Loading...

CSR CRIRM

2026 IEEE CSR Workshop on Cyber Range, Insurance, and Risk Management: Enhancing Cyber Resilience (CRIRM)

Lisbon, Portugal (in-person event) • August 3–5, 2026


Over the years, cyber threats have increased in both volume and sophistication, with adversaries employing a diverse arsenal of tools and tactics to target victims for motives ranging from intelligence collection to financial gain or destruction. The integration of advanced technologies, such as cyber ranges for simulated and emulated training, the evolving cyber insurance landscape, and robust risk assessment and management strategies, has become critical in navigating this increasingly complex threat environment. Effective cyber resilience today requires a multidisciplinary approach, integrating simulated training through cyber ranges, strategic cyber insurance adoption, and innovative risk management techniques that collectively improve preparedness and response capabilities.

The CSR CRIRM workshop aims to spotlight cutting-edge advancements and research in the integration of cyber range training, cyber insurance, and risk management to enhance organiza-tional resilience. It emphasizes practical applications of these strategies in critical areas such as supply chain and logistics security, smart cities and critical infrastructure, and transportation and fleet management. By bringing together experts from academia, industry, and policymaking, the workshop seeks to foster a holistic approach to cybersecurity, preparing stakeholders to tackle modern threats and ensure a secure and sustainable digital ecosystem.

The CSR CRIRM workshop will accept high-quality research papers presenting strong theoretical contributions, applied research and innovation results obtained from funded cyber-security and resilience projects, and industrial papers that promote contributions on technology development and contemporary implementations.

Topics of Interest

Prospective authors are encouraged to submit previously unpublished contributions from a broad range of topics, which include but are not limited to the following:

› Cyber-range platforms
› Cyber insurance
› Cyber-risk assessment methods
› Cyber-security training
› Gamification in cyber-security
› Preparation and adaptation strategies
› Critical infrastructure security

› eHealth security
› Software security
› Cyber-threat intelligence
› Federation of cyber-range platforms
› Cyber-risk forecasting and mitigation
› Cyber-threat adaptive capacity in IoT
› Operational recovery and continuity

Important Dates

Paper submission deadline: April 13, 2026 May 13, 2026
Authors’ notification: May 4, 2026 June 4, 2026
Camera-ready submission: May 25, 2026 June 25, 2026
Registration deadline (authors): May 25, 2026 June 25, 2026
Workshop dates: August 3–5, 2026

Submission Guidelines

Submitted manuscripts should not exceed 6 pages (plus 2 extra pages, being subject to overlength page charges) and should be of sufficient detail to be evaluated by expert reviewers in the field. The workshop’s proceedings will be published by IEEE and will be included in IEEE Xplore subject to meeting IEEE Xplore’s scope and quality requirements.

The guidelines for authors, manuscript preparation guidelines, and policies of the IEEE CSR conference are applicable to CRIRM workshop. Please visit the authors’ instructions page for more details. When submitting your manuscript via the conference management system, please make sure that the workshop’s track 2T3 CRIRM is selected in the Topic Areas drop down list.

Workshop Committees

Workshop Chairs


Dr. Michalis Smyrlis
Chief Technology Officer, Sphynx (GR)


Dr. Georgios Spathoulas
Assistant Professor, NTNU (NO)

Contact Us

smyrlis@sphynx.ch
georgios.spathoulas@ntnu.no

Organizing Committee

Dr. Nikos Nikoloudakis, Technical Project Manager, PPC SA (GR)
Dr. Eliana Stavrou, Assistant Professor, UCY (CY)
Dr. Panagiotis Bountakas, Specialist R&D Engineer, Sphynx (CH)
Dr. Emmanouil Vergis, Project Management and Coordination, ZELUS (GR)

Technical Program Committee

Dr. Konstantinos Votis, Senior Researcher, CERTH (GR)
Notis Mengidis, Researcher, CERTH (GR)
Dr. Muhammad Mudassar Yamin, Associate Professor, NTNU (NO)
Romarick Yatagha, PhD candidate, Framatome (GER)
Dr. Chhagan Lal, Researcher in Cybersecurity, NTNU (NO)
Evangelos Floros, Deputy Manager of IT Department, PAGNI (GR)
Dr. Dimitris Deyannis, Senior Software Engineer, Sphynx (CH)
NDIAYE Ndeye Gagnessiry, PhD candidate,Framatome (GER)
Dr. Andriani Piki, Assitant Professor in Computing, UCLan Cyprus (CY)
Dr. George Alexandris, Technology Director, NodalPoint (GR)
Michael Koniotakis, General Manager, NodalPoint (CY)
Dr. Vasilis Tountopoulos, ICT Business Innovation Director (GR)
Dr. Karl Waedt, Manager, Framatome (GER)

Publicity Chairs

Elli Alimperti, Project Manager, ZELUS (GR

Supported By

Program Information

Agent-Assisted Cyber-Range Authoring: From LLM-Generated Scenarios to Deployment
Notis Mengidis, Nikolaos Kopalidis, Georgios Rizos, Antonios Lalas, Konstantinos Votis

Competency- and Proficiency-Based Evaluation of Cyber Range Training: A Proposed Approach
Pilleriin Sara Lillemets

Cyber Range as a Service over Federated Cyber Range Platforms: Design, Requirements, and Open Challenges
Chhagan lal, Emmanouil Eleftherios Rompogiannakis, Georgios Spathoulas, Evangelos K. Markakis

DRCRM: A Dynamic Framework for Regulatory and Certification Readiness for Cyber-Resilient Systems
George Alexandris, Vassiliki Andronikou, Nikolaos Piliouras

From Conceptual Scaffold to Prototype: A Standardized Zonal Architecture for Wi-Fi Security Training
Vyron Kampourakis, Efstratios Chatzoglou, Vasileios Gkioulos, Sokratis Katsikas

How much detail it takes to fool an adversary? A testbed to evaluate honeytokens effectiveness
Anthi Petridou, Georgios Spathoulas

PowerRanger: A Modular Cyber Range Platform for Smart Energy Systems
Vasilis Ieropoulos, Theofanis Eleftheriades, Kyriakos Christou, Philippos Isaia, Maria Michalopoulou, Angelos Marnerides, Christos Laoudias, Maria Michael

Rethinking Malware Classification: A Systematic Evaluation Grounded in Baseline Performance
Remus Petrache, Camelia Lemnaru, Ciprian Oprișa

Using LLMs to Elicit Security Requirements for Service-Oriented Cyber Ranges
Michail Takaronis, Athanasia Kollarou, Georgios Kavallieratos, Vasileios Gkoulos, Sokratis Katsikas

See also the accepted papers of the conference.

Tuesday, 04 August 2026

08:40–10:00 Session WS9: CRIRM
Room: Auditorio 2
08:40–09:00 Cyber Range as a Service over Federated Cyber Range Platforms: Design, Requirements, and Open Challenges

Chhagan lal, Emmanouil Eleftherios Rompogiannakis, Georgios Spathoulas, Evangelos K. Markakis

09:00–09:20 PowerRanger: A Modular Cyber Range Platform for Smart Energy Systems

Vasilis Ieropoulos, Theofanis Eleftheriades, Kyriakos Christou, Philippos Isaia, Maria Michalopoulou, Angelos Marnerides, Christos Laoudias, Maria Michael

09:20–09:40 From Conceptual Scaffold to Prototype: A Standardized Zonal Architecture for Wi-Fi Security Training

Vyron Kampourakis, Efstratios Chatzoglou, Vasileios Gkioulos, Sokratis Katsikas

09:40–10:00 Using LLMs to Elicit Security Requirements for Service-Oriented Cyber Ranges

Michail Takaronis, Athanasia Kollarou, Georgios Kavallieratos, Vasileios Gkoulos, Sokratis Katsikas

10:00–10:20 Coffee Break
10:20–12:00 Session WS12: CRIRM
Room: Auditorio 2
10:20–10:40 Agent-Assisted Cyber-Range Authoring: From LLM-Generated Scenarios to Deployment

Notis Mengidis, Nikolaos Kopalidis, Georgios Rizos, Antonios Lalas, Konstantinos Votis

10:40–11:00 Competency- and Proficiency-Based Evaluation of Cyber Range Training: A Proposed Approach

Pilleriin Sara Lillemets

11:00–11:20 DRCRM: A Dynamic Framework for Regulatory and Certification Readiness for Cyber-Resilient Systems

George Alexandris, Vassiliki Andronikou, Nikolaos Piliouras

11:20–11:40 Rethinking Malware Classification: A Systematic Evaluation Grounded in Baseline Performance

Remus Petrache, Camelia Lemnaru, Ciprian Oprișa

11:40–12:00 How much detail it takes to fool an adversary? A testbed to evaluate honeytokens effectiveness

Anthi Petridou, Georgios Spathoulas

12:40–13:40 Lunch Break
13:40–15:05 Session WS15: IOSEC & CRIRM Training Session
Room: Auditorio 2
13:40–13:45 Welcome

No hardware requirements required for the training.

13:45–14:15 Presentation: Cyber Hygiene

Instructor: Michalis Smyrlis.

14:15–14:20 Q&A
14:20–14:30 Break
14:30–15:00 Presentation: CRA & CSA

Instructor: IOSEC – Kostas Lampropoulos.

15:00–15:05 Q&A
15:05 Closing & distribution of training keys

Up to 15 keys will be distributed on a first-come, first-served basis for dedicated Cyber Hygiene training.