Report
ORX Cyber Reference Handbook 2025
Service
ORX Cyber
Community
ORX Cyber Community
Risk programme
Management, Practice & Framework
Handbook - April 2025
New for 2025, the ORX Cyber Reference Handbook provides an overview of all the cyber risk management resources produced by ORX Cyber.
This handbook is a single point of reference for second line (2LOD) cyber risk managers looking to develop or enhance their cyber risk management practice and understand general industry trends. This handbook is a “one-stop-shop” guide to the topics which have been covered by the ORX Cyber service divided into five key themes, as well as the main findings and best practice across the industry. In this document, we also provide an overview of the other communities and services at ORX, highlighting relevant publications from across ORX.
The handbook is available to all ORX Cyber subscribers. It provides a comprehensive overview of the ORX Cyber service and our understanding of industry practice, helping to improve all aspects of cyber risk management. It can also help subscribers to get the most from the resources available through ORX Cyber.
What's in the handbook
Developed with and for the ORX Cyber Community, the handbook is a continually evolving document that will be regularly updated to capture subscribers’ feedback, developments in key practice areas, and further guidance based on new ORX Cyber publications.
- An overview of general industry practice across a wide range of topics within the themes above
- Links to all relevant ORX Cyber resources associated with topic within the themes above, as well as supporting resources from across ORX
- Practical suggestions for how to use these resources
Gated content start
This resource is only available to firms that subscribe to ORX Cyber
If your firm subscribes to ORX Cyber, log in or register to read this resource.
Gated content stop
Contacts:

Simon Johnson
Head of Services, ORX

Nikki Truss-West
Research Senior Manager - Cyber, ORX
ORX Cyber
Our service dedicated to supporting cyber risk professionals in the second line of defence.