Despite the plethora of technical security controls, security professionals continue to struggle remediating one very significant gap…the end-user. In a single click, employees can unknowingly circumvent technical controls and infect their workstations with harmful spyware and viruses. Experts agree that security awareness training is the solution, yet many employees fail to grasp its meaning and consequences. SynerComm has tackled this problem and helped our clients boost the effectiveness of their security awareness programs. SynerComm’s Quarterly Phishing Attacks provide invaluable security metrics while reinforcing existing awareness campaigns.
How it works:
- SynerComm’s Information Assurance Consultants (IAC) prepare real-world phishing attacks similar to those traversing the Internet every day.
- Each employee receives 2-3 phishing email attacks over a several day period. Emails may vary in complexity, but always include several clues that show the message is not legitimate.
- SynerComm records a time and date stamp along with the email address of any user who clicked the phishing attack link.
Ultimately, an AssureIT Quartley Phishing Attack will answer these questions:
- Is my security awareness campaign effective?
- Can I prove through metrics that employees are becoming more security aware over time?
- Do a small group of users continually make poor security decisions?
Perhaps most importantly, when combined with a meaningful security awareness program, end-users remain on the lookout for phishing attacks. Our clients tell us that just the fact that users know that phishing tests could come at any time makes them more security aware than ever before.
