Data Breach: Major Leak is a simulation from iluminr in the Cyber & Data category for Technology & Security, Risk and Compliance. It tests how your team protects online & mobile banking, with indicative mapping to NYDFS Part 500, SEC Cyber Disclosure Rule and GLBA Safeguards Rule.
A massive data breach has struck some of the world’s largest organizations, including your own, leading to the potential compromise of sensitive personal information. The breach has exposed the names, phone numbers, and addresses of millions of customers, raising immediate concerns about privacy, identity theft, and the security of your data handling practices.
What it tests
- Validate the incident response procedures for containing a data breach.
- Verify communication protocols between IT, security, and key stakeholders.
- Demonstrate proficiency in initial breach assessment and documentation.
How you can run it
Questions about Data Breach: Major Leak
What does Data Breach: Major Leak test?
Data Breach: Major Leak tests whether your team can validate the incident response procedures for containing a data breach, verify communication protocols between IT, security, and key stakeholders and demonstrate proficiency in initial breach assessment and documentation.
Who should take Data Breach: Major Leak?
Data Breach: Major Leak is designed for Technology & Security, Risk, Compliance, Legal, Communications and Executive & Board.
Which regulations and standards does Data Breach: Major Leak support?
Data Breach: Major Leak supports testing expectations in NYDFS Part 500, SEC Cyber Disclosure Rule, GLBA Safeguards Rule, EU DORA, NIS2, APRA CPS 234, MAS TRM Guidelines, NIST CSF 2.0, EBA ICT & Security Risk Guidelines, ECB CROE, TIBER-EU, CBEST, APRA Intel-Led Cyber Testing, HKMA CFI, HKMA iCAST, RBI Cyber Security Framework, Singapore Cybersecurity Act, OSFI B-13, OSFI I-CRT, SAMA Cyber Security Framework, UAE Central Bank IS Regulation, UAE Information Assurance Standards, Israel INCD Cyber Methodology, ISO 27001, ISO 27035, NIST SP 800-61r3, NIST SP 800-53, CISA Cyber Storm, ENISA Cyber Europe, ISO 22398 and NIST SP 800-84. Mapping is indicative, so confirm scope against your own obligations.
Can Data Breach: Major Leak be run individually or as a team?
It runs as a team exercise in a shared event room. It can also be extended into a full-scale simulation across teams and partners.
Can we customize Data Breach: Major Leak?
Yes. You can tailor the roles, plans, critical services, injects and objectives in the iluminr builder, or have our team customize it for you.
How do we get access to Data Breach: Major Leak?
Request it from this page. If you are an iluminr customer, we will set up access in your account. If not, we will contact you and either provide access or facilitate it for you.