secureskies
Cyber Security/Respond/Tabletop Exercises

What gets tested
is the organisation.

A tabletop exercise puts management, IT, legal and communications around one table and plays a realistic incident through hour by hour. What gets tested is decisions, responsibilities, notification paths and communication; the minutes show where the organisation stalls.

FormatHalf-day exerciseplus evaluation
ParticipantsManagement · IT · legalcommunications · HR
ReferenceNIS2 Art. 20–21DORA Art. 25
OutcomeExercise minutesplus action list
01 · Service

What is included.

Play the crisis through while it is still an exercise.

Scenario

Built around your systems, sector and threat picture; with escalation stages and surprises.

Facilitation

We play time, attacker and outside world; you decide. Every decision is minuted.

Observation

Responsibilities, decision speed, notification deadlines, internal and external communication.

Evaluation

Minutes, assessment against playbooks and duties, action list with owners; evidence of the exercise for auditors.

02 · Process

Five steps,
one deliverable.

01

Scoping

Agree objectives, participants and scenario with the sponsor.

02

Delivery

Facilitated exercise across several escalation stages.

03

Debrief

Immediate review with the participants.

04

Report

Minutes, assessment, actions.

05

Repetition

Annually, with a new scenario — included in the cyber-governance module.

03 · Who it fits

When this service
applies.

Management teams that must evidence NIS2 training and exercise duties
Companies with newly written playbooks
Advisory boards that want to see the organisation’s crisis capability
More services · Respond

When did your management last
walk through an incident?