This guide contains the following sections:
What is Workforce Exercising?
Workforce Exercising secures your entire organization against security threats. It consists of scenarios covering key security risks related to topics such as social engineering, digital footprints, device security, data handling, and authentication. All our scenarios are presented in an engaging story format. The format ensures that the security behaviors of your organization's employees are tested and understood. This helps to map the areas of risk across your workforce and allows for targeted upskilling and equipping your employees to respond appropriately to threats and make low-risk decisions.
Our scenarios are aimed at the entire workforce (from specialists to non-specialists) and include situations testing ISO27001 standards and GDPR. Scenarios are short and snappy, designed to be completed in 5–10 minute chunks, and are accompanied by instant feedback on responses and key learning takeaways.
Customize your scenarios!
With Workforce, as well as assigning off-the-shelf scenarios, you can customize these, or create your own, allowing you to tailor content to your organization's specific processes, policies or needs.
Why Workforce Exercising?
To address evolving cyber threats, you must be confident that people across your organization are empowered to know how to respond to security risks. Cybersecurity is everyone's responsibility and everyone has a role in keeping your organization safe.
Workforce Exercising provides the opportunity to exercise appropriate judgments to maintain security in the workplace regularly.
Employees' responses provide managers with data to help identify areas of human cyber risk in your organization, enabling you to make informed decisions on what to do next to minimize these. Workforce Exercising is aimed at those responsible for facilitating and delivering security awareness and those needing to report workforce-related security metrics.
Follow-up actions could involve:
- Scheduling a series of follow-on exercises or assigning lab collections across the entire organization on specific topics (based on areas where performance was not as good as it could be)
- Scheduling a series of follow-on exercises or assigning lab collections for specific people (low performers) to upskill them in those areas
- Scheduling another similar exercise within a set time frame to validate results or re-exercise
The goal
Workforce Exercising enables managers to:
-
Take targeted and informed action on what to do next to reduce the human cyber risk across your organization's entire workforce.
-
Evidence that your entire organization has the knowledge to detect the latest security threats and the skills to respond adequately and appropriately in specific situations.