Skip to content

Incident readiness scan

Ten questions, a read on how response-ready you are.

Not an audit; an honest indication. Spread over four clusters: plan, detection, response and recovery. Result shows immediately with tier, per-cluster gap list and the top three priorities. For the email report we briefly ask for your address and company name.

All scans

Plan, detection, response, recovery

Answer each control with yes, partial or no. If unsure, pick no, that gives an honest lower bound.

Plan and runbook

Do you have a documented incident response plan?

Are incident roles explicitly assigned (lead, comms, technical, legal/DPA)?

Have you run a tabletop exercise in the last 12 months?

Detection

Is EDR or MDR active on all endpoints and servers?

Do you have central logging with at least 90 days retention?

Response route

Do you have 24/7 incident reachability (internal or via partner)?

Is there a comms plan for customers, the DPA and your insurer in an incident?

Do you have an up-to-date vendor escalation list (critical suppliers, contacts, SLAs)?

Recovery

Have you actually tested a backup restore in the last 90 days?

Do you have immutable backups (write-once, air-gapped or versioned)?