0% found this document useful (0 votes)
246 views2 pages

Tabletop Exercise:: Definition: Discussion-Based Event Where Personnel With Roles and

A tabletop exercise is a discussion-based event where IT personnel meet to discuss their roles and responsibilities during a simulated security incident. It can last from 2 to 8 hours depending on objectives. Tabletop exercises help evaluate preparedness, strengthen crisis response coordination, and validate policies and procedures. Effective tabletop design identifies a topic, scope, objectives, participants, and includes a facilitator, data collection, and debriefing. The process improves cybersecurity programs by identifying lessons learned after each exercise.

Uploaded by

markiv123
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
246 views2 pages

Tabletop Exercise:: Definition: Discussion-Based Event Where Personnel With Roles and

A tabletop exercise is a discussion-based event where IT personnel meet to discuss their roles and responsibilities during a simulated security incident. It can last from 2 to 8 hours depending on objectives. Tabletop exercises help evaluate preparedness, strengthen crisis response coordination, and validate policies and procedures. Effective tabletop design identifies a topic, scope, objectives, participants, and includes a facilitator, data collection, and debriefing. The process improves cybersecurity programs by identifying lessons learned after each exercise.

Uploaded by

markiv123
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as DOCX, PDF, TXT or read online on Scribd
You are on page 1/ 2

Tabletop Exercise:

Definition: Discussion-based event where personnel with roles and


responsibilities in an IT department meet in a classroom setting or in
breakout groups to discuss their roles and responsibility during a
security event incident situation.
Duration: 2 hours to 8 hours depending on the audience, the topic
being exercised, and the exercise objectives.
Benefits of Tabletop exercise:
 Evaluate & Validate CSIRT preparedness.
 Coordinated decision making.
 Strengthen crisis preparedness.
Design Considerations for a Tabletop Exercise:
 Identify the Topic  Ransomware
 Determine the scope  Based on target audience (Roles &
Responsibilities) ISS CSIRT team & COOP.
 Identify Objectives  Validate CSIRT, Policies & Procedures,
Agency Interdependencies etc.
 Identify Participants  Facilitator (leading the exercise), Data
Collector (Records Information), Players (Assist Data Collector),
Support Staff (Technical support).
 Conduct the exercise  Conf room, participant guide, exercise
debrief.
 Evaluate the result  Prepare after action report, brief mgmt.
Tabletop Lifecycle:

Step1: Prepare & Plan

Step4: Improve Step2: Conduct Exercise


Cybersecurity Program

Step3: Identify Lessons


Learned

You might also like