Back to scenarios
Code on a dark screen, illustrating the Double Tap: Cyber Attack Microsimulation
Cyber & DataTeam

Double Tap: Cyber Attack

At a glance

Double Tap: Cyber Attack is a simulation from iluminr in the Cyber & Data category for Technology & Security, Risk and Compliance. It tests how your team protects online & mobile banking, with indicative mapping to NYDFS Part 500, SEC Cyber Disclosure Rule and GLBA Safeguards Rule.

A major information services provider faces a cyber crisis, leading to system outages, regulatory scrutiny, and eroded client trust. Participants will manage rapid response adjustments, client communication, and rebuilding credibility under intense pressure.

What it tests

  • Validate Stakeholder Management protocols including communications strategy.
  • Assess decision making protocols in a dynamic and changing environment.
  • Validate strategies to restore regulator and customer trust after a complex crisis. Addressing legal action.

How you can run it

MicrosimulationRun as a team in a shared event room.
Full-Scale SimulationExtend it across teams, functions and partners.
Expert-FacilitatedOur team designs and runs it with you.

Questions about Double Tap: Cyber Attack

What does Double Tap: Cyber Attack test?

Double Tap: Cyber Attack tests whether your team can validate Stakeholder Management protocols including communications strategy, assess decision making protocols in a dynamic and changing environment and validate strategies to restore regulator and customer trust after a complex crisis. Addressing legal action.

Who should take Double Tap: Cyber Attack?

Double Tap: Cyber Attack is designed for Technology & Security, Risk, Compliance, Legal, Communications and Executive & Board.

Which regulations and standards does Double Tap: Cyber Attack support?

Double Tap: Cyber Attack supports testing expectations in NYDFS Part 500, SEC Cyber Disclosure Rule, GLBA Safeguards Rule, EU DORA, NIS2, APRA CPS 234, MAS TRM Guidelines, NIST CSF 2.0, EBA ICT & Security Risk Guidelines, ECB CROE, TIBER-EU, CBEST, APRA Intel-Led Cyber Testing, HKMA CFI, HKMA iCAST, RBI Cyber Security Framework, Singapore Cybersecurity Act, OSFI B-13, OSFI I-CRT, SAMA Cyber Security Framework, UAE Central Bank IS Regulation, UAE Information Assurance Standards, Israel INCD Cyber Methodology, ISO 27001, ISO 27035, NIST SP 800-61r3, NIST SP 800-53, CISA Cyber Storm, ENISA Cyber Europe, ISO 22398 and NIST SP 800-84. Mapping is indicative, so confirm scope against your own obligations.

Can Double Tap: Cyber Attack be run individually or as a team?

It runs as a team exercise in a shared event room. It can also be extended into a full-scale simulation across teams and partners.

Can we customize Double Tap: Cyber Attack?

Yes. You can tailor the roles, plans, critical services, injects and objectives in the iluminr builder, or have our team customize it for you.

How do we get access to Double Tap: Cyber Attack?

Request it from this page. If you are an iluminr customer, we will set up access in your account. If not, we will contact you and either provide access or facilitate it for you.

Related scenarios

Phone call in the dark, illustrating the Bracing for Impact: Communications Test MicrosimulationCyber & DataBracing for Impact: Communications TestTest your organization's ability to send timely Emergency Notifications in response to a sophisticated, self-learning malware threat that targets critical infrastructure.Code on a dark screen, illustrating the Data Breach: Major Leak MicrosimulationCyber & DataData Breach: Major LeakA massive data breach has struck some of the world’s largest organizations, including your own, leading to the potential compromise of sensitive personal information. The breach has exposed the names, phone numbers, and addresses of millions of customers, raising immediate concerns about privacy, identity theft, and the security of your data handling practices.Code on a dark screen, illustrating the Extortion: Ransomware Invasion MicrosimulationCyber & DataExtortion: Ransomware InvasionAddress a widespread ransomware attack demanding cryptocurrency payments, focusing on stakeholder communication and restoring operational control.