“The term security awareness is commonly used to refer to a broad range of education, communication, and behavior management activities and learning outcomes.
These outcomes include:
In the end, security is everyone’s responsibility. All it takes is one convincing – yet fraudulent – email or phone call to trick an untrained, security unaware employee into opening the door to cyber criminals.
Simply put, a phishing simulation is a test where you send an email to a group of users to trick them into clicking on a fake link or attachment. If an employee clicks on the link, attachment, or enters their data into a form on a fake website, they are considered at risk since they could have infected your network had the attack been real.
That's why when you decide to run a phishing simulation, target a group of users and only notify a handful of people (not part of the group being assessed) within your organization.
Your first test should be used to benchmark your users' cybersecurity awareness against other organizations. Most organizations that run phishing simulations get the following results:
Awareness of cybersecurity within your company is therefore an essential tool in order to transform your employees from weak links into real adversaries against cyberattacks. In addition to awareness and training, it is important to test your employees through infiltration simulations attempts also known as phishing simulations.
If you have the mission to train your employees in cybersecurity, Present can assist you. We partner with Terranova Security, a Gartner magic quadrant leader, to offer a high-quality customisable training program. Contact one of our cybersecurity experts to learn more!