EBP Integra — Enterprise Technology, Digital Trust & Strategic Protectionebp-integra.com
Enterprise Services • ES-11

Tabletop & Executive Training

Rehearse the decisions, not just the technical steps.

Scope

What the engagement covers.

The hardest parts of an incident are judgement calls made under uncertainty by people who rarely practise them. These exercises put executives and technical teams through those decisions before they are real.

Included capabilities

  • Executive tabletop exercises on breach, ransomware, privacy and AI incidents
  • Technical simulation for response teams with injects and time pressure
  • Board briefings on threat landscape, obligations and personal liability
  • Awareness campaigns and role-based training curricula
  • Certification-oriented capability programmes for internal teams

Outputs and deliverables

  • Scenario pack and facilitator materials
  • Decision log and observation record
  • Exercise report with findings and prioritized actions
  • Capability development roadmap for the team
Workflow

How it is delivered, step by step.

Each step has an owner, an entry condition and an artefact that has to exist before the next step begins.

01DesignScenario built on the organization’s real systems, vendors and exposures.
02BriefPre-read, roles, ground rules and observation criteria.
03RunFacilitated exercise with timed injects and decision capture.
04DebriefImmediate hot wash on decisions, gaps and friction points.
05ImproveFindings converted into plan changes, actions and owners.
Use cases

Where this is typically applied.

Use case 01

Demonstrating tested response capability to a regulator or insurer

Use case 02

Onboarding a newly formed crisis management team

Use case 03

Preparing a board that has never handled a public incident

Delivery model

The operating pattern for Enterprise Services.

The same delivery discipline applies across every capability in this line, so combined engagements stay coherent.

Assess
Current state, obligations, control coverage, gaps and material risks.
Design
Target architecture, control library, policy set, roles and evidence model.
Implement
Build controls into platforms, workflows and delivery pipelines.
Operate
Run the function, or coach the client team while they run it.
Assure
Independent testing, reporting to committee and continuous improvement.

Integration

  • Existing GRC, ticketing and ITSM platforms for issue and action flow.
  • SIEM, EDR and cloud posture tooling for control evidence.
  • HR and identity systems for role, joiner-mover-leaver and access review data.
  • Board and committee reporting cycles, so output lands in existing governance.

Engagement approach

Engagements start with a fixed-scope assessment so the client sees findings before committing to a build. Implementation runs in quarterly increments against an agreed roadmap, and any managed element carries a named lead, defined SLA and quarterly service review.