Continuous network trust assurance for telecoms using distributed credentials and AI reasoning
Negotiating and continuously assuring trust across the networks of the future.
The Challenge
The identity model within telecoms is antiquated: networks decide whether to trust a device on the basis of a single password or certificate, issued once and rarely revisited. As future networks become networks-of-networks — spanning operators, private networks and constrained rural infrastructure — operators have no way to continuously judge whether a connecting device, or the software and AI running on it, remains trustworthy. This blocks both security and the flexible business models future telecoms need.
The Solution
TrustNetZ is a suite of protocols to negotiate and interrogate the trustworthiness of network connections. Building on CAHN (Continuous Assurance for Heterogeneous Networks), NQM is developing new architectures that work across networks using advanced notions of identity and distributed credentials, combined with dynamic (AI) reasoning to continuously infer trustworthiness and assurance. Rather than relying on a single credential, TrustNetZ can use device-owner, device-manufacturer, software and device-testing evidence to inform a continuous assessment of security — and can even evaluate the trustworthiness of an AI system sitting within a device (drawing on TAIBOM).
Outcomes
The Southampton-based project contributes to the UK’s future-telecoms ambitions, including secure rural connectivity. A public demonstrator is available at cahn.nqminds.com, and the TrustNetZ device and network management protocol work has been published through NIST standards channels — a novel device and network management protocol published as a NIST standard. TrustNetZ also feeds NQM’s Synapse product, which builds on TAIBOM for AI assurance and TrustNetZ for device and network security.
TODO: record specific Phase 2 deliverables and demo outcomes.
In Detail
Negotiating and continuously assuring trust across the networks of the future.

TrustNetZ is a suite of protocols to negotiate and interrogate the trustworthiness of network connections. Rather than trusting a device on the basis of a single password or certificate issued once, TrustNetZ draws on device-owner, device-manufacturer, software and device-testing evidence — and can even evaluate the trustworthiness of an AI system sitting within a device — to continuously assess security across networks of networks.
Core benefits
- Dynamic Risk — multi-factor, 360-degree risk assessment using both device-type and device-instance data: the evidence split that underpins continuous assessment.
- Cognitive Security — reasoning under uncertainty; practical Zero Trust; controllable false positives.
- Collaborative — data shared between instances and organisations to better detect and respond.
Collaborative trust across operators

Trust negotiation across networks-of-networks requires evidence to flow between operators. TrustNetZ shares data between instances and organisations so that each network can better detect and respond, while distributed credentials keep every claim verifiable — supporting both stronger security and the flexible business models future telecoms need.

Features
Trust negotiation protocols to interrogate the trustworthiness of any network connection.
Advanced identity and distributed-credential architectures spanning multiple networks.
Continuous security assessment fed by device owner, manufacturer, software and device-testing evidence.
Evaluation of the trustworthiness of AI systems embedded in connected devices.
Public demonstrator at cahn.nqminds.com.
Replaces one-shot password/certificate trust with multi-evidence, continuously reassessed assurance — including the AI inside the device.
Benefits
New form of network security supporting continuous security assessment across heterogeneous networks (Phase 2 in progress).
Contributes to UK Future Telecommunications Challenge goals, including secure rural connectivity (UKRI-highlighted).
Device and network management protocol published as a NIST standard (per UKRI announcement).
Synapse builds on TrustNetZ for device and network security.
Volt features used
AI as first-order elements — fast
distributed design on open identity standards
configurable and dynamic policy
federated access and authorisation across organisational boundaries
advanced NIST compliant security
data-centric security
interoperable core
confidence scoring and continuous assurance — trust as a graded, computed measure
Working with
Related Sectors

Communications
The communications sector delivers the networks and services that keep people and systems connected, from broadband and 5G to secure enterprise communications. Trust and security are fundamental to its infrastructure.

Cyber Security
The cyber security sector protects systems, networks and data from digital attack. From securing connected devices to establishing trust in software supply chains, it underpins the safe operation of every modern organisation.