> Skip to content
  • Published: 26 November 2024
  • ISBN: 9781718503823
  • Imprint: No Starch
  • Format: Paperback
  • Pages: 200
  • RRP: $140.00

Cybersecurity Tabletop Exercises

From Planning to Execution





The complete start-to-finish guide for planning and delivering successful cybersecurity tabletop exercises.

The complete start-to-finish guide for planning and delivering successful cybersecurity tabletop exercises.

Cybersecurity Tabletop Exercises, written by veteran security consultants Robert Lelewski and John Hollenberger, is an essential resource for cybersecurity professionals and anyone tasked with enhancing their organization’s incident response capabilities. This comprehensive guide to tabletop exercise planning and delivery offers practical insights, step-by-step instructions, and real-world examples to improve your team’s ability to prevent and respond to cyberattacks.

The book is divided into two main parts. In Part I: The Tabletop Exercise Process, you’ll learn:

  • Why you should perform tabletop exercises and what their organizational benefits are 
  • Effective planning and logistics tips, including how to gain executive sponsor support
  • How to develop realistic scenarios, injects, and storyboards
  • Facilitation techniques to ensure active participant engagement
  • Evaluation methods and follow-up activities

The example scenarios in Part II include:
  • Technical tabletops covering phishing campaigns, ransomware attacks, and zero-day vulnerabilities
  • Executive-level exercises that focus on high-impact incidents
  • Cross-functional cases such as physical security breaches, social media compromises, and insider threats

With examples tailored for various roles, you’ll discover how to transform tabletop exercises from a mere compliance requirement into a powerful strategic preparedness tool. Whether you’re new to tabletop exercises or an experienced practitioner, this book provides proven insights to strengthen your organization’s cyber incident response capabilities and overall security posture.
  • Published: 26 November 2024
  • ISBN: 9781718503823
  • Imprint: No Starch
  • Format: Paperback
  • Pages: 200
  • RRP: $140.00

Praise for Cybersecurity Tabletop Exercises

“This book is a great resource for anyone looking to start or enhance their cyber simulation exercise capability. The practical insights, examples and step-by-step instructions can be immediately applied, helping readers to effectively test and evaluate a team’s ability to respond to a cyber incident. Good Stuff!"

—Anthony Giandomenico, Global VP, FortiGuard Security Consulting

"A must-read for anyone involved in cybersecurity incident response. It expertly covers all aspects of conducting tabletop exercises, from scenario development to delivery to evaluation, providing practical advice and examples. Get ready to design and execute impactful tabletop exercises with the help of this book!"

—Jeffrey J. Carpenter, FIRST Incident Response Hall of Fame inductee

"Rob and John clearly guide readers on how to design and get the most value out of a tabletop exercise rather than it just being another compliance requirement. They will not steer you wrong!"

—Troy M. Bettencourt, Global Partner & Head of IBM X-Force

"Lelewski and Hollenberger offer a masterclass in cybersecurity preparedness, covering every facet of incident response planning with meticulous detail and practical insights. Their focus on engaging an executive audience is particularly noteworthy, shedding light on the critical role that C-level executives and cross-functional leaders play in managing cybersecurity incidents. Tabletop Exercises sets a new standard in the field and is essential reading for any organizations aiming to enhance their cybersecurity readiness.”

—Brian Nesgoda, CIO/CISO, Black Swan Technologies

"Whether you are brand new to the concept of tabletops or a seasoned professional, this book empowers both individuals and teams to learn and improve on the planning, development and facilitation of these critical cyber exercises. Tabletop Exercises leads readers right from the design stage through to delivery, feedback gathering and even gaining organisational buy-in, with a variety of fabulous example scenarios and injects that many teams could simply pick up and run with! This should be on the bookshelf of any cyber professional who takes their tabletops seriously."

—Rebecca Taylor, Threat Intelligence Knowledge Manager @ Secureworks

penguin pop image
penguin pop image