Mmastodon TechnologyCybersecurity first seen 3 d ago, last 3 d ago, peak #9
Incident response plans rarely tested before real crises, security expert says
Original: Most incident plans I have reviewed were written once, approved, and never run. The first time they meet reality is a re
A cybersecurity commentator says most incident response plans are written once, approved, and never rehearsed, so teams only test them during a real incident. That leads to wasted first hours searching for contact numbers and arguing over decision-making authority. The UK's National Cyber Security Centre offers a free tool, Exercise in a Box, that lets organisations run practice scenarios to close that gap before an attack happens.
Why now: Practitioners are debating whether untested incident plans are a widespread weakness in organisational cyber readiness.
National Cyber Security CentreExercise in a Box
Evidence
- Most incident plans I have reviewed were written once, approved, and never run. The first time they meet reality is a real incident, which is why so many first hours are spent finding phone numbers and arguing about who is allowed to decide. The NCSC's Exercise in a Box costs… · adrianhollister@infosec.exchange · 1
API: https://socialmediatrends-api.osmike.com/v1/trends/713855