Emulating real-world advanced persistent threats (APTs)
Researching and learning about real-world adversaries and their tactics, techniques, and procedures can be a great learning experience for everyone involved. The red team can research and learn about the past campaigns of an adversary with the goal of simulating the events on the home field. If your organization has a dedicated threat intelligence group, they will be able to provide very specific insights and highlight focus areas, as well as to pinpoint specific motivations and reasons why an adversary might be targeting the organization.
The MITRE ATT&CK framework is an excellent resource to learn more about specific APTs and what tactics they leveraged in past operations.