all covered security awareness training and simulated ... · awareness training and simulated...

4
MANAGE THE PROBLEM OF SOCIAL ENGINEERING All Covered Security Awareness Training and Simulated Phishing Platform

Upload: others

Post on 24-Mar-2020

5 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: All Covered Security Awareness Training and Simulated ... · Awareness Training and Simulated Phishing Platform . 16 14 12 10 8 6 4 2 0 Initial Baseline Phish-prone Percenage AVG

MANAGE THE PROBLEM OF SOCIAL ENGINEERING

All Covered Security Awareness Training and Simulated Phishing Platform

Page 2: All Covered Security Awareness Training and Simulated ... · Awareness Training and Simulated Phishing Platform . 16 14 12 10 8 6 4 2 0 Initial Baseline Phish-prone Percenage AVG

16

14

12

10

8

6

4

2

0

Initial Baseline Phish-prone PercenageAVG 15.9%

12 Months LaterAVG 1.2%

Phis

h-pr

one

Perc

enta

ge

TrainingPeriod

1 2 3 4 5 6 7 8 9 10 11 12Months

Reporting and ManagementToday, your employees are frequently exposed to sophisticated phishing and ransomware attacks. You need a more

developed approach to protecting them.

Baseline Testing We provide baseline testing to assess the Phish-prone™ percentage of your users through a free simulated phishing attack.

Train Your Users On-demand, interactive, engaging training with common traps, live Kevin Mitnick demos and new scenario-based Danger Zone exercises.

Phish Your Users Fully automated simulated phishing attacks, hundreds of templates with unlimited usage, and community phishing templates.

See the Results Enterprise-strength reporting for training and phishing that allows you to create presentation-ready stats and graphs to show off your great ROI! These reports also meet the requirements for compliance and regulatory documentation.

This Proven System Really Works

After years of helping customers train their employees to better manage the urgent IT security problems of social engineering, spear phishing and ransomware attacks, our partner decided to go back, and look at the actual numbers over a 12-month period.

They aggregated the numbers and the overall Phish-prone percentage drops from an average of 15.9% to an amazing 1.2% in just 12 months. The combination of web-based training and frequent simulated phishing attacks really works.

Page 3: All Covered Security Awareness Training and Simulated ... · Awareness Training and Simulated Phishing Platform . 16 14 12 10 8 6 4 2 0 Initial Baseline Phish-prone Percenage AVG

Security Awareness Training

Security Awareness Training specializes in making sure employees understand the mechanisms of spam, phishing, spear phishing, malware and social engineering. You get high quality web-based interactive training combined with common traps, live demonstration videos, short comprehension tests and scenario-based Danger Zone exercises. When it comes to rolling out training for your users, Automated Training Campaigns do the heavy lifting for you.

• On-demand, browser-based training featuring “The World’s Most Famous Hacker,” Kevin Mitnick

• Multiple awareness training modules available

• Create multiple training campaigns as ongoing or with a specified completion date

• Automated enrollment and follow-up emails to “nudge” users who are incomplete

• Auto-enroll new users added to a group or company

• Point-of-failure training auto-enrollment

• Dedicated Hosting Options, or run the course in your own Learning Management System (LMS)

Advanced Features

EZXploit™

Patent-pending functionality that allows an internal, fully automated “human pentest”. Launch a simulated phishing attack - which if clicked on - comes up with a secondary ruse like a Java popup that the user is social engineered to click on. If the user clicks on the secondary action, their workstation can be scanned for several things like user name, IP address and other data related to that user’s workstation and Active Directory as specified by the admin.

USB Drive Test™

Allows you to test your user’s reactions to unknown USBs. You can download a special, “beaconized” Microsoft Office file from your admin console onto any USB drive which you can drop at an on-site high traffic area. If an employee picks up the USB drive, plugs it in their workstation, and opens the file, it will “call home” and report the fail. Should a user also enable the macros in the file, then additional data is also tracked and made available in the admin console.

GEO-locationSee where your simulated phishing attack failures are on a map, with drilldown capability and CSV-export options.

Vulnerable Browser Plug-in DetectionAutomatically detect what vulnerable plugins any clickers on your phishing tests have installed in their browsers.

Phishing

Highly effective scheduled Phishing Security Tests keep your employees on their toes with security top of mind. Within the Admin Console you are able to schedule regular Phishing Security Tests from our large library of known-to-work templates, or choose a template from the community templates section where you can also share phishing templates with your peers.

• Unlimited year-round simulated phishing attacks

• Full library of successful phishing templates

• Easily create your own templates

• Customizable landing pages

• Customizable “hover-links” when a user “mouse-overs”

• Tests for opening MS Office attachments and secondary action of enablingmacros.

• Set-it-and-forget-it scheduling of attacks and campaign length

• “Anti-prairie dog” campaigns that send random templates at randomtimes preventing users warning each other

• Phish Alert Outlook add-in button gives your users a way to reportsimulated and non-simulated phishing attacks

• Vishing Security Tests using Interactive Voice Response (IVR) attacksover phone

Reporting and User Management

Robust reporting capabilities allow you to easily access user training completions, Phish-prone percentage, compliance reports and more.

• Advanced Phishing Reporting provides powerful features, for instance, areport of phishing failures by group or manager and many more reports

• Utilize at-a-glance Training Campaigns Dashboard to see campaign status, completion percentage and individual progress

• Filter campaigns by recipient, delivered, opened, clicked, attachment, dataentered, bounced, export in CSV

• Top 50 Clickers report

• Specify user needs to “Read and Attest” Security Policy for compliance

• Phishing Security Test results emailed to admin upon completion

• NEW Active Directory Integration allows you to easily upload user data andsaves you time by eliminating the need to manually manage user changes

Features

Page 4: All Covered Security Awareness Training and Simulated ... · Awareness Training and Simulated Phishing Platform . 16 14 12 10 8 6 4 2 0 Initial Baseline Phish-prone Percenage AVG

Subscription LevelsOur SaaS subscription is priced per seat, per year. We offer Silver, Gold, Platinum or Diamond levels to meet

your organization’s needs.

CountOnKonicaMinolta.com

Item #: ACSecAware6/17-L

Contact All Covered Toll-Free Nationwide at 866-446-1133 or visit www.AllCovered.com© 2017 KONICA MINOLTA BUSINESS SOLUTIONS U.S.A., INC. All rights reserved. Reproduction in whole or in part without written permission is prohibited. KONICA MINOLTA, the KONICA MINOLTA logo, Count On Konica Minolta, bizhub, and Giving Shape to Ideas are registered trademarks or trademarks of KONICA MINOLTA, INC. All other product and brand names are trademarks or registered trademarks of their respective companies or organizations. All features and functions described here may not be available on some products.

KONICA MINOLTA BUSINESS SOLUTIONS U.S.A., INC.100 Williams Drive, Ramsey, New Jersey 07446

Silver LevelTraining Access Level I which includes the Kevin Mitnick Security Awareness Training in the full 45-minute module, the shortened 25-minute module, and the executive 15-minute version. In addition to unlimited Simulated Phishing Tests and enterprise-strength reporting for the length of your subscription.

Gold Level (included in All Covered Care Secure and Protect)Includes all Silver level features plus Training Access Level II, which includes all 27+ training modules. Gold also includes monthly Email Exposure Check (EEC) Reports and Vishing Security Test.

• Email Exposure Check monthly reports show you which email addresses from your domain are exposed on the Internet and are a target for phishing attacks

• Vishing Security Tests using IVR attacks over phone (available for U.S. and Canada)

Platinum Level Includes all features of Silver and Gold. Platinum also includes our Advanced Phishing Features; EZXploit, USB Drive Test, Vulnerable Browser Plugin Detection and landing page Social Engineering Indicators.

• EZXploit™ is a patent-pending functionality that allows an internal, fully automated “human pentest”

• USB Drive Test™ allows you to test your user’s reactions to unknown USBs they find

• Vulnerable Browser Plugin Detection reports on browser/device used to open a phishing email and vulnerable browser plugins the user has installed

Diamond Level Includes all features of Silver, Gold and Platinum. Diamond also includes Training Access Level: Unlimited, giving you full access to our content library of over 300 items including interactive modules, videos, games, posters and newsletters. In addition, you will have access to AIDA our bleeding-edge Artificial Intelligence-driven Agent (available for U.S. and Canada).

Features Silver Gold Platinum Diamond

Admin Management Console ✓ ✓ ✓ ✓Unlimited Phishing Security Tests ✓ ✓ ✓ ✓Security ‘Hints & Tips’ ✓ ✓ ✓ ✓Training Access Level I ✓ ✓ ✓ ✓Automated Training Campaigns ✓ ✓ ✓ ✓Phish Alert Button ✓ ✓ ✓ ✓Active Directory Integration ✓ ✓ ✓ ✓Phishing Reply Tracking ✓ ✓ ✓ ✓Training Access Level II ✓ ✓ ✓Monthly Email Exposure Check ✓ ✓ ✓Vishing Security Test ✓ ✓ ✓EZXploit™ - “Automated Human Pentesting” ✓ ✓USB Drive Test™ ✓ ✓Vulnerable Browser Plugin Detection ✓ ✓Priority Level Support ✓ ✓Social Engineering Indicators ✓ ✓Training Access Level: Unlimited ✓AIDA™ Artificial Intelligence-driven Agent BETA ✓