Phishing Simulation

Training

Training

Overview

Training is the final and most important step in the PhishGrid cycle. Simulations reveal who is vulnerable; training closes the gap.


The training workflow

  1. Campaign results show who clicked
  2. Admin assigns relevant courses to those users or groups
  3. Users complete video content and quiz
  4. Users earn a certificate
  5. Admin tracks completion
  6. Re-test with another campaign to confirm improvement

Assigning training (admin)

  1. Go to Training → Catalog in the sidebar
  2. Browse available courses — filter by topic or difficulty
  3. Select a course and click Assign
  4. Choose the Target Group(s) — typically the group that performed poorly
  5. Set a due date if needed for compliance

Assign training within 48 hours of a campaign ending. The closer to the simulation, the stronger the learning effect.


The Training Catalog

Each course includes:

  • Video content — scenario-based education on a specific security topic
  • Quizzes — users must reach the minimum passing score to complete the course

On completion, users automatically receive a certificate. If a user needs to retake a course, an admin must re-assign it — users cannot self-enrol in a previously attempted course.


What users see

Section Contents
Key Metrics Trainings completed, total time, certificates earned
Active Trainings Enrolled but not yet finished
Failed Trainings Did not reach passing score
Completed Trainings Full history
Achievements Security Knowledge Level, XP, certificate gallery

Campaign result Recommended topic
High click rate on credential harvest Recognising phishing; password hygiene
Executive impersonation click Business email compromise (BEC) awareness
Low report rate How and why to report suspicious emails
Vishing failures Recognising and handling suspicious calls
New hire cohort Security awareness fundamentals