The worst time to work out who to call is in the middle of an attack. Have a plan, rehearse it, and have help lined up before you need it.
Most businesses first think about incident response during an incident. By then, simple questions become hard: who makes decisions, who tells customers, and who your insurance policy lets you call.
A plan that has never been rehearsed tends to fall apart on first contact with a real incident.
Businesses that want to be prepared rather than improvise, particularly those with cyber insurance, customers who ask about incident handling, or ISO 27001 plans, which expect incident management to be planned in advance.
Readiness services are delivered by Sophos's incident response team and arranged through us. We'll help you work out which ones are worth doing first.
Sophos Security Services Retainer — and Sophos's incident readiness services, delivered by the same team that handles emergency response.
Tell us a little about your business and we'll recommend the controls that matter most for it — no obligation, and no jargon.