A
tabletop exercise is a discussion-based simulation where participants walk through a scenario — identifying gaps in IR plans, roles, communication, and decision-making without actual system changes.
Cheapest and most accessible IR testing method. Run tabletops regularly. Scenarios: ransomware, data breach, insider threat. Compare results to documented procedures. Fix gaps before a real incident.