Nobody has a clean map of the assets, identities, vendors and data flows behind each key business service, so the blast radius of any failure is guesswork. Resilience decisions are made without knowing what depends on what.
"For each critical service, do we actually know every asset, identity, vendor and data flow it depends on?"
Service dependency map
Dependency visibility
To first outcomes