Skip to main content
Annual Tabletop
Menu

Scenarios library

Framework-aligned scenarios, ready to run.

13 scenarios across 9 frameworks, authored by people who've sat on the auditor side of the table. Pick one, try it in the demo, or bring it to your next exercise.

What's in a scenario

Not a Word doc. A session-ready, framework-tagged, decision-scored package.

A tuned narrative
A threat your buyer recognizes — county ransomware, FFIEC wire fraud, hospital EHR outage, SMB BEC — written in the language of that environment.
Three constrained decisions
Injects arrive with a time box and a bounded option set. Atlas captures what your team picks, time-stamps it, and scores it against your plan.
Framework crosswalk
Every scenario ships mapped to a primary framework plus every other one it touches. NIST CSF 2.0, HSEEP, FFIEC, HIPAA, PCI, CJIS, CMMC — crosswalks land in the AAR, not a separate spreadsheet.
HSEEP-conformant AAR
The artifact at the end is identical in structure to the one a $50K consulting engagement produces. PDF and DOCX. Forward it to your auditor, examiner, or carrier.
Filter

Showing 13 of 13 scenarios

Don't see what you need?

Request a custom scenario.

We build custom scenarios for design partners, Financial Institutions, and enterprise tiers. Tell us the threat model, the framework you're graded on, and the environment — we'll ship a session-ready scenario with crosswalks and sample AAR inside two weeks.

Custom scenarios include a free revision round and are yours to re-run year over year.

Try any scenario in the 90-second demo.

Pick a default for your segment, or swap to one of the 10+ scenarios in the library.