ICPs
Core Messaging
Personas
Industries
100

What is an ICP?

Ideal customer profile

100

What are our three brand pillars?

end to end protection, 24x7 managed and a ransomware warranty

100

What are the 4 authority roles we go after?

C-level, VP, Director and Manager

100

What are 3 industries we go after?

Manufacturing, 

200

What are our business segments?

Strategic, enterprise, commercial and SLED

200

What is our comprehensive approach?

Our anti-ransomwaretechnology proactivelydisrupts threats at everystage of the attack lifecycle.With an included 24/7 expertteam that investigates andresponds to threats for you.

200

What might a CISO be concerned about?

Protecting enterprise from ransomware threats while proving ROI.

200

What is a statistic you could share with an education prospect?

  • Increased Financial Impact: The average cost of recovering from a ransomware attack in the education sector rose substantially in 2024. Lower education institutions faced recovery costs averaging $3.76 million, more than double the $1.59 million reported in 2023. Higher education institutions experienced average recovery costs of $4.02 million, nearly four times higher than the $1.06 million reported in 2023.

  • Massive Exposure of Student Data and Financial Fallout:  In 2024, ransomware attacks on the education sector impacted 1.87 million individual records, with an average ransom demand of $847,000, highlighting the continued financial and privacy risks.

  • Legacy of U.S. Breaches Still Relevant: Though occurring in 2023, the Minneapolis Public Schools breach continues to be one of the most severe cases of ransomware in education. Hackers demanded $1 million, threatening to leak highly sensitive data, including details about psychiatric diagnoses, sexual assaults, abuse, and suicide attempts.

  • National Student Clearinghouse Breach: The National Student Clearinghouse, servicing 22,000 high schools and 3,600 universities, suffered a major data breach due to a ransomware-linked file transfer vulnerability (MOVEit). This breach had ripple effects across thousands of institutions.


300

What are 3 of the 6 components that drive our ICP?

Direct, channel & strategic, incident response, cyber insurance, customer expansion and services.

300
What is the ransomware gap?

The ransomware gap is the gap between a customer's endpoint and immutable backups- halcyon sits in this gap to ensure business continuity

300

What are some key characteristics of a Director of Cybersecurity?

  • Owns implementation and day-to-day management of cybersecuritystrategy.

  • Focused on threat prevention, riskassessment, and incidentresponse.

  • Bridges tactical security operationswith higher-level strategicinitiatives.

300

What types of finance companies do we go after?

  • Finance (mortgage lenders, mid-size banks, credit unions, credit card & trans processing

400

What makes a customer a good fit for Halcyon?

The company has more than 200 employees, is in finance/manufacturing, retail, healthcare, etc. and understands ransomware is a threat and/or has experienced ransomware.

400

What are the two problems we solve for and how does that work?

Ransomware is succeedingdespite current securitycontrols, sophisticatedbypasses of endpoint toolsand targeted data encryption+ destruction.

400

What authority might a director of operational technology have? And how would you work with this role?

  • Influences technology selectionand champions cybersecurityupgrades for OT.

  • Often part of final technicalevaluation; may co-sign or validatebudget needs with CISO/VP ofOperations.

400

What is a story you could share about the business impacts of ransomware on manfacturing?

Rover and Land Rover being down for a month and a half halting operations.

500

What are a few tools that we are better together with and why?

MS Defender, E5, CRWD/S1/Palo Alto Cortex/Sophos (endpoints) we help with the ransomware gap and solve for our two core problems.

500

Use one of the core messages to come up with a solid discovery question you could use.

Answers vary.

500

What core message would you pitch to a SOC manager and why?

Our ransomware gap and the two problems we solve because they get into the how which is what a SOC manager would care about, as well as 24x7 since they have alert fatigue.

500

What's an industry you personally might go after as a group and why do you all think there's good opportunity there?

answers vary :)

M
e
n
u