LEARN — Understand Security Risks, Responsibilities and Practices
Employees and professionals first need to understand the security concepts, risks, policies, technologies and practices relevant to their roles.
Learning may include areas such as:
- Information Security Fundamentals
- Cyber Security Awareness
- Phishing Awareness
- Social Engineering
- Password Security
- Identity and Access Awareness
- Data Protection
- Information Classification
- Secure Email Practices
- Safe Internet Usage
- Remote Working Security
- Mobile Device Security
- Cloud Security Awareness
- Secure Use of AI Tools
- Incident Reporting
- Cyber Risk
- Security Governance
- Secure Development
- Network Security
- Application Security
- Cloud Security
- Threat Detection
- Incident Response
The objective is not simply to make employees aware that cyber threats exist. It is to help them understand what security responsibility means in the context of their actual work.