Solutions
A landing for every framework you exercise against.
Pick the regulation, framework, or threat type your audit cycle is built around. Each page maps to scenarios in our library and to the AAR template your auditor reads.
HSEEP tabletop exercises
HSEEP tabletop exercises, run by AI, in 60 minutes.
Run a FEMA HSEEP-conformant tabletop exercise in 60 minutes. AI-facilitated, AAR built to HSEEP template, CISA CTEPs crosswalked. Built for public-sector buyers.
- FEMA HSEEP
- CISA CTEPs
- NIST 800-84
HIPAA incident response tabletop
HIPAA incident response tabletop — the AAR your OCR auditor wants.
HIPAA §164.308(a)(7) requires a tested contingency plan. Run a HIPAA incident response tabletop in 60 minutes. AAR timestamped and signed for OCR evidence.
- HIPAA §164.308
- NIST CSF 2.0
- SOC 2 CC7.4/CC7.5
SOC 2 incident response tabletop
SOC 2 incident response tabletop — evidence your Type II auditor accepts.
SOC 2 CC7.4 and CC7.5 require a tested incident response process. Run a SOC 2-anchored tabletop in 60 minutes. Auditor-ready AAR with CC7 crosswalk.
- SOC 2 CC7.4/CC7.5
- NIST CSF 2.0
- ISO 27035
ransomware tabletop exercise
Ransomware tabletop exercise — real injects, real decisions, real AAR.
Ransomware tabletop exercise, run in 60 minutes by AI. Real injects. Constrained decisions. AAR with framework crosswalks for HIPAA, SOC 2, FFIEC, PCI, HSEEP.
- NIST CSF 2.0
- HIPAA §164.308
- SOC 2 CC7.4/CC7.5
- FFIEC IT IR
- PCI 12.10
- HSEEP