How to Run a Cybersecurity Tabletop Exercise

Best practices for using tabletop exercises to prepare for cyberattacks

Based on the Sophos Cybersecurity team's own approach, this guide aims to help organizations prepare for potential attacks. It covers:

  • The different types of security tabletop exercises
  • Examples of cybersecurity scenario themes we have run at Sophos
  • 17 best practices for developing an effective tabletop exercise

Additionally, the report includes a link to a ransomware tabletop scenario we developed and executed at Sophos, which you can use directly or adapt to create your own.

