For our September issue of Security Buyer we spoke with Nick Chatzovoulos, Security Director, and CEO & Principal Consultant, XN Consultancy to discover the top resilience and crisis management strategies
What does effective crisis management require in high-risk environments?
Effective crisis management in war zones, insurgency-affected regions, and infrastructure under cyber-sabotage hinges on seamless SCI-PRO integration—operationally speaking, a disciplined fusion of physical security, cybersecurity, and intelligence into one decision loop. When these functions operate in silos, critical warnings are missed and response falters; when fused, states and organisations absorb shocks and recover faster.
What can we learn from Ukraine’s early failures and its approach to resilience?
In the opening hours of Russia’s invasion, parts of Ukraine’s security-intelligence apparatus misread or downplayed imminent-attack warnings. Kherson’s rapid fall was linked to analysis errors and SBU penetrations; President Zelenskyy dismissed senior SBU officials in mid-2022 over documented ties to Russian services (Hromadske, 2023). The episode vindicates Thucydides’ warning that “more fortresses fall from internal failures than external assault”: internal cohesion and trusted intel-sharing are preconditions of resilience.
Concurrently, Ukraine absorbed thousands of cyber incidents (2022–23), including critical attacks synchronised with kinetic strikes. A national report credited resilience to coordinated action among state agencies, private partners, and international supporters—rapid threat-intel exchange, pro tempore cloud-migration and fallback playbooks, and expedited patching (SSSCIP Ukraine, 2023). The wartime roll-out of “Delta” (a real-time intel-fusion tool) exemplified how breaking silos into a common operating picture (COP) turned information into battlefield advantage (GCSP, 2023; Shpiro, 2023).
Early miscommunication and insider risk nearly proved existential; structured intel-cyber-ops coordination helped Ukraine “bend without breaking.”
How do insurgencies, coups, and digital disruptions shape resilience in Africa?
Nigeria’s counter-insurgency illustrates the cost of fragmented security. Despite investments, inter-agency rivalry and patchy information-sharing kept responses reactive against Boko Haram/ISWAP. A 2024 study stresses that effective military-police-intel collaboration is crucial but remains inconsistently practiced due to mistrust and “turf wars,” prolonging instability (Udochukwu & Uchenna, 2024).
In the Sahel, multinational efforts have struggled with divergent threat assessments and slow intel circulation; jihadist groups exploited seams across borders. Coups in Mali (2020/21), Burkina Faso (2022), and Niger (2023) exposed systemic internal-coordination failures at the apex of state security (International Crisis Group, 2024; War on the Rocks, 2023). These patterns echo realist insights: internal disunity invites opportunism (Thucydides; Machiavelli).
Cyber disruptions are now national-resilience issues. In Kenya (July 2023), “Anonymous Sudan” launched major DDoS attacks that crippled the e-Citizen portal for days, cascading to payments, visas, and even rail ticketing via an affected supplier—revealing the physical consequences of cyber outages. The response began ad hoc, then shifted to multi-agency hardening with telcos and international partners (TechMonitor, 2023; Interpol, 2023; GFCE, 2024).
In high-risk African contexts, SCI-PRO fusion, joint intel, cyber vigilance, and ground capacity, is the hinge between paralysis and continuity; without it, crises deepen.
What incidents in Southern Europe highlight weaknesses in crisis management?
Greece (Apr 2025): a bomb exploded outside Hellenic Train’s Athens HQ despite a 35–40-minute warning and 24/7 police presence. The device, concealed in a backpack near the entrance, detonated without interception; a group styling itself “Revolutionary Class Self-Defense” claimed responsibility. Post-incident reviews cited complacency and poor on-scene coordination—officers distracted by smartphones, unclear tasking, and failure to translate a warning into immediate evacuation and sweep. The case illustrates how technology can be a “Trojan Horse” for vigilance: overreliance on cameras/devices breeds passivity unless leaders enforce basic guardcraft and communications. (Reuters, 2025; Chatzovoulos, 2025).
Italy (Mar 2022): Hive ransomware on Italian State Railways (FS) IT systems halted ticketing, darkened passenger info boards, and disrupted freight. The incident became a national transport crisis and revealed gaps between IT security and operations (backup comms, staff drills). The aftermath drove joint drills and integration of cyber threat intel into physical security planning (Briginshaw, 2022; Acronis, 2023; AppViewX, 2023).
Across Southern Europe, organised crime and espionage cases show the same pattern: big wins come when police, intel, and cyber units pool data (Europol, 2023; 2024b). Energy-sector sabotage and cyber-espionage attempts during the 2023 energy crunch were countered by fusion of cyber indicators with physical surveillance and diplomatic intel (European Policy Centre, 2023)….