Which of your services would customers notice first if it failed, and for how long could you tolerate it?
Business continuity, disaster recovery, third-party risk, incident response and crisis management are usually five plans owned by four teams. Twelve questions across six areas, mapped to ISO 22301 with DORA and ISO/IEC 27031 crosswalks. You get the gaps, the evidence that would close them, and the full assessment to take next.
Ready to see where you stand?
You'll get a computed readiness indicator across Important business services, Dependency mapping, Scenario testing, Plan integration, Governance & board view, Crisis communication, the evidence that would answer each gap, and the full assessment to take next. Any critical gap is called out on its own, even when the overall score looks strong.
Assessment methodology: aligned to ISO 22301 with crosswalks to the Digital Operational Resilience Act and ISO/IEC 27031. It reports a readiness indicator based on your answers; it is not a certification, and it does not decide whether a regulator's resilience regime applies to you.
See your full results
Enter your email to unlock your readiness indicator, domain scores, top gaps, the evidence that would close them and recommended next steps.
- Overall readiness indicator and tier
- 6 domain scores with the ISO 22301 (Business Continuity) mapping
- Your highest-priority gaps, critical ones flagged
- The evidence that would answer each gap
- Recommended next steps and an email copy
Your Operational Resilience Quick Readiness Indicator
Executive summary
Domain scores
Weighted: Important business services 20% · Dependency mapping 20% · Scenario testing 20% · Plan integration 15% · Governance & board view 15% · Crisis communication 10%. Expand a domain to see the contributing questions, your answers and the ISO 22301 (Business Continuity) references they map to.
Your highest-priority gaps
Evidence that would answer each gap
What an assessor, a customer or an auditor would ask to see. Having it is the difference between a readiness indicator and a verified result.
Recommended next steps
Assessment methodology: aligned to ISO 22301 with crosswalks to the Digital Operational Resilience Act and ISO/IEC 27031. It reports a readiness indicator based on your answers; it is not a certification, and it does not decide whether a regulator's resilience regime applies to you.
Please note: This assessment provides a readiness indicator based on the information provided. It is not an audit, a certification, or a guarantee of security outcomes.
Recommended full assessment: Operational Resilience Program
Business continuity, disaster recovery, third-party dependency, cyber incident response and crisis management are usually five plans owned by four teams. Operational resilience is the umbrella that asks one question: can the important business services keep running, within tolerance, through severe but plausible disruption? It does not replace BCP or DR; it connects them. 30 minutes to scope. No obligation.