Gareth Russell, field CTO, security, Asia-Pacific at Commvault, said organisations need to shift how they frame recovery planning. “The conversation needs to shift from ‘How do we recover everything?’ to ‘What must we recover first?’ Organisations that define their Minimum Viable Company before an attack know exactly which people, applications, systems, and data keep the business operating, and they’ve already proven they can recover them. That’s how you reduce downtime, remove uncertainty, and avoid treating ransomware payments as a recovery strategy,” Russell said.
