ClickCease ..... ..... .....
..... ..... .....
...... ......

Tabletop Exercises

Secure your business with Pentest People's tabletop exercises tailored for ransomware scenarios. Part of our comprehensive Incident Response packages, these exercises empower you to identify threats, quarantine infected systems, and prevent future attacks.

  • CREST CSIR Accredited: We has achieved the CREST CSIR accreditation for Incident Response Services.

  • Live-Play Exercises Available: Learn from your response to a live-play exercise, allowing the best way for businesses to evaluate their response plans .

  • Dedicated Incident Response Consultants: Our team of Incident Response consultants have delivered Tabletop exercises across the UK for financial firms, corporate businesses and police forces.

Mountain Background

What is a Tabletop Exercise? 

A tabletop exercise is an immersive, discussion-based session designed to test and enhance an organisation's preparedness for cyber threats. It involves your key personnel from various departments coming together in a simulated environment to discuss potential emergency situations and their response strategies.

Let Our Tabletop Exercises Prepare You For a Cyber Incident

Our tabletop exercises are an integral part of our comprehensive Incident Response packages. It's a highly interactive, scenario-driven event that takes place over two days, where we simulate various cyber attack situations. This methodical approach allows your team to test their readiness and response strategies in a controlled environment.

Learn more

Are You in Urgent Need of Assistance? 

Don't let a cyber incident impact your operations or catch you off guard. Whether you're in the midst of a cybersecurity event or see storm clouds gathering on the horizon, it's time to take control.

Contact our helpline, and one of our team can assist you with experienced advice and technical support.

Meticulously Designed Scenarios & Training  

Our experts guide you through specific scenarios, each one tailored to mimic real-life cyber threats. The objective? To put your incident response plan to the test, identify any gaps in your defences, and ensure your team knows exactly what to do when faced with a real cyber incident.

At Pentest People, we believe in proactive preparation. Our tabletop exercises are not just about understanding cyber threats; they're about empowering your team to respond effectively and efficiently, minimizing the impact on your operations and getting you back to business swiftly.

Enhance Your Cyber Security Response with Cost-Effective Tabletop Exercises

Tabletop Exercises are one of the most cost-effective ways to test your ability to respond to a cyber incident. They offer a range of benefits:

green tick

Establish how effective your current defence and response mechanisms are

green tick

Test your current existing policies and procedures

green tick

Help to improve your colleagues' internal relationships and skills, particularly their ability to deal with a live cyber attack

green tick

Identify any additional areas for further improvement

Real-Life Scenarios Built For Your Business

Our Tabletop Exercises Cover Major Attack Scenarios

Ransomware Attack on a Critical Server

We simulate a real-world situation where your organisation's critical server falls victim to a sophisticated ransomware attack. This scenario will provide an immersive experience that will test your team's readiness and resilience under pressure.


The exercise begins with an unexpected system shutdown. Simultaneously, ransom demand messages start appearing on server screens. With the clock ticking, your team must quickly assess the situation, identify the affected systems, and formulate a strategic response.

Phishing Attack Leading to Ransomware

In this scenario, your team will navigate through a simulated phishing attack that escalates into a ransomware situation. The aim is to boost your team's preparedness, enhance your defence systems, and ensure a secure business environment from one of the most common attack entry points.

This exercise is an informative, professional, and confident approach that prepares your team for potential cyber threats. It's straightforward, jargon-free, and focuses on the benefits of proactive cybersecurity.



Ransomware Attack via Third-Party Vendor

This scenario immerses your team in a simulated ransomware attack initiated through a third-party vendor. The objective is not just to manage the crisis, but also to detect potential weak spots in your existing systems and processes.


By participating, your organisation will gain a clear understanding of its current cyber risk landscape, learn how to effectively respond to and recover from such an attack, and pinpoint areas for enhancement in vendor management and cybersecurity practices.

We Offer CREST Accredited Live-Play Tabletop Exercises 

Live-play exercises are advanced simulations where participants carry out their roles and responsibilities in real-time, responding to controlled injects that mimic a cyber incident. These exercises are designed to validate and stress-test an organisation's incident response plan in a realistic environment.

Learn more

A Realistic Example of How to Tackle a Cyber Incident

Live-play exercises are the best way to evaluate how well your incident response plans work, not only that but also how well your departments deliver the necessary work.

Through a Live-Play exercise you'll gain:

green tick

Validation: Confirm the effectiveness of your incident response plans.

green tick

Coordination: Improve communication and coordination among team members.

green tick

Preparedness: Enhance overall readiness for actual cyber incidents with a full analysis and review of your performance.

Work With Pentest People & Become Resilient Against Cyber Incidents 

Pentest People’s CREST-accredited tabletop exercises (TTXs) immerse your team in realistic cyber attack simulations, sharpening their response skills in a controlled, risk-free environment.

Tailored to your organisation’s unique challenges, our live-play scenarios ensure your team is ready to act decisively when it matters most.With our expert guidance, you’ll identify vulnerabilities, enhance your defences, and foster a culture of cyber resilience. Safeguard your operations, protect your reputation, and stay ahead of evolving threats.

Take Action

Contact us today to schedule your tailored TTX and build a stronger, safer future for your business.

Learn more

See What Our Clients Have to Say About our Professional Services

Pentest People stand out in the field of penetration testing due to the skillset of people they have working there. We undertook a complex bespoke pentest with them which required a lot of pre-work in order to make sure it was scoped correctly and they took the time to come onsite to make sure all was correct prior to commencing. From my experience with them, they are very intelligent people with a deep understanding of the security landscape and we will continue to use them for future testing requirements”.

Interactive Investors
Information Security Manager

"Pentest People has been a trusted partner in our Information Security audits, helping us achieve ISO27001:2013 and Cyber Essentials certifications. Their expertise, professionalism, and
customer-focused solutions have greatly improved our ICT infrastructure.

I highly recommend Pentest People to any potential client."

Linbrooke
Group Head of IT

“Pentest People were efficient, knowledgeable and very supportive of our organisation making the jump from Cyber Essentials to accreditation to the ‘Plus’ upgrade. They were great to communicate with, delivered as promised and we will certainly use again when re-certification comes round."

Goodform
Head of IT

“The SecureGateway allowed Pentest People to perform a quality penetration test while the tester worked remotely. The results and data collected by the consultant were at the level we would expect from a standard test, showing no real difference other than allowing us to proceed as normal”

Fuelcard Services
Information Security Manager

Pentest People have provided us with a very streamlined testing service, that can be easily reviewed using their SecurePortal. I’m pleased with the quality of the testing report and it has enabled us to feel more confident in our network security”.

Warwickshire City Council
Group head of IT

“We used Pentest People to assist us with our security testing. They truly understand this area extremely well and gave us great reassurance on areas that we needed to improve.

Pentest People are truly experts in the security field and we would highly recommend them. They have great depth of knowledge and breadth of experience”

Waverton Investment Management
Head of IT

"Pentest People perform Web Application and Infrastructure Penetration Testing for Pharmacy2U. They are always professional to engage with, provide an excellent level of service and the addition of the SecurePortal makes receiving and interrogating the results of the service very easy indeed.We look forward to working with them in the future and trust the work they deliver."

Pharmacy2U
Managing Director