Free Tool

Incident Response Tabletop Exercise Template
one package for charter, scenarios, injects, decisions, scoring, and after-action review

A free, copy-ready incident response tabletop exercise template. Twelve structured sections covering exercise charter and scope, roles and responsibilities, scenario selection criteria with eight-lane scenario library, pre-exercise read-ahead pack, exercise structure and timing, inject schedule with technical and business pressure, decision capture template, observer scoring rubric across six dimensions, after-action report template, action item ledger, governance review cadence, and evidence pack with audit trail. Aligned with ISO/IEC 27001 Annex A 5.24, A 5.26, and A 5.27, SOC 2 CC7.4 and CC7.5, PCI DSS Requirement 12.10.2, NIST SP 800-61 Rev. 2 Section 3.2, NIST SP 800-53 IR-2 and IR-3, HIPAA 164.308(a)(7), NIS2 Article 21, DORA Articles 25 and 26, and the standard expectations under FedRAMP and HITRUST.

No credit card required. Free plan available forever.

Loading tool...

Run the tabletop programme on the same record as the rest of the security work

SecPortal carries the exercise charter, the scenario pack, the after-action report, and the action item ledger on one workspace so the audit read of incident response testing and the operational read are the same record. Free plan available.

No credit card required. Free plan available forever.