Immersive Labs leverages the OpenAI API to allow you to quickly create new Crisis Sim scenarios from scratch. Once created, these scenarios can be edited and published as normal to your organization's catalog.
How to create a Crisis Sim Scenario with the AI Scenario Generator
To create a new Crisis Sim scenario using the AI Scenario Generator:
- Navigate to Exercise > Crisis Sim and then click Create Scenario.
- Select Create with AI from the Choose your scenario options:
- From the Create with AI window, complete all fields and then click Generate scenario.
- Once created, the scenario can then be edited and published using the Edit mode.
Refer to Creating Custom Scenarios for information on how to edit, review, and publish a Crisis Sim scenario.
What type of content is created by the AI Scenario Generator?
The AI Scenario Generator' is used to create new scenarios that, once published, can be added to your Scenario catalog and subsequently scheduled for an exercise. These AI-generated scenarios derive from publicly-available crisis management data and information, resulting in the creation of generic Crisis Sim scenarios in the platform.
If your organization has opted for data-sharing, both your past and upcoming custom AI-generated scenarios will be leveraged to produce new scenarios that are more personalized to your specific context. Further details on data-sharing can be explored in the following sections.
Will I need to add anything else to my scenario?
When you click "Generate scenario", the AI Scenario Generator generates text-only content in the new scenario and then takes you to edit mode in the platform where you can edit and review the new scenarios. From edit mode can add additional rich media (e.g., images, videos) to your the scenario.
There are also certain elements that we recommend you enable, add, or check after the scenario has been generated while you are in edit mode to get the most out of your Crisis Sim.
This includes:
-
Review the text formatting and narrative content to ensure it meets your needs
-
Review the role that was created by the AI generator to ensure it meets your needs
-
Enabling and adding response feedback or performance indicators if you want to include these elements in your scenario
-
If you want to capture ranked response data, you must select the ranked options setting and add a rank (great, good, weak, okay) to each response option to suit your organization's preferred situational response
-
Turn on the response confidence or justifications if you want to capture this data
How does management of the AI Scenario Generator in Immersive Labs work?
Organization Managers can choose to use the AI Scenario Generator in a layered approach:
-
With data-sharing enabled
-
Without data-sharing
-
No AI access at all
These settings can be updated in the Organization's settings page:
What does "without data-sharing" mean?
If your organization chooses to enable AI without data-sharing, the information from previous or future scenario's you have written will not be used by the AI when generating your scenario.
The AI will only use the pre-filled drop down filters (currently organizational sector, attack vector, threat actor, and scenario size) and the scenario title that you enter to create your scenario. This means that the scenario is likely to be more 'generic' and less relevant to your particular context, but you can still edit the final version to make it more relevant to you - just like with our catalog scenarios.
What does "data-sharing" mean?
If your organization has data-sharing enabled, then Immersive Labs will include relevant information from any previous custom scenarios that you have published in the context window for requests to our 3rd party AI vendors. This will make the scenario more relevant to your particular context. Further detail on the context window and exactly what data will be shared can be found below.
Will my data be used for model training?
No. None of the data you choose to share will be used by any 3rd party AI vendor for the purpose of training their models. Shared data will only ever be included in the temporary "context window" of generation, and will not be stored by 3rd parties.
What is a "context window"?
A "context window" is an extension of the query that is sent to an AI model. It exists only during the processing of the query, and is not saved by any 3rd parties.
With which 3rd party AI vendors does Immersive Labs work?
We are currently only working with OpenAI and their API services.
If I choose to enable Crisis Sim data-sharing for AI, exactly what will be shared?
When enabled, the AI Scenario Generator will include data from your previously published (and any future) Custom Scenarios in the "context window" of its request.
The only data included will be:
Scenarios:
-
Title
-
Description
-
Industry Sector
-
Attack Vector
-
Threat Actor
Injects & Options:
-
Title
-
Description
It will not include any feedback, exercise information, or reporting. It will not include any account or organization information fields or metadata.
We recommend that you review your Custom Scenarios before choosing to share the data, to check whether they contain any sensitive or personal information. Immersive Labs will endeavor to scan and de-identify these fields for any sensitive or personal information that a Customer may have included in a Custom Scenario.
Is Immersive Labs compliant with the UK National Cyber Security Centre Guidelines for secure AI system development?
Yes. Immersive Labs have implemented secure design & development procedures in line with the NCSC Guidelines document.
In which Geographic Region will my scenario information be processed?
The OpenAI vendor that is used by Immersive Labs has their servers located in the US. All requests made to this 3rd Party vendor will therefore go through the US region.
In which Geographic Region will my scenario information be stored?
All AI Service data will be stored in Immersive Labs US region. This means that if you enable data sharing, the scenario data specified above will be stored in the Immersive Labs US region until the data sharing option is switched off. At this point, the data will be deleted.