18 Dec 2025 | 11:54 Share this
E1: The First 72 Hours: What Really Matters in a Major Incident
Cyber resilience is no longer just a security problem. It is a business survival issue.
In this episode of CISO Unplugged, Nick Rafferty sits down with Jon Staniforth, a CISO with more than 20 years of experience across complex, highly visible organisations, to unpack what resilience really means when cyber incidents and IT outages are inevitable.
The conversation explores why communication during a crisis is often the defining factor in how organisations are judged, how early uncertainty shapes regulatory reporting and why many businesses struggle to balance transparency with accuracy. Jon also explains the critical distinction between business continuity and IT disaster recovery, and why rushing to recovery can sometimes do more harm than good.
The discussion then widens to resilience as a strategic capability. From cultural mindset shifts and executive governance to supply chain dependencies and third party risk, this episode highlights why resilience must focus on keeping essential services running, not just adding more security controls.
With real-world examples and practical insights, this episode is designed for senior leaders navigating increasing regulatory pressure, operational complexity and rising expectations from customers, regulators and boards.
Key Topics Covered
-
Why crisis communication shapes trust during major incidents
-
How regulatory reporting timelines affect incident response decisions
-
Business continuity versus disaster recovery and why the difference matters
-
Resilience as a cultural and governance challenge, not just a technical one
-
Lessons from major outages at global technology providers
-
Understanding and managing supply chain and third party dependencies
-
How resilience is likely to evolve under regulations such as NIS2 and DORA
Who Should Listen
-
Chief Information Security Officers
-
Chief Information Officers
-
Risk and compliance leaders
-
Business resilience and continuity professionals
-
Senior executives with operational accountability
Hosted by: Nick Rafferty CEO and Co-Founder
Guest: Jon Staniforth CISO
- Cybersecurity
Latest Episodes
The Risk Reckoning & SureCloud Foundations Launch Webinar
28 Aug 2025
- GRC
How Dynamic Risk Intelligence and Automation Are Transforming the Industry
20 Feb 2025
- GRC
- Automation
E28: Rory Innes - A World Where Cybercriminals Don’t Win
28 May 2024
- Cybersecurity
- GRC
E27: Building Organisational Resilience & Better Tabletop Exercises
07 May 2024
- Cybersecurity
- GRC
Useful Resources
- GRC
- Other
- GRC
- White Paper
- Compliance
- ISO 27001
- SOC 2
- Guide
- DORA
- Compliance
- Toolkit
- DORA
- Compliance
- White Paper
- Compliance
- Other