Your employees are frequently exposed to sophisticated social engineering attacks. It is time for a comprehensive approach to effectively manage this problem, managed by people with a technical background.
We provide baseline testing to assess the Phish-prone percentage of your users through a simulated phishing attack. Test our platform yourself for 30 days.
Train Your Users
The world's largest library of cybersecurity awareness training content; including interactive modules, videos, games, posters and newsletters. Automated training campaigns with scheduled reminder emails.
Phish Your Users
Best-in-class, fully automated simulated phishing attacks, thousands of templates with unlimited usage, and community phishing templates.
See The Results
Enterprise-strength reporting. Both high-level and granular stats and graphs ready for management reports. We even have a personal timeline for each user.
KnowBe4’s platform integrates all functions in one, easy to use GUI. Kick off training campaigns and simulated attacks in minutes. You can completely customize your own templates, landing pages and simulated attachments, spoof your own domain for simulated CEO Fraud attacks with reply tracking.
We offer three Training Access Levels: I, II, and III, giving you access to our content library of 1000+ items based on your subscription level. Unlimited access to all phishing features with flexible licensing. Powerful new features added regularly.
As an enterprise customer, you are automatically enrolled in our Platinum Tech Support program. We are U.S.-based, pride ourselves on very short response times and have an excellent reputation.
Executive and enterprise-level reporting gives visibility into your entire organization’s security awareness performance with insights into correlated training and phishing simulation data over any specified period of time. Leverage Reporting APIs to create your own customized reports to integrate with other BI systems.
The innovative Virtual Risk Officer functionality helps you identify risk at the user, group and organizational level and enables you to make data-driven decisions when it comes to your security awareness plan.
Find out where your users are in both security knowledge and security culture as you start your security awareness program with KnowBe4 Assessments. You now have the ability to send a skills-based assessment and a security culture survey to your users from your KnowBe4 console. Both assessments are strongly based in assessment science and allow you to measure the security knowledge and proficiency of your users and your organization’s overall security culture posture over time.
Use Industry Benchmarks to compare your organization's security awareness proficiency scores and security culture scores with other companies in your industry. You'll have real-time stats that give you a firsthand look at how your organization stacks up across the seven security knowledge areas and the seven dimensions of security culture from your baseline assessment as well as monitor your organization's ongoing improvement over time.
KnowBe4 provides you with the world's largest library of 1000+ security awareness training content; including interactive modules, videos, games, posters and newsletters.
We offer three Training Access Levels: I, II, and III, giving you access to our "always fresh" library based on your subscription level. You will get constantly updated web-based, on-demand, engaging training that addresses the needs of (very) large organizations. With multi-language support in 30+ languages, you get access to translated phishing and training content that helps you develop a comprehensive global cybersecurity awareness training program. For your compliance training needs, the Compliance Plus training library is also available as an optional add-on to any Training Access Level.
Our 15-, 30- and 45-minute basic training modules specialize in making sure employees understand the mechanisms of spam, phishing, spear-phishing, malware and social engineering, and are able to apply this knowledge in their day-to-day job. You get high quality web-based interactive training combined with common traps, live demonstration videos, short comprehension tests and scenario-based Danger Zone exercises.
Trainees get unique job-aids: Social Engineering Red Flags™ with 22 things to watch out for in email, and 20 ways to block Mobile Attacks (PDF). Your Training Campaigns do the heavy lifting of getting users through their training. We can offer you a package or training modules customized for your organization. Our SCORM compliant modules can be hosted in our cloud-LMS or be uploaded in your own LMS.
The first thing out of your end-user's mouth when they finish the training module? "Wow, I did not know it was that dangerous on the Internet, how do I share this with my family?" And we have an answer for that too...
You can schedule regular Phishing Security Tests (PST for short) from our large library of more than 15,000 "known-to-work" templates, or choose from the community templates section, which were created "by admins for admins" to share with their peers. You can also create your own custom phishing templates. There are many more features!
The Industry Benchmarking feature lets you compare your organization’s Phish-Prone percentage™ with other companies in your industry. See where you stack up! Monitor your employee Phish-Prone percentages over time and watch how performance from your initial baseline phishing test, after 90 days, and 1 year compares. With regular phishing security tests and training campaigns, you’ll see how your Human Firewall improves over time helping to reduce risk and improve your IT security defense. You’ll have machine-learning based Advanced Reporting that helps you keep a pulse on how your security awareness program and employees stack up against other companies in your industry. Great intel to share with your management team!
Our Phishing Reply Tracking allows you to track if a user replies to a simulated phishing email and can capture the information sent in the reply. You can also track links clicked by users as well as test and track if users are opening Office attachments and then enabling macros.
In case an employee falls for one of these simulated phishing attacks, you have several options for correction, including instant remedial online training. You can schedule one-shot, weekly, bi-weekly or monthly simulated phishing attacks and immediately see which employees fall for these social engineering attacks. Here is some visible proof the training works over a 12-month period.
In addition, KnowBe4’s no-charge Phish Alert Button reinforces your organization’s security culture, users can report suspicious emails with one click.
Social Engineering Indicators™ (SEI) patented technology, turns every simulated phishing email into a tool IT can use to instantly train employees. When a user clicks on your SEI-enabled simulated phishing emails, they are routed to a landing page that includes a dynamic copy of that phishing email showing all the red flags. You can also customize any simulated phishing email and create your own red flags. Users can then immediately see the potential pitfalls and learn to spot the indicators they missed in the future.
USB Drive Test™ allows you to test your user’s reactions to unknown USBs, on average 45% of users will plug in USBs they find! You can download a special, "beaconized" Microsoft Office file from your KnowBe4 admin console onto any USB drive which you can drop at an on-site high traffic area. If an employee picks up the USB drive, plugs it in their workstation, and opens the file, it will "call home" and report the fail. Should a user also enable the macros in the file, then additional data is also tracked and made available in the admin console.
GEO-location lets you see where your simulated phishing attack failures are on a map, with drill-down capability and CSV-export options.
Automate the path your employees take to smarter security decisions. With the powerful Smart Groups feature, you can use each employees’ behavior and user attributes to tailor phishing campaigns, training assignments, remedial learning and reporting.
Create sophisticated, targeted workflows without the headache, and make sure every employee is a strong building block of your human firewall. You can see the intersection of the criteria you specify - whether you’re building simple phishing clickers remedial training workflow or complex, multi-criteria location, behavior and timing-based workflow. Best of all, Smart Groups is a powerful ad-hoc, real-time query tool that you use to get detailed reporting for management, so you’ll always know how your security awareness program is working.
See Smart Groups in action, watch The Incremental Phishing with Smart Groups video here.
Easy User Management
KnowBe4’s Active Directory Integration allows you to easily upload user data and saves you time by eliminating the need to manually manage user changes. Once the ADI is configured, users will be added, changed and archived in sync with changes made within AD automatically. If you use Microsoft Azure AD, you can enable automatic provisioning for the addition and removal of users. You can also upload users with CSV files. You can also use SCIM integration for user provisioning with your SCIM identity provider to import your users and groups from your identity provider into your KnowBe4 console.
Security Roles allows you to assign granular access control for users and groups within the KnowBe4 console. Create custom permissions for the exact roles needed by your organization. Easily allow groups like HR teams to access reporting only to review individual user results or employees with creative control to create phishing templates and landing pages.
The reports are exportable, provide geo-location of failures, and help you focus on the areas that will benefit you the most. With the Virtual Risk Officer and Advanced Reporting features you are able to improve your decision-making and reduce security risks across the whole organization. Executives get the insight they need to maximize training ROI and track security compliance. You can also leverage KnowBe4's Reporting APIs for custom reports and dashboards that integrate with Business Intelligence (BI) tools to give management visibility into the efficacy of your security awareness program. If you manage multiple KnowBe4 accounts, Roll-up Reporting makes it easy to select reports and compare results in aggregate across accounts or multi-location offices.
Related Pages: Security Awareness Training
You and your team have made my life much better in dealing with employee awareness. It is very appreciated and has given us boost up with our regulatory requirements and preventative measures. I love KnowBe4 and if you ever need a reference, feel free to have people contact me.
If you need an advocate on the west coast, just refer people to me…I’m so impressed.
Working with you is a breath of fresh air compared to other vendors who refuse to listen to what I ask and respond in kind.
I have been enjoying your product a lot. I also love the brief updates about news and issues from Stu every so often. It helps to keep me informed and aware of any potential threats.
We have been using KnowBe4 for a few years now and we are very happy with the service. We love the new features that you have added to the phishing campaigns.
Good Morning, Love, love, love it!! Thank you.
We love your products. We are happy with using your service. Thank you.
I am a very happy camper, thanks to your excellent and entertaining Kevin Mitnick Security training program, and to our account Rep. Sean Ness, we are loving your product.
It’s going well. Love the ability to track progress and especially love the “auto-nag” feature so I don’t have to remember to send out reminders periodically.
I couldn’t be any happier. Thank you. I love your service.