by Mark Rasch
Without belaboring the point, there are many similarities between the COVID-19 pandemic and cybersecurity. We can learn from the response to the COVID pandemic lessons about cybersecurity.
We Know It Is Coming
For decades, public health planners have been warning that there would be a novel (no-immunity) disease that would spread across the globe and cause damage and destruction. The same is true for cybersecurity professionals. Whether it is warnings about potential zero-day attacks, a cyber “Pearl Harbor,” massive cyber warfare, cyber-terrorism or similar attack, we know that we are vulnerable, and we have (to some extent) mapped out the most likely scenarios and defenses to them.
We Planned for This
In both biological and cyber terms, we have contingency plans. In both cases, we have table-topped, war-gamed, red-teamed and mapped each likely scenario, the critical dependencies, the probable responses and more. We have done this on a national level, on a state level and, to a greater or lesser extent, on a corporate preparedness level. Problem is, we have in both cases not heeded the lessons we have war-gamed. The contingency plans we have developed all too often simply sit in a binder on a shelf, and even when they are needed, they are not referenced. In a crisis situation, we end up re-inventing the crisis response during the crisis. To some extent this is inevitable—every scenario is different and plans for one type of crisis may not be fully applicable to another, but we should heed the plans.













