As part of the client's Operational Resilience programme, Beyond Blue delivered a two-day ransomware exercise. The first day focused on the technical recovery from the scenario, whilst the second day focused on the business impact and recovery and mitigation of customer harm. The scenario was destructive ransomware that simulated a worst-case scenario for the client, encrypting Windows-based servers and endpoints, requiring a rebuild.
The Beyond Blue team worked with the client’s SMEs in the month leading up to the exercise to:
The exercise was split across two days, facilitated by Beyond Blue Directors, to allow objectives and the audience to be focused and productive:
Following the exercise, the team produced a post exercise report that identified a set of technical and operational recommendations. The team socialised the report with a range of senior stakeholders due to the range of recommendations identified across the two days. A dedicated workstream within the wider Operational Resilience programme was set up to address the recommendations detailed in the report. Some of the key areas of the newly established workstream included:
If you would like to discuss a cyber or resilience problem with a member of the team, then please get in touch however you feel most comfortable. We would love to help you and your business prepare to bounce back stronger.