Industry Scenarios

Ten crisis scenarios. Every brief open.

Each scenario is built around how a crisis actually hits its sector: the injects, communication channels and compliance duties are the ones that industry really faces. Every brief is public, no email gate: read it, print it, run your own tabletop with it. Or run it with us, live.

Scenario catalogue

ManufacturingProduction-line ransomware, Manufacturing

Production-line ransomware

Ransomware halts the line and jumps the IT/OT boundary. Balance supplier communications, quality-assurance impact and regulatory reporting while fighting to keep production running.

NIST CSF3hPractitioner
View scenario
Cross-industryThe compromised AI assistant, Cross-industry

The compromised AI assistant

An employee installs an unvetted AI assistant to hit a deadline and connects it to everything. It turns out to harvest tokens and files. Now you must scope what a third-party tool could reach, revoke its access and decide whether a data breach is notifiable, before you even know what left the building.

NIST CSF3hPractitioner
View scenario
OT / ICSIndustrial control-system compromise, OT / ICS

Industrial control-system compromise

An attacker reaches SCADA and PLC systems. Manage safety-critical processes, physical impact and the friction between IT security and operations-technology teams.

IEC 624433hExpert
View scenario
Banking & FinanceSWIFT compromise & data exfiltration, Banking & Finance

SWIFT compromise & data exfiltration

Fraudulent transfers and customer-data theft under a DORA clock. Handle regulators, customer notification, fraud investigation and market exposure at once.

DORA3hPractitioner
View scenario
HealthcareHospital network ransomware, Healthcare

Hospital network ransomware

Patient data exposed while care continues. Weigh patient safety, medical-device security and notification obligations against public-health communication under intense scrutiny.

ISO 270013hPractitioner
View scenario
Energy & UtilitiesGrid infrastructure attack, Energy & Utilities

Grid infrastructure attack

Cascading failures across critical infrastructure. Coordinate with government, manage public-safety messaging and restore service under national-security scrutiny.

NIS2 / KRITIS3hPractitioner
View scenario
RetailE-commerce breach at peak season, Retail

E-commerce breach at peak season

Payment-card data stolen during the holiday rush. Meet PCI DSS obligations and customer-notification rules while defending brand reputation and business continuity.

PCI DSS3hPractitioner
View scenario
GovernmentNation-state APT on citizen services, Government

Nation-state APT on citizen services

An advanced actor targets citizen data and critical services. Navigate inter-agency coordination, national-security protocols, public transparency and political stakeholders.

NIS23hExpert
View scenario
Logistics & ShippingFreight & warehouse ransomware, Logistics & Shipping

Freight & warehouse ransomware

Ransomware freezes the transport-management and warehouse systems that move freight. Keep goods flowing, meet customer SLAs and coordinate a sprawling third-party network under pressure.

NIST CSF3hExpert
View scenario
Port TerminalPort terminal OT compromise, Port Terminal

Port terminal OT compromise

A compromise of terminal operating systems and crane controls stalls a national gateway. Balance NIS2 obligations, physical safety and the economic weight of a halted port.

NIS23hPractitioner
View scenario

Don't see your exact threat model?

We co-design bespoke scenarios around your real adversaries, systems and stakeholders.