Skip to main content
TrustRadius
KnowBe4 Security Awareness Training

KnowBe4 Security Awareness Training

Overview

What is KnowBe4 Security Awareness Training?

KnowBe4 is a security awareness training and simulated phishing platform used by more than 65,000 organizations around the globe. Founded by IT and data security specialist, Stu Sjouwerman, KnowBe4 helps organizations address the human element of security by raising awareness…

Read more
Recent Reviews

Knowbe4

10 out of 10
April 15, 2024
Incentivized
We use the awareness training primarily. this is done to make staff aware of potential cyber security risks and what to watch for. We also …
Continue reading

KnowBe4

10 out of 10
January 20, 2024
Incentivized
KnowBe4 Security Awareness Training we use for phishing campaigns and training for our end users. since we are a healthcare company, …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 10 features
  • Phishing Simulations (291)
    9.5
    95%
  • Security Reporting (285)
    8.9
    89%
  • Training Content Library (293)
    8.9
    89%
  • Role-based user permissions (261)
    8.5
    85%

Reviewer Pros & Cons

View all pros & cons

Video Reviews

18 videos

KnowBe4 Review: KnowBe4 Allows Security Training To Be Customized & Shared Online
04:19
KnowBe4 Review: Network Engineer Is Confident In the Preventive Elements of KnowBe4
04:04
KnowBe4 Review: Security Analyst Finds End-User Success With Security User Awareness Training
02:58
Return to navigation

Pricing

View all pricing

Silver

$0.90

Cloud
per month per seat

Gold

$1.05

Cloud
per month per seat

Platinum

$1.20

Cloud
per month per seat

Entry-level set up fee?

  • Setup fee optional
For the latest information on pricing, visithttps://www.knowbe4.com/pricing-kevin…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services
Return to navigation

Features

Security

This component helps a company minimize the security risks by controlling access to the software and its data, and encouraging best practices among users.

8.8
Avg 8.3

Security Awareness Training

Common features of security awareness training products.

8.4
Avg 8.3
Return to navigation

Product Details

What is KnowBe4 Security Awareness Training?

KnowBe4 is a security awareness training and simulated phishing platform used by more than 65,000 organizations around the globe. Founded by IT and data security specialist, Stu Sjouwerman, KnowBe4 helps organizations address the human element of security by raising awareness about ransomware, CEO fraud, and other social engineering tactics through a new-school approach to awareness training on security.

The KnowBe4 platform offers multi-language support for the Admin Console and end-user localization options to deliver a more immersive learning experience to users from start to finish.

KnowBe4 provides:

  • Baseline testing to assess the Phish-Prone™ percentage of users through a free simulated phishing attack

  • 1000+ interactive modules, videos, games, posters and newsletters in a library of security awareness training content

  • Fully automated simulated phishing attacks, thousands of templates with unlimited usage, and community phishing templates

  • Enterprise strength reporting, showings stats and graphs for both training and phishing

KnowBe4 has been named a leader in the Forrester Wave™: Security Awareness and Training Solutions, Q1 2022 and Best Feature Set, Best Relationship and Best Value for Price in the Winter 2023 "Best of" Awards.



KnowBe4 Security Awareness Training Features

Security Awareness Training Features

  • Supported: Training Content Library
  • Supported: Multilingual Training Content
  • Supported: Training Gamification
  • Supported: Industry-Specific Security Training
  • Supported: Individualized Security Training Plans
  • Supported: Phishing Simulations
  • Supported: Security Reporting
  • Supported: Integration with Security Tech Stack

Security Features

  • Supported: Role-based user permissions
  • Supported: Single sign-on capability
  • Supported: Multi-factor authentication

Additional Features

  • Supported: Training library with always-fresh content
  • Supported: AI-driven phishing and training recommendations
  • Supported: User provisioning via Active Directory or SCIM integration
  • Supported: SSO/SAML Integration included across all subscription levels
  • Supported: Brandable content
  • Supported: Upload own content in KnowBe4 LMS
  • Supported: Skills-based and security culture surveys
  • Supported: Full randomization of phishing simulations
  • Supported: Single platform to manage training, phishing, and reporting
  • Supported: A dedicated customer success manager for every customer
  • Supported: Risk scoring by employee, group, and the whole organization
  • Supported: Social engineering indicators showing hidden red flags missed within an email
  • Supported: Integration with PhishER, using PhishFlip can immediately flip a dangerous phishing attack into an instant simulated phishing campaign
  • Supported: Integration with SecurityCoach to deliver real-time coaching in response to risky end user security behavior

KnowBe4 Security Awareness Training Screenshots

Screenshot of The Phishing and Training Dashboard 
Displays how end users are doing at-a-glance and in comparison to peers across industries with Industry Benchmarking.Screenshot of Virtual Risk Officer™.
The Virtual Risk Officer functionality helps identify risk to support data-driven decisions about a security awareness plan.Screenshot of Advanced Reporting
A Collection of 60+ Built-in Advanced Reports that Provide Holistic View of Over Time. Executive and enterprise-level reporting gives visibility into an organization’s security awareness performance with insights into correlated training and phishing simulation data over any specified period of time.Screenshot of Engaging, Browser-based Training
KnowBe4’s learner experience offers optional gamification, in the form of leaderboards and badges, so users will be incentivized and motivated to take their assigned training.Screenshot of Library of security awareness training content. KnowBe4’s partners with The Security Awareness Company, Popcorn Training, exploqii, Canada Privacy Training, Twist & Shout,  El Pescador, CLTRe, Saya University, lawpilots, and MediaPRO.

KnowBe4 Security Awareness Training Video

KnowBe4 Security Awareness Training Integrations

KnowBe4 Security Awareness Training Technical Details

Deployment TypesSoftware as a Service (SaaS), Cloud, or Web-Based
Operating SystemsUnspecified
Mobile ApplicationApple iOS, Android
Supported LanguagesArabic, Chinese (Cantonese) - Traditional, Chinese (Mandarin) - Simplified, Chinese (Mandarin) - Traditional, Czech, Danish, Dutch, English (Australia), English (Great Britain), English (United States), Finnish, French (Europe), French (Canada), German, Hebrew, Hindi, Hungarian, Indonesian, Italian, Japanese, Korean, Malay, Norwegian, Polish, Portuguese (Brazil), Portuguese (Europe), Romanian, Russian, Spanish (Europe), Spanish (Latin America), Swedish, Thai, Turkish, Ukrainian, Vietnamese

KnowBe4 Security Awareness Training Downloadables

Frequently Asked Questions

Cofense PhishMe, Infosec IQ, and Proofpoint Security Awareness Training are common alternatives for KnowBe4 Security Awareness Training.

Reviewers rate Phishing Simulations highest, with a score of 9.5.

The most common users of KnowBe4 Security Awareness Training are from Mid-sized Companies (51-1,000 employees).

KnowBe4 Security Awareness Training Customer Size Distribution

Consumers0%
Small Businesses (1-50 employees)5%
Mid-Size Companies (51-500 employees)75%
Enterprises (more than 500 employees)20%
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(1032)

Attribute Ratings

Reviews

(101-125 of 642)
Companies can't remove reviews or game the system. Here's why
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We conduct regular phishing tests and monthly training, with additional training as needed based on the testing. All users with an email address get phished and are sent the training. We analyze the results of every test and adjust the next training session as needed.

We have no begun to create our own flyers and posters based on those we see in KnowBe4 to raise awareness and keep people thinking about data security.
  • The phishing is great
  • Adding new content fairly regularly is a plus
  • I love the analytics on the admin side
  • The training is more engaging than other training services
  • KnowBe4 really seems to listen to their user-base and makes changes accordingly
  • Sometimes users complain the training content is a bit repetitive
  • I would like to assign managers to users based on the department I put them in
  • Recurring phishing management can be a bit cumbersome with how it's nested, I understand why it's like this, but it can be hard to wrap your head around.
We've already seen a substantial improvement in security awareness in our organization in just a year. People see me in the hallways and tell me about the phish email they caught, or how they are always on their guard now.

Knowbe4 is the easiest to use, most user-friendly and smartest security awareness training around.
George Palmer | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
we use KnowBe4 in order to ensure that we have a high level of Cyber Awareness amongst different layers of staff in the organization. We use it to manage all Cyber training as well as internal training as well as testing of the effectiveness of the training modules over time. We use it for phishing simulations and policy acceptance recording.
  • The content is relevant, contectual and easy to understand
  • The setting up and managing of a cyber training and evaluation program is dead easy
  • it is wasy to deloy to different groups for focussed training.
  • the setting up of notifications to managers and admins could be made a little easier
  • some content is very US orientated and not massively relevant to non US companies
it is well suited to any organization with a small training budget. Very easy to roll out irrespective of the size of the company. it is difficult to not see it fit in an organization. The management facilities are great, but there is an inability to work across multiple brands in the organization from a phishing perspective.
July 29, 2023

KnowBe4

Score 9 out of 10
Vetted Review
Verified User
Incentivized
[KnowBe4 Security Awareness Training] is used across the whole organization to educate our users of the current cyber threat and ways to identify phishing emails and the technique used by cybercriminals.
  • The landing page [is] useful when if comes with many languages.
  • Security tips are based on latest [threats].
  • Phishing campaign is user friendly.
  • If all Landing Pages could have many languages.
  • Allow flexibility to [customize the] logo to auto send out Security Tips (Branded).
July 28, 2023

KnowBe4 thoughts...

Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use it heavily to promote safe email practices. We focus heavily on simulated phishing attacks to continuously test and train our staff on how to spot them. The emails cover a wide variety of "products" to test people with commonly used external applications and websites. KnowBe4 is a mandatory piece of our security model.
  • Excellent simulated emails based on common sites.
  • Focused training when a user clicks on a phishing email that KnowBe4 generated.
  • Excellent training videos for additional information.
  • Sometimes the email address is too obvious and makes a fake easy to spot.
  • Depending on the security you use for email, some of the Phishing emails will hit spam.
  • Also depending on your email security some of the email headers are exposed and show KnowBe4 in them.
This is well suited for any company that has email and needs to help train their staff to prevent phishing attacks that may end up causing issues if the phishing is successful. I feel that everyone needs to beef up their skills with this to help protect yourself and your company.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
The security awareness training is being used throughout the organization and is really helpful in identifying common mistakes that employees are making to threaten the security of the infrastructure.
  • Fraudulent email detection.
  • Phishing email detection.
  • Overall security awareness.
  • Risk mitigation.
  • Provide specific examples of others' errors
  • Enhanced knowledge for advanced staff.
  • Analysis on common threats.
This security awareness training is best suited for all employees who have access their work email and network. It is less appropriate for people who have advanced IQ levels and don't fall for the tricks of hackers.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 Security Awareness Training is used by all of the adult users in our educational organization. This platform helps train users in what to look for in emails so that they don't fall prey to phishing scams. This helps protect our entire network.
  • Test phish emails.
  • Training that is engaging.
  • Up-to-date topics.
  • I would like to see the platform be a little easier to use overall. It can be tricky figuring out how to add new training.
  • Better notifications when someone has clicked on a phishing test email that explains in more detail what they have done.
This is a great platform for education. It helps educate our staff on what to look for in emails and has made people much less "click-happy" when they receive strange emails. People now think much more about what they are doing than they did before we implemented KnowBe4.
Robert Newell | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
All employees receive at least one training video and one episode of The Inside Man serial every month. We all send out phish test emails every month to all users and track their ability to recognize and report the phish. If a Phish test is failed by clicking on a link or other activity, the number of training that person receives increases based on the number of failures they have in a year.
  • The Inside Man serial is a big hit.
  • Developing Phish test emails is easy.
  • Tracking training completion and phish results.
  • Scheduling trainings based on previous failures.
  • API's for downloading user result information could be improved.
  • Result tracking is easy but layout could be cleaner.
  • Scheduling of additional trainings based on failures could be improved.
  • PhishAlert is useful but can be problematic when users are using different devices for email. I.e. Outlook app vs. OWA vs. mobile devices.
KnowBe4 is great for creating engaging and entertaining videos that people enjoy and look forward to. The PhishAlert and phish test scenarios are an important part of our tracking that employees are getting the message. We have had some difficulty with users and the PhishAlert when using different devices. The process is different if using Outlook from the web vs the desktop vs a mobile device
Score 9 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 Security Awareness Training allows us to run defensive phishing campaigns and to train our users in security awareness.
  • Defensive phishing
  • Explains the difference between phishing and spam
  • Explains how to spot a phishing email
  • Explains what to do when you spot an email
  • Remedial training
  • Newsletters for security related issues
  • Customization could be better
  • Customization of landing pages to include images (rather than having to host the image elsewhere)
The phishing campaigns are easy to set up and run, and reporting is simple. We're about to implement the Phish Alert button which will tie in with the phishing campaigns nicely. The training modules are excellent for running from the KnowBe4 website, less so when integrating with your own training solution.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 has been instrumental in helping us reach, train, validate training and ensure that our users, vendors, etc. are key partners in the reduction of our risk associated with phishing. We use both phishing and training campaigns to train and measure our progress. KnowBe4 was very easy to implement with our onboarding team that helped guide us through the entire process including reporting and getting buy-in. We are very pleased and plan to expand usage at every opportunity.
  • Content and system is very robust
  • Post-Sales and Implementation Support
  • Fresh content that is constantly evolving and helping us get the message accross
  • Games and training modules are also very well done
  • No real major issues
  • Some reporting of user deployed PAB needed.
Easy to implement, get up and running and educate users and train and test them on good cyber security practices and issues. Also to compare our results within our industry and how long cyber awareness training has been active.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
KB4 is part of our overall cybersecurity program - specifically targeting security awareness. We have campaigns to do monthly automated phish emails to all users, a smaller targeted monthly campaign for our finance users, and two automated training program campaigns. One of these is for new hires. New employees are automatically assigned training. The last campaign is for yearly required training for all employees.
  • Automated campaigns.
  • Adding new users from Active Directory.
  • Customization of email templates.
  • The logic to automatically add people to campaigns has a little bit of a learning curve. The setup isn't very straightforward.
  • Even though we have the diamond subscription, many of the training modules don't work for us for one reason or another. There is either something in the training that doesn't quite match my organization's policies (or terminology) or it's not well done.
  • The email templates are not consistent within a group of related communications. Meaning you can have automated emails sent out to remind users to take a training, report on progress, complete emails, etc but those emails are not formatted consistently. I have to edit each one, which is there is some configuration pain to this as well, to make all the communications consistent and professional.
If you have a small IT staff and need automation to help with your security awareness training, then KB4 is good - albeit with some decent initial configuration effort. I wouldn't necessarily get the higher subscription though to access more of the training as most are not useable. If you have a bigger staff that can dedicate more time to awareness I think KB4 can still be good.
July 27, 2023

A user review

Score 7 out of 10
Vetted Review
Verified User
Incentivized
The KnowBe4 Security Awareness Training is used across the whole organization. The training is to make employees aware of security risks that each employee represents and how employees can minimize the risks for the company. Risks can be a data breach, phishing, data loss, network corruption, among other types of security breaches.
  • Provide the online training.
  • Keep employees always aware of risks.
  • Provide updates on new types of security risk.
  • Phishing simulation needs to be improved.
  • KnowBe4's emails are more naïve than actual phishing.
  • Would like to see analysis of real cases of security problems that happened with other companies.
The training provides a minimum level of knowledge every employee should have on the company security risks. Furthermore, specialized training is needed for each different department or group inside a department. Employees that are always in contact with customers will have different training needs than others that don't work with external customers.
July 27, 2023

Good training

Score 10 out of 10
Vetted Review
Verified User
Incentivized
We learned this knowbe4/training to simulated Phishing Attacks with thousands of Templates. Real Time Intervention Training. It will reduce Staff Susceptibility to Phishing by a large percentage. Besides that, there are plenty of relevant and engaging training samples to choose from. I felt that I don't have to be a training expert to run this Security Awareness program. Instructors guided me through the process, and setting up automated escalations to get the compliant is very straightforward.
  • know the softaware
  • know the tool
  • know how to use this
  • more examples
  • online practice
  • training material download
For anyone who try to protect the web attacks and improve the security. For example, my agency has a significant new employee and large percentage turnover. The training is easily targeted to help reduce the risks presented by phishing and provide easy-to-generate compliance reports for audit and risk assessments. Between the training, the phishing assessments and the ability to provide follow up training for problem clickers, this is a great program. In addition, it is always good to have this training as out annual security training.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Our company uses KnowBe4 for annual Security Awareness Training for all employees and contractors. We plan to conduct more frequent training as well. We utilize Phishing Campaigns to determine if our employees are being vigilant when receiving emails.
  • The console is extremely user-friendly.
  • The training modules are very engaging and interactive.
  • Email templates are customizable.
  • Technical Support responds quickly and thoroughly.
  • Ability to send out reminders to users and managers is a great feature.
  • I'd like to see more areas of regulatory compliance be added to the ModStore (such as 26 US Code 7216 (use and disclosure of tax return information).
  • I'd like to have more "Point of Failure" training modules added to Phishing Email Templates.
  • There should be more training modules with quizzes and would like the option to add my own questions.
  • It would be nice to be able to add my own content using formats outside of SCORM and video.
  • I'd love to see more robust Privacy training modules.
  • The training and policy acknowledgments reports should be customizable. For example, I may only want to see results from 1 policy acknowledgment but the report will show all policies within the campaign which is not what is needed.
KnowBe4 is a very useful tool for companies of all sizes, no matter the industry. The Security Awareness Training content seems to be updated regularly and there are many options to choose from. The console is very user-friendly and intuitive, which makes training our users very easy. While I like the idea of the ASAP tool, it can be a bit overwhelming to keep up with the timeline. Overall, KnowBe4 is an excellent platform.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
As everyone knows, email security is volatile and a common way for risks to enter a company. Security awareness training is one of the best ways to educate your users and keep them on alert for suspicious emails and things that don't look right. This tool helps us to train our users to be better at spotting the signs of bad emails, report them more frequently, and experience less clicks and compromises. It also allows us to see our company posture by reporting on failure rates of phishing simulations, as well as helps remediate issues by using PhishER.
  • PhishER allows our admins to quickly delete emails from remote mailboxes when the emails are reported.
  • The simulations are well designed and configuring the campaigns is easy.
  • Reporting clicks occasionally is incorrect - where the security system in place sandboxes an email and counts it as a click or sometimes other click reports that are still a mystery why they occur.
KnowBe4 Security Awareness Training is great to use on executives, sales team, marketing and other positions and roles that constantly communicate externally and may receive a lot of spam. In my experience, even if a member of one of these areas fell for a real phishing email, they don't always learn from it. Being required to take some training because they fell for a phishing simulation is great because it is something they don't want to have to take (the training) and makes them less likely to click away on the next email. I would not use this product to phish your employees with emails that look like legit emails from legit coworkers. While it can be a good test, employees end up more likely to report legit emails from HR and cause them to be blocked across the organization.
July 26, 2023

KnowBe4 Fanatic

Score 10 out of 10
Vetted Review
Verified User
Incentivized
Across the whole organization as a security awareness tool. Addresses phishing and cyber security awareness and training.
  • Up-to-date information.
  • Simulated real life phishing emails.
  • Training from the best in the industry.
  • User friendly application.
  • Great reporting.
  • Tough simulated emails.
  • Better reporting.
  • Enhanced graphics.
  • Shorter training modules.
In any healthcare environment. Definitely suitable for anywhere that is susceptible to high email communication and traffic on mobile device.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 Security Awareness Training has been deployed across two organizations to improve security awareness. We use it for training, ethical phishing as a training component, and review of questionable emails submitted by staff. We are also using for some HR training as well
  • Training for end users
  • Ethical Phishing
  • Interface between users and IT on resolving questionable emails
  • Resolution/Identification of bad emails
  • Reduce IT workload
  • It would be nice to let users go back to see work they have completed in training.
KnowBe4 Security Awareness Training does a great job at increasing user awareness. Through the extensive training materials, we have an ample selection. Their series, The Inside Man, has been extremely popular with the staff. Ethical phishing is very easily implemented and has gone a long way in making the staff more aware of potential threats found in email. With KnowBe4 PhishAlert we have a quick way to resolve any email the staff has a question on.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 cybersecurity training is leveraged in our organization to satisfy our mandatory cybersecurity requirements. We utilize our own LMS but KnowBe4 allows us to download their training in a SCORM file and upload it. We also leverage the phishing simulations to create phishing awareness amongst our employee base. This is done monthly.
  • Integrates with our Active Directory
  • Has up to date relevant phishing simulations
  • Great training modules to increase security awareness
  • Phish Report button is a great tool to review potential phishing emails
  • When creating campaigns, it can be somewhat confusing navigating through the console, often times taking numerous steps to set up a phishing simulation.
KnowBe4's security awareness is well suited for phishing simulations. Some of the training modules can be a little outdated but are still relevant.
Score 10 out of 10
Vetted Review
ResellerIncentivized
We utilize the training as mandatory for onboarding a new employee. Just like safety training or orientation we require a custom KnowBe4 Security Awareness Training for all of our new employees to complete before we will activate them on the network and assign an email address. Without the passing grade we will not move forward with an employee in IT integration.
  • Content update
  • Support
  • Automation
  • Maybe certs to give to end users
  • Newer creative content
  • Quick tips for employees (not lengthy)
It keeps our employees on their toes. Daily I get emails forwarded that are suspect. Usually, they are tests, but sometimes they are the real deal. The training is working great. It doesn't take long to complete, and employees (and myself) feel safer about their network accessibility. Of course, when everyone is busy, it seems taking 15-20 min for training is too much, but the other option is much less desirable.
Score 10 out of 10
Vetted Review
ResellerIncentivized
As a reseller, we have many customers that use it for end-user training and awareness for ransomware. There are many organizations that have been stricken by ransomware, or see it in the news and out of fear, request that we look into options: KnowBe4 leads that charge. We have also used some other tools to check for domain spoofing, and fill some other needs, but training is on the forefront.
  • End-user awareness training
  • Diversifying your testing with a new customer with lots of tools
  • Eage of administration
  • There are a couple tools, such as the MFA assessment, that lack automation, and we find those much less useful.
Customers who have issues with ransomware, or are particularly "clicky," are well suited for the end-user awareness training component. We've noticed a drastic decrease in ransomware activity. For the customers that have not improved in training, the software is still appropriate but we have to take new approaches. It might be even more useful with increased administrator training, in the sense of training who deploys the software even more by recommending ways to improve scores based on what metrics have been logged.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 Security Awareness Training is a comprehensive program that helps companies improve their cybersecurity defenses by educating employees about the latest threats and how to avoid them. The program includes interactive training modules, simulated phishing attacks, and assessments to test employee knowledge and identify areas for improvement. Additionally, the program features automated reminders, reports, and management tools to help keep employees engaged and on track. KnowBe4 Security Awareness Training can help companies reduce their risk of data breaches and other cybersecurity incidents by providing employees with the knowledge and skills they need to spot and avoid cyber threats.
  • Phishing Campaigns
  • Awareness Training
  • Templates for campaigns or communications
  • PhisER
  • The Modstore, this is not editable, you get an idea, but you have to create the art yourself
  • user groups are hard to update
  • Renew the awareness training for the next year and updating the content is not easy, is easier if you just create a new campaign
  • Updating the content of a campaign takes work. You have to re-create the drive again.
Pros: - Awareness Training. - Content Updated for trending cyber crimes - Campaigns including QRs, or new ways that phishing works. - Phishing Campaigns easier to track
Cons: - Not easy to customize. - The ModStore includes examples that are not editable. Regenerate a campaign when you only want to update the content and address new content to the same users/groups is not possible. You have to create everything from zero.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
As an industry that is audited for compliance for several reasons, we use KnowBe4 to perform the following: Automate required training for new hires (within 30 days). Automate annual training for all employees, automate monthly phishing campaigns, and perform annual compliance/regional trainings. We also track high-risk users and provide additional training for them based on how they do on quizzes, and campaigns, and tests.
  • Wide variety of training materials.
  • Easy to use interface.
  • Automated Security Awareness Program (ASAP) makes the onboarding process great.
  • Automate the full training process.
  • Gamification of trainings is a bit lacking.
  • There is TOO much content so it's hard to find the right info without watching hours of videos/training.
  • Sometimes training is too broad and not specific enough.
The automation and integration with SSO products like Okta or AAD are great. If you have a larger corporation and want things set up and just run, this product is for you. You do need some dedicated resources to manage it long-term such as selecting the right content and enabling campaigns out of the gate but it for the most part can run independently.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use this for our entire organization for phish testing, phish training, and security & awareness training.
  • Tracks org phish risk vs. comparable industry phish risk.
  • Tracks training and notifications.
  • Direct integration with other LMSs.
We love how KnowBe4 has allowed us to identify and reduce our total organizational phishing risk.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
This is a great product that addresses a major security risk that many companies overlook. Quite simply, it is a great product for educating end users and keeping them aware of email security, Phishing, and more. We onboard each new staff member by requiring them to complete a series of training. This product totally automates that process and includes the detailed reporting that you would expect. We were one of the first school districts in Nebraska to utilize this product, and it's been adopted by many others since. It's a product that you can set it up and let it run the campaigns and training for you, or you can manually do whatever you need as well. (Or a combination of both.) Its templates are great, but if needed, you can customize them as well. Their support is great, but honestly, you really hardly ever need them. Our customer service rep checks in every few months, and we normally take those calls and emails since they are pretty helpful with tips and other settings and not just a "sales call." This product is one that I would be hard-pressed to give up because it probably addresses the weakest link in the security chain, that being the end user and what they are willing to click on and give up for a free cup of coffee.
  • Phishing end users. It's got a vast feature set and is customizable as well.
  • Very easy management.
  • Great training modules. They are well done, and there are plenty to choose from to fit your needs.
  • Their customer reps are great at reaching out with new features and actually assisitng you with setting them up, etc.
  • Wow, right now, I really do not have anything. It's been such a solid product. Sorry, I sound like a salesperson on this one, but it's been a top-shelf product for us. They were one of the first in the market and the others in this space still seem to always fall short.
If you are looking for a product to keep your users trained and always looking for potential security risks/threats in your email, then this is an amazing product. They have expanded it along the way to address many needs that companies have. Its reports give you insight into your users and the ability to adjust what happens next. (More training, etc...) There are so many companies (and, in our case, School Districts) that spend a lot of resources on firewalls, antivirus, malware detection, etc... but ignore the major threat of end users just making bad decisions. All you have to do is look at the stats to figure out your risk in this area. After implementing this product, we saw our users clicking on the way fewer phishing links, and awareness skyrocketed. I can base this on our reports via the product, but I didn't need reports to see how our users have just been way more aware throughout our school district.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Ransomware and phishing are major problems and the first line of defense is our staff. Training them with quarterly security awareness training is very important to securing our technology environment. We also do phishing email testing on staff every quarter and those that click on those are required to take additional training. Continual clicking requires notification to supervisor and is considered a performance issue. If employees enter data into a simulated phishing test, there is a formal conversation with the employee. Staff that enter date into a real phishing email have their account suspended for a day for forensic research to clean up their account and avoid compromises.
  • The video modules have receive great feedback from staff. Its different learning.
  • The building of campaigns is fairly easy
  • Ongoing alerting to staff to complete training is automated.
  • We can upload policy acknowledgement documents into their portal
  • Supervisors get notified when staff do not take training in time
  • The ability to customize phishing tests
  • Content is being updated constantly
  • More video skits...staff really like them
  • Still need to explore Compliance plus module but it looks promising
  • Allow additional modules for subsets of employees instead of all or nothing.
  • Consider user groups or subject matter experts from customers for advisory info
Great for new staff or volunteers that have limited enterprise email experience. The ability to customize the training for small groups of employees helps create focused training for staff I am hoping the compliance module is as robust as the security module. We have recently used the active directory interface and it eliminate duplicated entries. Also, they have upgraded the HIPAA compliance info with new data.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We leverage Knowbe4 Security Awareness training in our environment to educate our users on common phishing attacks, malicious email links, etc. We have used it successfully to not only educate and train the users, but to also test them via the campaigns. Over time we found a dramatic increase in users passing the campaigns, even as we gradually stepped up the difficulty of the campaigns. We have found this to be demonstrably successful in not only educating our employees, but as a by-product, assisting in securing our corporate environment.
  • Allows for gradual increases in stepping up difficulty of the phishing campaigns.
  • Allows for remedial training for those users who fail testing campaigns on the initial testing.
  • Flexibility in the type and nature of campaigns.
  • Excellent support and documentation resources.
  • The administration console could be easier to navigate at times.
  • The ldap integration sometimes has a few hiccups with new users especially.
  • Would like to see additional categories added in the future.
I would without hesitation say that any valid use-case scenario where security awareness training is needed, that Knowbe4 [Security Awareness Training] would be a great fit. As a smaller to medium sized company of 130 employees, it has been a fantastic fit and tool. Not only are the phishing campaigns easy to set up and schedule, so are the the training campaigns. Their library of modules are extensive and it's easy to continue finding new ones to use for future schedules as well. The reporting is well done, and it's easy to show a corroboration between users completing all their testing/campaigns and their lack of success or failure on the phishing portions.
Return to navigation