Ransomware Attack
Pay or no pay decision. Encryption containment. Regulatory notification clocks, which vary by regime. Negotiation and recovery sequencing.
Twenty disruption scenarios, grouped into three families. Scores are directional and are not predictions of real-world outcomes.
AI-CRRQ™ applies the same Survival Index™ formula across every disruption scenario your organization faces, from ransomware to hurricanes, and from hardware failure to pandemic. The three vectors (TEI · ORCI · RVI) are consistent across scenarios. The scenario drives the inputs. The score shows your modeled survivability posture under that scenario.
Pay or no pay decision. Encryption containment. Regulatory notification clocks, which vary by regime. Negotiation and recovery sequencing.
DDoS, BGP hijack, ISP failure, DNS attack. Can the organization operate without internet connectivity? For how long?
Deepfake CEO fraud, AI-powered phishing at scale, voice cloning wire transfer fraud. Identifying and halting AI-driven social engineering.
Compromised software vendor (SolarWinds-style), malicious package injection, trusted update mechanism weaponized.
Malicious or accidental data exfiltration. Rogue admin privilege abuse. Detection, containment, and notification sequencing.
Critical unpatched vulnerability actively exploited. Emergency patch deployment, compensating controls, operational continuity during remediation.
AWS, Azure, or GCP regional failure. Can you operate without your primary cloud? Multi-cloud failover. On-premise fallback readiness.
Wire fraud, invoice manipulation, executive impersonation. Detection speed, financial recovery, vendor notification, and regulatory reporting.
Physical destruction of primary data center. Geo-redundancy activation, failover to DR site, vendor coordination, insurance notification.
Extended utility outage. UPS capacity hours, generator fuel supply, critical system prioritization, manual process activation.
Critical server, storage array, or network device failure. RAID integrity, vendor SLA response, hot spare availability, operational impact timeline.
Earthquake, hurricane, flood, or tornado affecting primary operations. Geographic risk score, facility vulnerability, staff safety, supply chain disruption.
Voice and data outage across primary carrier. Backup carrier activation, cellular failover, critical communication alternatives, vendor escalation.
Building evacuation, inaccessibility, or loss. Remote work activation, alternate site readiness, physical asset recovery, staff communication protocols.
Sudden departure or incapacitation of CISO, CTO, CIO, or other critical technology leader. Succession plan activation, knowledge transfer, interim coverage.
Exam failure, consent order, or enforcement action. NYDFS, SEC, OCC, or DOH notification. Remediation plan, board reporting, operational restriction management.
Critical vendor bankruptcy, service termination, or major outage. Vendor concentration risk, contract termination provisions, replacement timeline, operational workarounds.
Model hallucination causing business decisions, AI poisoning, or agentic AI acting outside boundaries. Manual override, model rollback, operational impact containment.
PII or PHI exposure requiring mass notification. Regulatory notification clocks, breach counsel engagement, notification vendor, credit monitoring, board communication.
Mass workforce unavailability, government-ordered shutdown, or public health emergency. Remote work capacity, critical role coverage, supply chain disruption, regulatory accommodations.
Each scenario uses the same Survival Index™ formula with scenario-specific inputs, giving you a structured, scored resilience posture for every scenario your organization faces.