MikeTrendsTrends right now

Mmastodon TechnologyCybersecurity first seen 3 d ago, last 3 d ago, peak #9

Incident response plans rarely tested before real crises, security expert says

Original: Most incident plans I have reviewed were written once, approved, and never run. The first time they meet reality is a re

A cybersecurity commentator says most incident response plans are written once, approved, and never rehearsed, so teams only test them during a real incident. That leads to wasted first hours searching for contact numbers and arguing over decision-making authority. The UK's National Cyber Security Centre offers a free tool, Exercise in a Box, that lets organisations run practice scenarios to close that gap before an attack happens.

Why now: Practitioners are debating whether untested incident plans are a widespread weakness in organisational cyber readiness.

National Cyber Security CentreExercise in a Box

Open on mastodon →

Evidence

API: https://socialmediatrends-api.osmike.com/v1/trends/713855