This session is for members.

Subscribe or log in to watch every GoSec session.

Subscribe Log in

This recording is not available yet.

Optimizing the Workforce for Cyber Crisis Resilience — An Interactive Simulation

GoSec 2022Workshop44 minEnglish
Download resources

About this session

Luke Kmiotek, sales engineer at Immersive Labs, opens with a short overview of the platform (crisis simulations for executives, technical team sims on a cyber range, hands-on labs) and its workforce-resilience pitch, then runs the room through a live crisis simulation. Attendees join on their phones and vote as the security team of a Formula 1 outfit during the Montreal Grand Prix: a rogue USB stick appears in the server rack, a WhatsApp message from a group calling itself No Mercy demands payment before midnight, tyre telemetry then engine data vanish mid-race, and the driver must face the press. Each inject offers options ranked from weak to great, with immediate feedback and a percentage split; the audience debates paying the ransom, confiscating everyone's USB drives, pulling the driver out and what to tell reporters, and lands a near 50-50 split on finishing the race. Danielle Riley adds that the branching tree view lets an organisation customise scenarios to its own response plan. Questions cover confidence metrics, a French interface, target audience and LMS or API integration.

As we continue to evolve our corporate defenses, even the best crisis response plans struggle to account for the human element. The performance of your technology might be a known quantity, but what about your human capabilities? This interactive session will test organization wide decision-making skills using a realistic cyber crisis. Join Immersive Labs for this interactive session to: • Understand the business impact of technical choices, stakeholder management actions and more • See real time data on the effects of decisions on crisis management and response • Strengthen your organization on both sides for greater resilience

Key takeaways

  • Investigate suspicious hardware immediately even during a critical business window; deferring costs more time later.
  • Escalate to the governing or regulatory body early so decisions align with its rules rather than improvising under pressure.
  • Paying a ransom rarely ends the incident; attackers escalate demands and often come back, so plan the no-pay contingency in advance.
  • Keep non-experts such as drivers or frontline staff out of incident communications; let them deflect to the team handling the attack.
  • Split votes on an inject are the point of a tabletop: use them to surface disagreement and rewrite the response plan, and customise scenarios to your organisation.

Speakers

Luke Kmiotek
Luke Kmiotek
Sales Engineer · Immersive Labs
Luke Kmiotek is a budding leader in cyber security, with a passion for delivering relevant solutions to organizations. With both consultative and practical hands on technical experience, Luke is making an impact as a Security Engineer at Immersive… Read moreRead less

Luke Kmiotek is a budding leader in cyber security, with a passion for delivering relevant solutions to organizations. With both consultative and practical hands on technical experience, Luke is making an impact as a Security Engineer at Immersive Labs.

Danielle Riley
Danielle Riley
Senior Channel Sales Manager · Immersive Labs
Danielle Riley is a Senior Channel Manager for Immersive Labs, working with partners to help business leaders drive Cyber Workforce Optimization within their organization. Danielle has spent over 15 years in cybersecurity and has held previous roles… Read moreRead less

Danielle Riley is a Senior Channel Manager for Immersive Labs, working with partners to help business leaders drive Cyber Workforce Optimization within their organization. Danielle has spent over 15 years in cybersecurity and has held previous roles at WhiteSource and Veracode. Danielle graduated from University of New Hampshire with a bachelor’s degree in political science.

Resources

Tags

More from GoSec 2022

Also from Luke Kmiotek

On the same topic

This site is registered on wpml.org as a development site. Switch to a production site key to remove this banner.