CyberBusters

Integral Cyber Crisis Exercise

Crisis Exercises

Eight hours — day or night — in which not only the crisis team but the IT department is put to the test. Technical and organisational injects run together on our crisis platform, so detection, communication and first response are tested at the same time rather than separately.

What is included

  • Intake with crisis team and IT to ground the scenario technically
  • Eight hours of exercise, day or night, led by at least three specialists
  • Run on our crisis platform, with technical injects alongside executive ones
  • Your technical people are trained during the exercise itself
  • Management report with timeline, technical findings and improvements

Who it is for

For organisations that want to know whether technology and management find each other when it goes wrong. That is exactly where it fails in reality: not in the technology, not in the board room, but in between.

  • Crisis teams that have already done a tabletop
  • IT and security teams wanting to test detection and response
  • Organisations with an ISMS or NIS 2 programme that is ready on paper
  • Companies with a SOC or a security supplier they want to put to the test
  • Organisations that want to know what to improve after a real incident

Outcome

Afterwards you know:

  • whether your engineers and your board speak the same language in time
  • whether detection and first response do what they promise on paper
  • which assumptions about your IT do not hold up under pressure
  • how long it takes for a technical alert to reach the board
  • whether your suppliers are reachable at the moment you need them
  • where escalation stalls, and what that costs in time

At least three specialists: crisis facilitation, technical and observation. People who have lived through this, not only rehearsed it.

We do not touch your production. Technical injects run through the platform and through agreed alerts; what is really running keeps running.