It’s critical to have a clear Cyber Incident Response Plan (CIRP), that is fully tested through Cyber Incident Exercising (CIE) (aka a Tabletop).
We’ve been supporting organisations for years to design, build and test their CIRPs, providing clarity across your:
- Systems Dependency Register
- Key Personnel, deputies and contact information (outside core business systems)
- Current related processes and policies (BCP, DR etc)
- Technical Incident detection and response
- Incident Classification & Risk Management/Acceptance
- Communication plans, testing & exercising and any supporting materials.
As an NCSC Assured Service Provider – Cyber Incident Exercising, we’ve evolved this service beyond the core CIRP Build and CIE Tabletop:
Cyber Incident Mobilisation Testing
- This is a very short, but very valuable exercise. To test how quickly you can mobilisation your CIRP team, with core communications down.
- We will work with one key stakeholder (such as the IT Lead) and agree a cyber incident scenario, that has impacted a core communication system. We will then trigger the scenario at a pre-agreed or random time, to monitor how quickly your CIRP team assembles and is in a position to action your CIRP steps.
- Typically only a few hours, this can highly any issues with your Communication Channels, Roles & Responsibilities, Key Personnel & Deputies and readiness against a “surprise” scenario.
Fire Drill Model
Who is this for?
If you have a CIRP and have undertaken a Tabletop style CIE, the “Fire Drill Model” is the next level of testing. Putting your people, processes and CIRP to the test (in a scenario designed to reflect the real world actions and impacts of an cyber incident).
What’s different from a CIE Tabletop?
This combines a traditional CIE and a Cyber Incident Mobilisation Test. We will run an exercise (designed and agreed with you), but trigger the event at an unknown time! This will test your response times, communications channels and ability to pull your CIRP and people together when you are not expecting it! We can provide rough dates or periods for testing, but the “surprise” element truly tests your Cyber Incident Response Plan.
Want to find out more about Building a CIRP, Running a CIE Tabletop or evolving your testing to a Cyber Incident Mobilisation Test or Fire Drill Model – reach out to info@evolvenorth.com or call 01748 905 002 to speak to our CIRP/CIE team.
