Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Everest Forms Pro Vulnerability Allows Remote Code Execution

June 4, 2026

5 Steps to Managing Shadow AI Tools Without Slowing Down Employees

June 4, 2026

Chinese-Speaking Actor TA4922 Widens Its Global Reach

June 4, 2026
Facebook X (Twitter) Instagram
Thursday, June 4
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»How Businesses Can Prepare for a Cybersecurity Crisis
News

How Businesses Can Prepare for a Cybersecurity Crisis

Team-CWDBy Team-CWDJune 4, 2026No Comments4 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


The nature of the modern digital ecosystem means the probability of an organization falling victim to a cyber-attack is high.

However, just because the organization has been hit by a cyber incident, that does not mean that the reputation of the business – or the emotional wellbeing of the staff – needs to suffer

There are steps which cybersecurity and business leaders can take to clearly communicate what has happened during an incident and outline the action  being taken to restore services to normal, to both internal and external stakeholders.

Key to that, according to senior cybersecurity leaders who have hands-on experience with reacting to major cyber incidents, is to ensure that the business has a strategy playbook in place which leadership can apply in the worst-case scenario.

The advice was given at Infosecurity Europe 2026 on June 3, during a keynote session, titled ‘Crisis Communications – Contingency Plans to Put in Place Now.

What to Put in a Cybersecurity Crisis Playbook: What? Who? How?

Nicola Hudson, partner and global cyber practice co-lead at Brunswick, whose was preciously director of policy and communication at the National Cyber Security Centre (NCSC), noted that a great playbook is not a hundred pages long, but instead concise and focused on three key components.

“One: What type of crisis are you dealing with? Two: Who are you going to have in the room,” she said. “And three: Understand responsibilities and trust each other, everyone needs to know what they are doing, no second guessing or getting angst ridden when you are tired and four days in.”

These three pillars can help set the tone for the rest of the crisis. Dealing with a cybersecurity incident is difficult, but can be made harder because in addition to being a stressful, high-pressure situation, decisions have to be made, even if only small amounts of incomplete information is available.

Ashish Shrestha CEO of Zyn Global and former group CISO of Jaguar Land Rover (JLR) said, “Playbooks don’t fail because of technology, they fail because reality doesn’t follow a script.” 

“In the war room, you have immense pressure building. The Information coming to you is not just changing in minutes, sometimes it’s contextless and in fragments. That is the leadership moment: how do you take those fragments of data and start correlating the next steps,” he added.

Managing People During a Technology Crisis Essential 

Cybersecurity leaders must remember that dealing with a cybersecurity incident is not just a technical problem, humans and the communications strategy around people need to be managed too.

Who is involved in the response? Who is responsible for what tasks? Who has the authority to make decisions? An organization will have less challenging time dealing with the chaos of responding to an incident if it sets out the structure for this in advance. Especially around internal and external communication

“What survives is your process. Who is doing what? How ae you going to do it?” said Hudson.

“What doesn’t survive in communications is a playbook with every statement you want to do. You have no idea what’s going to happen or what the threat actor will do,” she explained, adding that this is particularly the case if the attacker is in the orgnaization’s network or trying to exert pressure with demands and threats.

“It’s a live crisis communications playbook and you are tweaking it as you go along,” Hudson added.

It is not just external communications and expectations management which cybersecurity and business leaders need to consider. Following an incident, they must also take care to manage the needs and anxieties around their own staff.

For Shrestha, that comes down to insisting that the cyber responders are given the downtime required to stay fresh when dealing with an attack.

“You need to understand how long people have been working. People get tired. Have you practiced that in your playbook? How will you document that,” he said.

“Make sure they eat well. Make your they have a hotel to stay in. Make sure they have time to go home! These are things you need to bake into your human side. We had a roster than said you are staying offline at this time,” Shrestha said, referring to dealing with the major incident involving JLR in 2025.

“It’s an ultra-marathon so you need resilience,” he added.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous Article[THN Webinar] New AI DDoS Attacks Are Smarter. Learn How to Fight Back
Next Article Gitea Vulnerability Exposes Private Container Images without Authentication
Team-CWD
  • Website

Related Posts

News

Everest Forms Pro Vulnerability Allows Remote Code Execution

June 4, 2026
News

5 Steps to Managing Shadow AI Tools Without Slowing Down Employees

June 4, 2026
News

Chinese-Speaking Actor TA4922 Widens Its Global Reach

June 4, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

Cyber M&A Roundup: Cyber Giants Strengthen AI Security Offerings

December 1, 20258 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

How cybercriminals are targeting content creators

November 26, 2025

When ‘hacking’ your game becomes a security risk

October 17, 2025

AI-powered financial scams swamp social media

September 11, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.