Training and Awareness

Training and Awareness

People, either in your organisation or who have connection or carry out business with your organisation are the biggest threats.  Most breaches are caused by people doing silly things like clicking on a phishing link or doing something that is well meaning but out of policy.  Providing Training and Awareness and being able to make security a part of your organisations culture is extremely difficult but possible.  Through carefull planning, continuous updates and campaigns that promote safe practices and the threats and risks associated with your organisation, this can be achieved.

Security Awareness Measurement

Our specialists can provide a capability that enables your business to carry out simulated phishing attacks and USB drops to be able to measure the maturity of your organisation against security threats.  This can also include social engineering techniques to see what information can be gained.  This information can be used to benchmark the organisation for measurement of improvement through any Awareness campaigns that are run.

Areas of Focus

  • Utilising market leading software
  • Create a phishing email campaign
  • Utilise USB drops (if wanted)
  • Measure the number of clicks and USB drives activated
  • Produce an automated report of figures for review

Training and Awareness programme development and implementation

Our specialists will develop a full Training and Awareness programme to create an awareness of cyber security and data privacy to help reduce succesfull attacks on your business.  We can develop full training programmes that can be given manually at regular intervals or carry out the training for you.  Utilising market leading systems we can also provide your organisation with the tools to provide online solutions that allow you to continually test and also provide awareness as regularly as your policy dictates.

Areas of Focus

  • Evaluate the existing sytems, policies and processes in place for training and awreness if they exist
  • Run sets of workshops with stakeholders to understand the security policies and processes
  • Select the best solution to deliver the Training and Awareness
  • Develop the roll out plan
  • Implement the roll out plan
  • Develop the communications process and policy
  • Start to implement the Training and Awareness campaign
  • Manage ongoing service or handover to the business for ongoing implementation

3rd party Training and Awareness

Providing Training and Awareness to your suppliers or 3rd parties that use your systems is an essential part of protecting your organisation.  Our solutions can provide auditing and training to your 3rd party suppliers or external resources.

Areas of Focus

  • Evaluate the size of the supply chain and the critical suppliers
  • Evaluate the number of 3rd parties that access the organisation's systems and data
  • Create the target list of critical suppliers and 3rd parties
  • Run sets of workshops with stakeholders to understand the security policies and processes
  • Select the best solution to deliver the Training and Awareness
  • Develop the rollout plan
  • Implement the rollout plan
  • Develop the communications process and policy
  • Start to implement the Training and Awareness campaign
  • Manage ongoing service or handover to the business for ongoing implementation

Search