Beyond the Plan: Building and Conducting OT Incident Drills and Exercises

 In this session, Armexa’s OT and industrial cybersecurity experts walk through two tabletop incident response formats: an executive-level tabletop that aligns leaders on safety, legal, regulatory, and business decisions, and a technical playbook workshop that pressure-tests your Cybersecurity Incident Response Team’s CSIRT’s ability to respond to threats such as ransomware and denial-of-service attacks. Participants will also learn how these activities can be mapped to the PICERL incident response lifecycle: Preparation, Identification, Containment, Eradication, Recovery, and Lessons Learned. 

Viewers learn why exercising incident response plans is more important than ever, including how regulatory requirements such as MTSA and TSA Security Directives drive the need for recurring drills and exercises. Participants will explore the organizational and budgetary benefits of a structured drills/exercises program, how to develop realistic OT-focused scenarios, and how to sequence executive and technical exercises into a practical 12-month continuous improvement roadmap. 

Through real-world OT scenarios and lessons learned from industrial environments, participants will gain a practical framework for planning, conducting, and improving incident response drills and exercises that strengthen both organizational readiness and technical response capabilities.

Complete the following form to be emailed a link to the recording:

.

This field is for validation purposes and should be left unchanged.
Name(Required)
Facebook
X
LinkedIn

Latest Posts

Skip to content