Manage cookies
This site uses cookies to collect information about your browsing activities in order to provide you with more relevant content and promotional materials, and help us understand your interests and enhance the site. Visit our cookie policy to learn more.
Manage cookies
Cookie Settings
Cookies necessary for the correct operation of the site are always enabled.
Other cookies are configurable.
Essential cookies
Always On. These cookies are essential so that you can use the website and use its functions. They cannot be turned off. They're set in response to requests made by you, such as setting your privacy preferences, logging in or filling in forms.
Analytics cookies
Disabled
These cookies collect information to help us understand how our Websites are being used or how effective our marketing campaigns are, or to help us customise our Websites for you. See a list of the analytics cookies we use here.
Advertising cookies
Disabled
These cookies provide advertising companies with information about your online activity to help them deliver more relevant online advertising to you or to limit how many times you see an ad. This information may be shared with other advertising companies. See a list of the advertising cookies we use here.
Telecommunications and Technology Case Study | Resilience Guard
Home  ›  Insights  ›  Case studies  ›  Technology and telecoms
Case study · Technology and telecoms

Cyber resilience and crisis command capability for a multinational connectivity provider

Network continuity as an executive discipline: service criticality, cyber disruption readiness and crisis command maturity for essential connectivity.

Practitioner led since 2014 Led by John Zeppos, Founder and Group Managing Director DRI Accredited training provider Three BCI Global Awards 16+ EU Horizon research projects Trusted to train 3 of the Big Four
SectorTelecommunications
FootprintMultinational, consumer to government services
FrameworksISO 22301, NIS2
FocusNetwork continuity and crisis command

Business context: telecom disruption is uniquely systemic

A major outage becomes a national level continuity event. The operator faced increasing exposure to:

  • Cyber enabled network interruption across consumer, enterprise and government services.
  • Distributed infrastructure and supplier dependency, including cloud environments.
  • Regulatory escalation under NIS2 essential entity expectations.
  • Rising enterprise customer assurance demands across jurisdictions.
  • IT and network technology convergence widening the disruption surface.
How can essential connectivity services remain available under extreme disruption scenarios across all operating regions?

The situation

Strong technical teams existed, but resilience maturity varied across geographies:

  • Inconsistent recovery objectives between countries.
  • Crisis escalation pathways differing across business units.
  • Limited executive command clarity during cyber disruption.
  • Supplier and cloud dependency risk not formally embedded in continuity governance.
  • No unified resilience maturity measurement across service domains.

How the engagement was built

Engagement architecture: Cyber resilience and crisis command capability for a multinational connectivity providerExecutive assurance and crisis governance01Criticalconnectivity servicemapping and...02Cyber disruptionreadiness fornetwork environments03Crisis commandmaturity andexecutive exercisingISO 22301 aligned business impact analysis and evidence base
The engagement architecture: governance above, sector-specific pillars, an ISO 22301 evidence base beneath.

01Critical connectivity service mapping and prioritisation

With network leadership we defined the services that must never fail: national backbone connectivity, emergency and public sector availability, enterprise managed network obligations. Outputs included tiered service criticality, restoration sequencing logic and executive visibility of systemic dependencies.

02Cyber disruption readiness for network environments

Response and recovery models for compromise of network management platforms, ransomware against customer facing environments and distributed infrastructure attack, integrated with service restoration sequencing.

03Crisis command maturity and executive exercising

A unified crisis command structure across regions, drilled through leadership exercises on realistic network crisis scenarios, producing decision logs and closed corrective actions.

What programmes of this maturity deliver

Consistent with the firm's experience across the sector, high maturity programmes of this kind typically achieve:

Typical outcome ranges of high maturity programmes0%50%100%Faster recovery capability30 to 50%
Typical ranges across comparable high maturity programmes, not a single client claim.
  • Stronger crisis escalation clarity at executive level.
  • Improved regulatory readiness under NIS2 essential entity expectations.
  • Enhanced enterprise and government customer trust.
Frequently asked questions: Telecom resilience
How does ISO 22301 apply to telecommunications operators?

ISO 22301 provides the governance standard for continuity management. In telecom environments it ensures critical connectivity services are prioritised, recovery objectives are defined and resilience capability is auditable across regions.

What does NIS2 require from telecom providers?

NIS2 requires essential entities such as telecom operators to demonstrate preparedness, incident handling, continuity planning, supplier oversight and evidence based resilience governance.

How is cyber risk integrated into telecom continuity?

Cyber disruption is treated as an operational outage scenario. Effective frameworks integrate cyber response with service restoration sequencing, crisis leadership and recovery governance.

Related
Start the conversation

Put this capability behind your operations.

A confidential conversation with a senior practitioner who has delivered in your sector. We respond within 24 hours.

Book a consultation
All consultations are treated with strict confidentiality.