Skip to content

Security awareness

Security awareness training: your colleagues as the strongest link

Your staff see what comes in every day. With training that fits their work, they spot sooner when something is off and know what to do next. No finger-wagging, and results you can follow.

Why it works

Working securely is a skill, and it can be learned

Technology helps most when the people using it know what to look out for. An email that is just slightly different from usual, a payment request with a sense of urgency, a sign-in page that looks almost right: anyone who recognises that pauses and checks. You do not build that reflex with one presentation a year. It grows through short, recognisable moments that come back regularly. That is why we combine explanation, practice and insight. Your colleagues gain confidence, and you see awareness grow across your organisation.

  • Online training in short sections, to follow whenever it suits
  • Phishing tests as practice, not as a way to catch people out
  • Reporting that lets you follow your organisation's progress
  • Classroom sessions for up to ten people, at your site or ours
An Infodatek Group colleague laughing behind his laptop while a colleague beside him leans in and points something out.

What you get

Our own trainers
Our trainers are employed by Infodatek Group and work alongside the service desk and engineers. They know what goes on in practice.
Two languages
Every training can be given in Dutch or in English, useful for teams with international colleagues.
Your own examples
We use situations from your own work, so it feels familiar the very next day.

Two formats

Online with phishing tests, or in a small classroom group

The online version runs throughout the year. Staff follow short lessons when it suits them, and every now and then a practice email arrives that resembles what they might come across for real. Anyone who spots it and reports it has done well. Anyone who clicks anyway learns something from it. The reporting shows how your organisation is progressing.

The classroom format works differently: a session for up to ten people, with room for questions and for the situations that matter to you. It suits a kick-off, a team with its own kind of work or the management team. You can also combine the two formats.

The content

Topics your team will recognise straight away

We tailor the content to your work and your sector. A number of topics come up almost everywhere.

  • Recognising phishing in email, text messages and chat
  • Strong passwords and multi-factor sign-in, and why they work together
  • Checking payment requests and changed bank details
  • Working securely from home and on the move
  • Handling customer, patient and staff data with care
  • Reporting without hesitation: what to do when you are unsure

Culture

Security awareness that sticks

The aim is not that nobody ever clicks on anything again. The aim is that people feel free to report, even when they are unsure or have already clicked. The sooner something is reported, the easier it is to resolve. That is why we keep the tone positive: a phishing test is an exercise, not a trap.

Knowledge lasts when it keeps coming back. So we spread the training across the year, link it to what is topical and share what the exercises show. New colleagues simply join in, so they take part from their first weeks.

Alongside the technology

Training as part of your cybersecurity

Security awareness works best alongside security that is technically well arranged: endpoint protection, updates, multi-factor sign-in and, if you like, a SOC protecting against attacks day and night. The technology stops a great deal, your colleagues recognise what still gets through. Together they form one whole.

Under NIS2, management follows appropriate training, and training for staff is also part of the measures. The reporting from the online training helps you show that you have this in place. If you use Digital Care, you can add security awareness through the Training add-on.

Who it is for

Security awareness training for every team

Anyone with an email address benefits. Still, the emphasis differs from group to group.

Finance and administration

People who pay invoices and manage bank details regularly receive requests that seem to come with urgency. We practise checking such requests through a second channel, so payments keep being handled with care.

Directors and management

Under NIS2, the management body follows appropriate training. Directors also often receive messages aimed specifically at them. A classroom session in a small circle leaves room for the questions that matter at that level.

Healthcare and social care

Care staff work with patient and client data and spend little time behind a screen. Short online lessons with examples from healthcare suit them well, and align with what NEN 7510 asks for.

New colleagues

In their first weeks, people learn how things work in your organisation. That is the ideal moment to include working securely as well, so it is a habit from the start rather than something added later.

International teams

Colleagues who prefer to learn in English follow the same training in English. That way everyone takes part, the whole team talks about the same things and the level stays consistent throughout.

Frequently asked questions

Frequently asked questions about security awareness training

Is a phishing test not a bit unfair on staff?

Not if you go about it the right way. We present it as practice and make clear in advance that it is part of the programme. It is not about who clicks, but about what the whole organisation learns from it. Anyone who spots and reports a practice email has done well, and anyone who clicks gets an explanation rather than a telling-off. That makes reporting perfectly normal.

How much time will it take our staff?

Very little. The online training consists of short sections that staff follow when it fits their schedule, spread across the year. A practice email only takes the time needed to recognise and report it. We schedule a classroom session in consultation, at a time that affects you least. We keep it compact, so the work carries on as usual.

What do we see as an employer in the reporting?

The reporting shows how the organisation is doing: how the training is being followed and how the results of the practice emails develop over time. We go through it with you, so you can see where extra attention would help. It is a tool for getting better together, and useful when you want to show what you do on awareness.

Can we do the training in a classroom?

Yes. A classroom security awareness session is for up to ten people, so everyone can ask questions. It can take place at your site or at ours. We use examples from your own work and pitch the level to the group, from new colleagues to the management team. A classroom session also makes a good start, after which you continue online.

Is security awareness training enough for NIS2?

It is one part, not the whole. NIS2 asks for a risk analysis, technical measures, an approach to incidents and appropriate training for management, among other things. Training for staff belongs there too. We help with the full package, from security to Smart Compliance, and the training is a part you can arrange quickly.

Wondering what Infodatek can do for you?

A thirty-minute call with one of our specialists. Your environment, your questions. An honest conversation.

An Infodatek Group colleague picking up the handset of a desk phone.