Skip to main content
Guidance

How to prepare for and plan your organisation's response to severe cyber threat: a guide for CNI

Act now to be ready to withstand and recover from severe cyber attacks.

Page 21 of 26

4.3 Integrate recovery plans with wider organisational planning

Cyber resilience isn't separate from business continuity, and must be embedded in your organisation's overall approach to disruption. Collaborate with other areas of the wider organisation to ensure the best recovery results.

ActivityWhat to do
Connect to business continuity plans. 
  • Ensure cyber incident scenarios are included in business continuity and disaster recovery plans.
  •  
    • Test that these plans work together.
    • Identify and address any gaps or conflicts between cyber response procedures and wider business continuity processes.
Prepare your people. 
  • Plan for the impact on staff of operating under crisis conditions for extended periods. 
  •  
    • Consider shift patterns, decision-making authority, communication protocols (particularly if your usual communication method is unavailable) and staff welfare. 
    • Remember that tired, stressed people make poor decisions during crises.
Learn from past disruptions. 
  • Review how your organisation responded to previous crises, whether cyber incidents, natural disasters, or the COVID-19 pandemic. 
  •  
    • What worked well? What didn't? What capabilities proved essential? Apply these lessons to your cyber resilience planning.
    • Where possible share lessons with sector peers. 

Published

Reviewed

Version

1.0