Summary
Marina’s core message is that healthcare cybercrisis response improves most when organizations focus on the practical basics that repeatedly fail under pressure: build a crisis plan, keep it current, and practice it before an incident forces everyone to improvise. She framed the session as broader than ransomware despite the title, explaining that cybercrises can arise in many ways and that her goal was to share actionable lessons distilled from ZCERT’s incident response experience rather than deliver a comprehensive crisis-management theory seminar.
Key Topics
5 key topics from Marina Bochenkova at ONE Conference. Thicker branches were mentioned more often in the talk.
Flatline vs. Recovery: Responding to Ransomware Attacks on Healthcare
Click a topic to open it
Key Takeaways
- Build a simple crisis plan before an incident occurs.
- Practice crisis procedures until non-security teams understand their roles.
- Keep response documents updated as suppliers, software, and obligations change.
- Write instructions for stressed teams under severe time pressure.
“Most of the time wasted in the chaos is due to instructions that aren't clear, missing information, and contacts that are unknown.”

Marina Bochenkova
Share
Up Next

ENext in agenda
Leading the fight against cybercrime
Caroline Sander, Fieke Miedema, Esther Sachs, Christa de Pagter, Matthijs Jaspers
cybercrimelaw enforcement



Also on incident response
Examples of collaboration within the Cyber Resilience Network: the SME Cyber Emergency Line and Setting up an ISAC on Curacao
Fokko Dijksterhuis, Joël A. Sanches, Sanne Bannink, Jan-Peter Soenveld
cyber resiliencepublic private partnership



Also on ransomware
Unravel Cybercrime: Anti-Phishing and -Ransomware Agenda
Mark van Staalduinen, Georgios Smaragdakis, Ruggero Montalto
anti phishingransomware
