Tag

Security Awareness Training Program

These articles guide organizations through designing, launching, and measuring security awareness training programs. Topics include curriculum development, phishing simulations, compliance requirements, engagement strategies, and metrics that demonstrate program effectiveness to leadership.

posts

Security Awareness Training Program

Security Awareness Training Program: Build One That Works

In January 2024, Microsoft disclosed that a Russian threat actor group — Midnight Blizzard — had breached executive email accounts using a simple password spray attack against a legacy test account that lacked multi-factor authentication. One of the most technically sophisticated companies on the planet, compromised by one of the oldest tricks

Carl B. Johnson Mar 24, 2024 8 min read