An incident response plan nobody has rehearsed stays a document. Four controlled simulations a year across phishing, malware, APT and DDoS, each closed with a results session and training.
Once a quarter we run a controlled attack simulation against your organization, chosen from four scenarios: phishing, malware, APT and DDoS, involving up to 50 employees. What matters is what the exercise reveals: how quickly you detected it, who reported it, what the response plan missed. Each exercise closes with a results session and training built on those findings.
Need a wider scope? You can extend the plan whenever you want.
“Know your enemy, know yourself.” Sun Tzu - The Art of War
The service focuses on four main attack vectors, one exercise per quarter.
We agree the scenario, the scope and the objectives with you, and define the boundaries the exercise must not cross.
The simulation runs under controlled conditions, with a defined window and a point of contact who can stop the exercise at any moment.
A results report covering what was detected, when and by whom, followed by a session with the team focused on the gaps the exercise exposed.