaton Technologies Ltd  (CY)
Sotiris Ioannidis, Technical University of Crete (GR)
Lucian Itu, Siemens SRL (RO)
Frank Fransen, TNO (NL)
Reinder Wolthuis, TNO (NL)
Xavi Masip, Universitat Politècnica de Catalunya (ES)
Panagiotis Ilia, Cyprus University of Technology (CY)

Publicity Chairs

Οvidiu Mihaila, Bitdefender (RO)

Supported By

Program Information

An EHDS-Compliant Health Data Pipeline Combining LLM/MCP-Mediated Parameter Derivation with Privacy Enhancing Technologies
George Alexandris, Nikos Kyriakoulis, Spyros Denazis, Dimitris Schizas, Vassiliki Andronikou, Nikos Piliouras

Compliant Yet Blind: Multi-Tenant Monitoring Gaps in IEC 62443
WOOWI KIM

Constrained-Action AI Remediation for SIEM/XDR via a NeMo-Guardrails Proxy
Georgios Koutidis, Nikolaos Kekatos, Tom Nianios, Alexios Lekidis

Extending Reinforcement Learning-Based Protocol Fuzzing for 5G Core Network Attack Dataset Generation
Nikolaos Vakakis, Antonios Lalas, Konstantinos Votis

Metadata-driven CACAO Playbook Recommendation for Incident Response
Evangelos Chanos, Konstantinos Fysarakis, Vasileios Mavroeidis, Mateusz Zych, Ioannis Papaefstathiou

See also the accepted papers of the conference.

Tuesday, 04 August 2026

08:40–09:40 Session WS10: IOSEC
Room: Regie 1
08:40–09:00 An EHDS-Compliant Health Data Pipeline Combining LLM/MCP-Mediated Parameter Derivation with Privacy Enhancing Technologies

George Alexandris, Nikos Kyriakoulis, Spyros Denazis, Dimitris Schizas, Vassiliki Andronikou, Nikos Piliouras

09:00–09:20 Compliant Yet Blind: Multi-Tenant Monitoring Gaps in IEC 62443

WOOWI KIM

09:20–09:40 Metadata-driven CACAO Playbook Recommendation for Incident Response

Evangelos Chanos, Konstantinos Fysarakis, Vasileios Mavroeidis, Mateusz Zych, Ioannis Papaefstathiou

10:00–10:20 Coffee Break
10:20–11:00 Session WS13: IOSEC
Room: Regie 1
10:20–10:40 Constrained-Action AI Remediation for SIEM/XDR via a NeMo-Guardrails Proxy

Georgios Koutidis, Nikolaos Kekatos, Tom Nianios, Alexios Lekidis

10:40–11:00 Extending Reinforcement Learning-Based Protocol Fuzzing for 5G Core Network Attack Dataset Generation

Nikolaos Vakakis, Antonios Lalas, Konstantinos Votis

12:40–13:40 Lunch Break
13:40–15:05 Session WS15: IOSEC & CRIRM Training Session
Room: Auditorio 2
13:40–13:45 Welcome

No hardware requirements required for the training.

13:45–14:15 Presentation: Cyber Hygiene

Instructor: Michalis Smyrlis.

14:15–14:20 Q&A
14:20–14:30 Break
14:30–15:00 Presentation: CRA & CSA

Instructor: IOSEC – Kostas Lampropoulos.

15:00–15:05 Q&A
15:05 Closing & distribution of training keys

Up to 15 keys will be distributed on a first-come, first-served basis for dedicated Cyber Hygiene training.

See also the detailed program of the conference.