Featured1 min read
What a tabletop incident response exercise actually looks like
A step-by-step walkthrough of the two-hour exercise we run with clients, including the scenario we use and where teams usually get stuck.
5 articles
Topic
Defending real organisations: email, identity, incident response and the boring controls that work.
A step-by-step walkthrough of the two-hour exercise we run with clients, including the scenario we use and where teams usually get stuck.
We ran the same simulation across 40 client companies. The results changed how we design every simulation since.
Ranked by the incidents we have actually responded to, not by how they are usually marketed.
Most phishing that gets through is not sophisticated. It is fast. A practical layered setup for a 50-person company.
We have audited over 60 companies that believed MFA was fully enforced. Fewer than ten actually were.