Why pizza party security training doesn’t cut it anymore

Why pizza party security training doesn’t cut it anymore

When it comes to company security, “human error” is a frequently identified factor. However, many organizations have found that their people can in fact be deployed as their best defense against attack. It all comes down to the quality of security education and training these people receive. Proof can be found in the numbers:


  • Security-related risks are reduced by 70 per cent when businesses invest in cybersecurity training and awareness (Source)

  • Even a modest investment in cyber security awareness and training has a 72 per cent chance of significantly reducing the business impact of a cyber attack (Source)

  • Yet security education and awareness training is more than a question of if; what a company offers its people is just as critical. High engagement is key. After all, what’s the good of putting employees through round after round of security training when they’re not engaged, when the mere thought of having to attend a session makes them drowsy or desperate to find the nearest exit?

    Among the elements missing from or wrong with most security training:


  • It’s not engaging – boring, out of context, or too long

  • It’s not interactive – doesn’t give learners the opportunity to interact with the material and put into practice what they’re learned

  • It doesn’t offer a chance to measure success – It doesn’t give attendees the chance to measure their learning

  • It’s all scare tactics – it doesn’t empower employees to do better, but tries to frighten them into changing their behaviour

  • “We’re always hearing about how people are the key piece of company security,” said Michael Ball, Virtual CISO / Information Security Adviser at ..

    Support the originator by clicking the read the rest link below.