Adversarial thinking. From the front line to the boardroom.

First-hand experience of cyber crises — ransomware, extortion, international incidents, social engineering. Now applied to prepare your organization.

Solutions

Two ways to prepare for your next cyber crisis

Prepare

Help your teams see cyber risk the way an attacker does.
Then embed the response into your existing crisis management framework.

Through focused workshops, structured reviews, practical preparation and years of real-life experience, we surface blind spots, clarify roles, identify friction areas before pressure hits.

Test

Validate your readiness under realistic adversarial pressure.

Cyber crisis exercises: from C-level tabletops to multi-day simulations built from real incident patterns and delivered for public CERTs and critical organisation. Scenarios built from real incident patterns. Scenarios built from real incident patterns. A multidisciplinary approach combining media pressure, real-time legal constraints, and credible attack sequences to test what you believe is solid, not only what you already know is fragile.

Physical red team: Solo grey-box assessments designed to test physical security and internal processes from within. For full black-box operations, a dedicated team covers OSINT, social engineering, and attempts to bypass physical access controls.

OPFOR Intelligence

Why OPFOR Intelligence?

50+ cyber incidents managed including ransomware, extortion and international crisis coordination
Lead subject-matter expert assessor in crisis management for ANSSI’s PRIS and PACS qualifications (French national cyber qualifications framework)
Trusted by CISOs, IT teams, and senior decision-makers to surface blind spots that existing processes do not always reveal
A proven approach integrating cybersecurity, physical security and human factors
Cyber threat monitoring
Interactive tool

Could you spot a fake URL?

Put your instincts to the test with PhishDrill, our free phishing awareness tool. Our clients may use their own URLs for a realistic, tailored training experience.

Try PhishDrill
PhishDrill

Missions: cyber crisis management, incident response, crisis exercises

Examples of previous work...

Adapting crisis management processes to cyber risk

We contributed to fully adapting the crisis management process to better handle cyber threats within a large and complex critical infrastructure and several subsidiaries.

Client: a critical, publicly traded, large industrial operator

Annual cyber crisis exercises for a public CERT

With a first-class technical partner, we created and delivered three annual multi-day cyber crisis exercises for a large public CERT. The exercises were multidisciplinary, with full infrastructure simulation and the team's projection.

Client: a public CERT

International crisis management

Cyber crisis and extortion affecting several countries. Assumed crisis lead through CERT Intrinsec, supporting the client's core crisis team and advising on public communication as well as cybersecurity strategies.

Client: an international organization active in 30+ countries

Creation of cyber crisis management processes

Drafting of a cyber crisis management process manual, integrating it with existing corporate processes and tools such as IT ticketing and GDPR incident handling.

Client: a medium-sized industrial French organization

Cyber crisis exercise for 16 branches and departments

Major cyber crisis exercise involving the security, IT and risk departments, with a first-class technical partner. Training 16 branches and departments on the same scenario for several combined attacks.

Client: a critical, publicly traded, large industrial operator

Cyber crisis communication

During a cyber crisis, with a first-class legal partner, we advised on crisis communication. We created common, precise and transparent wording for customers and external stakeholders.

Client: a French national sports federation

Dual physical/IT audit

We organized a dual audit integrating physical security and cybersecurity, both involving on-site penetration testing. We managed the physical security audit, coordinated the cybersecurity work and drafted the global final report.

Client: a French law firm specializing in international arbitration

3-days long cyber crisis exercise in an industrial environment

Preparing and directing a three-days Cyber exercise, with the help of an internal CERT + CISO's team. Stimulating both management and technical crisis cells. Two countries playing.

Client: a large, international, industrial organisation