Teams have received general guidance. You want to connect it with the messages, files and decisions they handle every day.
- Home
- Our services
- Security awareness training
Security awareness training
Plan cybersecurity training around your teams’ work: phishing, information sharing, reporting and responsible use of workplace tools.
Loupe Technologies helps you prepare cybersecurity training and awareness activities around the situations your teams encounter at work. We start with the actions people need to understand and apply, then define topics, materials and ways to assess learning.
The aim is to provide useful guidance: recognize an unusual situation, verify a request, share information through the agreed process and know where to ask for help.
When should you adapt awareness training?
A tool change, new colleagues or AI use raises questions about the behaviours expected of your teams.
Someone is unsure about a message or an unusual sharing request. You want them to know whom to contact and how to explain the situation.
A programme grounded in everyday work
The programme may address suspicious emails, accounts, file sharing, unusual requests and reporting. Topics are selected for the roles involved and the procedures that actually apply in your organization.
We propose defining an audience, a few observable learning objectives and appropriate workplace situations. Format, language, materials and exercises are agreed in the engagement. AI use can be included once your rules and permitted tools are clear.
Any simulation campaign needs its own scope: scenario, participants, information collected and reporting arrangements. It should not be assumed to be part of every training engagement.
Materials for learning and recall
Depending on the agreed scope, deliverables may include:
Learning objectives and a programme
The audience, expected practices and selected topics, with any requirements participants need beforehand.
Relevant materials
Explanations, workplace situations and reminders connected to your tools, rules and internal contacts.
A summary of areas to reinforce
Questions raised, observed understanding and suggestions for reminders or support, based on the agreed assessment approach.
Prepare, practise and reinforce
-
Choose priority situations
Discuss tasks, difficulties and current guidance with your responsible managers.
-
Prepare the content
Adapt examples, check reporting procedures and have your organization’s own rules reviewed.
-
Support participants
Present the situations and practise the expected decisions through the selected format.
-
Plan useful reminders
Review feedback and agree on the topics to revisit with the people responsible.
Questions about security awareness training
Should everyone receive the same training?
A common foundation can help, with situations adapted to different roles. People who approve payments, administer tools or share records face different decisions. Scoping identifies what should be shared across the organization and what needs more specific support.
Is awareness training enough to protect our accounts?
It works alongside technical safeguards and organizational procedures. The Canadian Cyber Centre addresses both training and protections such as stronger authentication. The programme should therefore explain expected behaviours within the environment your teams actually use.
How can we tell whether training was useful?
We propose agreeing on observable objectives before selecting an assessment: explain a verification step, identify the right contact or apply a rule to an example. Attendance alone does not demonstrate a change in practice. Findings help determine which reminders and adjustments to consider.
Sources and references
- Baseline cyber security controls for small and medium organizations — Canadian Centre for Cyber Security
Prepare an appropriate programme
Tell us which teams are involved and two or three situations they encounter. We can define objectives, a format and the procedures needed to prepare the programme.