Create Effective TTXs

So often we see tabletop exercises (TTXs) conducted just to meet compliance requirements, however, this is not the end goal - operational readiness to respond to an incident is.

The insights from an effective tabletop should translate into pre-incident planning, real-world actionable improvements, emphasise readiness and support organisational muscle memory.

Learn how to create effective tabletop exercises for your organisation.

The C3PO Framework

Over the years, we have created many tabletop exercises (TTXs) and found what works and what doesn’t. We’ve codified this into our C3PO framework of how to conceive, construct, conduct, prepare and operationalise (C3PO) effective tabletop exercises.

From technical to board level, learn how to leverage our framework to make a tabletop with actionable learnings and well-rehearsed preparations as the end goal.

Choose Your Type of Tabletop

There are many different types of tabletops that you can perform - which you choose comes down to your main outcome or objective of the exercise. These can be:

  • Procedural - walkthroughs of high-level processes or detailed procedures
  • Functional - scenario-driven to cover specific concepts or be thought provoking
  • Gamified - fun, engaging and interactive exercises within structured rules
  • Adversarial - simulating a specific attacker to observe organisational responses

Our training covers how to be successful with all four core types, with examples and guidance of when to do each depending on the maturity level of your teams and organisation.

Prepare for the Unexpected

Finding out controls did not work as expected when under duress is never fun - emotions run high, the risks are great and intensive periods are required to resolve incidents, putting a large strain on your teams and potentially leading to burnout.

Learning how to prepare your teams through tabletop exercises enables them to practice in a low-stress environment, identify gaps in processes and improve their abilities at responding over time to mitigate the impact of a cybersecurity incident.

Your training session will cover:

  • Recommendations on where to start and how to build a tabletop exercise
  • Detailed coverage of our C3PO framework to conceive, construct, conduct, prepare and operationalise TTXs
  • Roadmap of when you should progress to desgining more advanced exercises
  • Different types of TTXs (procedural, functional, gamified and adversarial)
  • Teaches you how to leverage cyber threat intellgience (CTI) to help design your TTX
  • Many resources and templates to aid you with constructing your own TTXs

Key Features

  • Learn the C3PO framework

    Learn how to conceive, construct, conduct, prepare and operationalise an effective tabletop

  • Based on real world adversaries

    Leverage Cyber Threat Intelligence (CTI) to make realistic scenarios that you can prepare for

  • Insert Multiple injects

    Slowly drip feed further context into your tabletops to support your desired outcome

  • Speak a common language

    Map your injects to adversary Tactics, Techniques and Procedures (TTPs) to speak a common language

  • Organisational readiness

    Get your teams to practice and be ready to respond to a cybersecurity incident

  • Basis for advanced topics

    Prepares your teams for more advanced exercises (e.g. adversary emulation)

Not just for compliance

Learn how to make your next tabletop exercise effective to validate operational readiness

Book a Create Effective TTXs Training now