Skip to main content

Security Awareness Training

Overview

The Awareness Training module helps you educate employees on security best practices. Deploy interactive training courses, track completion, and build a security-conscious culture.

Why Security Training?

The Impact

  • Trained employees are 70% less likely to fall for phishing
  • Regular training maintains awareness over time
  • Compliance requirements often mandate security training
  • Culture building through consistent education

Training Programs

What's a Training Program?

A training program is a collection of courses assigned to employees:

  • Onboarding Training - New hire security basics
  • Annual Refresher - Yearly compliance training
  • Role-Specific - Training for specific roles (IT, Finance)
  • Remediation - Additional training after phishing failures

Creating a Program

  1. Navigate to EmployeesAwareness Training
  2. Click Create Program
  3. Configure:
    • Program name
    • Description
    • Target audience (groups or all employees)
    • Courses included
    • Due date
  4. Save and activate

Training Courses

Available Courses

CategoryCourses
PhishingEmail security, link safety, attachment handling
PasswordsStrong passwords, MFA, password managers
Data SecurityData classification, handling sensitive data
Physical SecurityClean desk, visitor policies, tailgating
Social EngineeringPretexting, vishing, impersonation
Remote WorkHome office security, public WiFi
ComplianceGDPR, HIPAA, PCI awareness

Course Features

  • Interactive Modules - Engaging content, not just slides
  • Knowledge Checks - Quizzes throughout
  • Final Assessment - Test comprehension
  • Completion Certificate - Proof of training
  • Multi-Language - Available in multiple languages

Assigning Training

Assignment Methods

MethodUse Case
By ProgramAssign program to groups
By CourseIndividual course assignment
By EmployeeSpecific employee assignment
Auto-AssignmentNew hires automatically enrolled

Creating Assignments

  1. Open training program or course
  2. Click Assign
  3. Select:
    • All employees
    • Specific groups
    • Individual employees
  4. Set due date
  5. Confirm assignment

Auto-Assignment

Configure automatic assignment for new hires:

  1. Go to SettingsAuto-Assignment
  2. Select program to assign
  3. Set timing (immediately, after X days)
  4. Enable

Tracking Progress

Dashboard Metrics

MetricDescription
AssignedTotal assignments
CompletedSuccessfully finished
In ProgressStarted but not finished
Not StartedHaven't begun
OverduePast due date

Completion Criteria

Training is complete when:

  • All modules viewed
  • Knowledge checks passed
  • Final assessment passed (if required)
  • Minimum score achieved

Individual Progress

View employee training status:

  • Courses assigned
  • Current progress
  • Completion dates
  • Assessment scores

Reminders and Escalation

Reminder Configuration

Set up automatic reminders:

Reminder TypeTiming
InitialWhen assigned
ProgressIf not started after X days
Due SoonX days before due date
OverdueAfter due date passed

Customizing Reminders

  1. Go to SettingsReminders
  2. Configure timing and frequency
  3. Customize email template
  4. Enable/disable reminders

Manager Escalation

Escalate to managers for non-compliance:

  1. Set escalation threshold (days overdue)
  2. Manager receives notification
  3. Track escalation in reports

Assessment and Certification

Assessments

Configure assessment requirements:

  • Passing Score - Minimum to pass (e.g., 80%)
  • Retakes - Number of retake attempts
  • Time Limit - Assessment time limit
  • Question Randomization - Random question order

Certificates

Upon completion:

  • Certificate automatically generated
  • Employee can download certificate
  • Stored for compliance records
  • Includes completion date and score

Reporting

Training Reports

Generate reports showing:

  • Completion Summary - Overall completion rates
  • By Department - Department comparisons
  • By Course - Course-specific metrics
  • Individual - Employee-level detail
  • Trend - Completion over time

Export Options

  • PDF - Formatted report
  • Excel - Data for analysis
  • Evidence Package - For compliance audits

Compliance Evidence

Training records serve as compliance evidence:

FrameworkRequirement
SOC 2CC1.4, CC1.5
ISO 27001A.7.2.2
HIPAA§164.308(a)(5)

Best Practices

Keep Training Short

Micro-learning is more effective. 10-15 minute modules have higher completion rates.

Make It Relevant

Tailor training to job roles. Finance should learn about invoice fraud; IT about system security.

Train Continuously

Annual training isn't enough. Regular micro-training maintains awareness year-round.

Follow Up on Failures

Phishing failures should trigger additional training, not just penalties.

Next Steps