Script collection
Cybersecurity & Incident Response conversation scripts
10 spoken scripts and techniques for Cybersecurity & Incident Response conversations, collected on one page. Practice them out loud in Dehurdle.
How CISOs Brief the Board of Directors During an Active Ransomware Attack
During an active cyber incident, technical jargon panics board directors. The 4-part executive containment briefing that maintains boardroom confidence.
The Friction
Board members want to know two things immediately: Is customer data compromised, and when will operations resume? Getting lost in technical malware details induces boardroom panic.
The 4-Part Board Crisis Briefing
Breaking Data Breach Notifications to Fortune 500 Clients
Enterprise clients demand contractual 24-hour breach disclosures. How to communicate compromised records without triggering premature contract terminations.
The Transparent Containment Script
Convincing the CFO Not to Cut Cybersecurity and Penetration Testing Budgets
CFOs view security tools as cost centers during economic downturns. How to calculate Annualized Loss Expectancy (ALE) to defend your InfoSec budget.
The Annualized Loss Expectancy (ALE) Pitch
Protocol and Phrasing for Ransomware Threat Incident Communications
Communicating with ransomware actors requires trained hostage negotiation psychology to buy time for forensic recovery. The core communication protocols.
The Time-Extension Protocol
Never make commitments or reveal recovery progress. Use professional, bureaucratic language to request proof-of-decryption while internal teams restore clean backups from cold storage.
Persuading Skeptical Software Engineers to Adopt Strict Zero Trust Controls
Engineers push back on hardware keys and VPN rotations because they slow down local development. How security leads align on developer-friendly Zero Trust.
The Frictionless Zero Trust Pitch
What to Say When a Third-Party Vendor Exposes Your Customer Data
When a third-party billing or analytics vendor is compromised, blaming them looks weak. How to take charge of vendor supply chain security communications.
The Vendor Isolation Script
Translating High-Severity CVE Vulnerabilities into Business Risk
Telling executives that an open-source library has a 9.8 CVSS score means nothing to them. The digital lock-picking metaphor that unlocks emergency patching approval.
The Digital Master Key Metaphor
Leading High-Stress SOC Teams During 72-Hour Security Crises
Security analysts working 18-hour shifts are prone to catastrophic analytical mistakes. How to enforce mandatory shift rotations and sleep hygiene during major cyber attacks.
The Mandatory Shift Handover Order
Interviewing Suspected Employees in Data Exfiltration Investigations
Confronting an insider threat suspect requires strict factual objectivity without revealing ongoing forensics telemetry. The neutral audit inquiry framework.
The Factual Access Inquiry Script
Negotiating Complex Claim Approvals with Cyber Insurance Adjusters
Cyber insurance carriers look for MFA configuration gaps to deny multi-million dollar claims. How CISOs provide verified audit trails.
The Compliance Proof Script
Practice out loud before the real conversation
Pick one script from this page and say it out loud in Dehurdle. The free speech check shows your speaking pace and how many filler words you use.
More playbooks
Supply Chain & Logistics conversation scripts
10 spoken scripts and techniques for Supply Chain & Logistics conversations, collected on one page. Practice them out loud in Dehurdle.
Read ScriptsHuman Resources & People Ops conversation scripts
10 spoken scripts and techniques for Human Resources & People Ops conversations, collected on one page. Practice them out loud in Dehurdle.
Read Scripts