Skip to main content
TrustRadius
KnowBe4 Security Awareness Training

KnowBe4 Security Awareness Training

Overview

What is KnowBe4 Security Awareness Training?

KnowBe4 is a security awareness training and simulated phishing platform used by more than 65,000 organizations around the globe. Founded by IT and data security specialist, Stu Sjouwerman, KnowBe4 helps organizations address the human element of security by raising awareness…

Read more
Recent Reviews

Knowbe4

10 out of 10
April 15, 2024
Incentivized
We use the awareness training primarily. this is done to make staff aware of potential cyber security risks and what to watch for. We also …
Continue reading

KnowBe4

10 out of 10
January 20, 2024
Incentivized
KnowBe4 Security Awareness Training we use for phishing campaigns and training for our end users. since we are a healthcare company, …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 10 features
  • Phishing Simulations (291)
    9.5
    95%
  • Security Reporting (285)
    8.9
    89%
  • Training Content Library (293)
    8.9
    89%
  • Role-based user permissions (261)
    8.5
    85%

Reviewer Pros & Cons

View all pros & cons

Video Reviews

18 videos

KnowBe4 Review: KnowBe4 Allows Security Training To Be Customized & Shared Online
04:19
KnowBe4 Review: Network Engineer Is Confident In the Preventive Elements of KnowBe4
04:04
KnowBe4 Review: Security Analyst Finds End-User Success With Security User Awareness Training
02:58
Return to navigation

Pricing

View all pricing

Silver

$0.90

Cloud
per month per seat

Gold

$1.05

Cloud
per month per seat

Platinum

$1.20

Cloud
per month per seat

Entry-level set up fee?

  • Setup fee optional
For the latest information on pricing, visithttps://www.knowbe4.com/pricing-kevin…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services
Return to navigation

Features

Security

This component helps a company minimize the security risks by controlling access to the software and its data, and encouraging best practices among users.

8.8
Avg 8.3

Security Awareness Training

Common features of security awareness training products.

8.4
Avg 8.3
Return to navigation

Product Details

What is KnowBe4 Security Awareness Training?

KnowBe4 is a security awareness training and simulated phishing platform used by more than 65,000 organizations around the globe. Founded by IT and data security specialist, Stu Sjouwerman, KnowBe4 helps organizations address the human element of security by raising awareness about ransomware, CEO fraud, and other social engineering tactics through a new-school approach to awareness training on security.

The KnowBe4 platform offers multi-language support for the Admin Console and end-user localization options to deliver a more immersive learning experience to users from start to finish.

KnowBe4 provides:

  • Baseline testing to assess the Phish-Prone™ percentage of users through a free simulated phishing attack

  • 1000+ interactive modules, videos, games, posters and newsletters in a library of security awareness training content

  • Fully automated simulated phishing attacks, thousands of templates with unlimited usage, and community phishing templates

  • Enterprise strength reporting, showings stats and graphs for both training and phishing

KnowBe4 has been named a leader in the Forrester Wave™: Security Awareness and Training Solutions, Q1 2022 and Best Feature Set, Best Relationship and Best Value for Price in the Winter 2023 "Best of" Awards.



KnowBe4 Security Awareness Training Features

Security Awareness Training Features

  • Supported: Training Content Library
  • Supported: Multilingual Training Content
  • Supported: Training Gamification
  • Supported: Industry-Specific Security Training
  • Supported: Individualized Security Training Plans
  • Supported: Phishing Simulations
  • Supported: Security Reporting
  • Supported: Integration with Security Tech Stack

Security Features

  • Supported: Role-based user permissions
  • Supported: Single sign-on capability
  • Supported: Multi-factor authentication

Additional Features

  • Supported: Training library with always-fresh content
  • Supported: AI-driven phishing and training recommendations
  • Supported: User provisioning via Active Directory or SCIM integration
  • Supported: SSO/SAML Integration included across all subscription levels
  • Supported: Brandable content
  • Supported: Upload own content in KnowBe4 LMS
  • Supported: Skills-based and security culture surveys
  • Supported: Full randomization of phishing simulations
  • Supported: Single platform to manage training, phishing, and reporting
  • Supported: A dedicated customer success manager for every customer
  • Supported: Risk scoring by employee, group, and the whole organization
  • Supported: Social engineering indicators showing hidden red flags missed within an email
  • Supported: Integration with PhishER, using PhishFlip can immediately flip a dangerous phishing attack into an instant simulated phishing campaign
  • Supported: Integration with SecurityCoach to deliver real-time coaching in response to risky end user security behavior

KnowBe4 Security Awareness Training Screenshots

Screenshot of The Phishing and Training Dashboard 
Displays how end users are doing at-a-glance and in comparison to peers across industries with Industry Benchmarking.Screenshot of Virtual Risk Officer™.
The Virtual Risk Officer functionality helps identify risk to support data-driven decisions about a security awareness plan.Screenshot of Advanced Reporting
A Collection of 60+ Built-in Advanced Reports that Provide Holistic View of Over Time. Executive and enterprise-level reporting gives visibility into an organization’s security awareness performance with insights into correlated training and phishing simulation data over any specified period of time.Screenshot of Engaging, Browser-based Training
KnowBe4’s learner experience offers optional gamification, in the form of leaderboards and badges, so users will be incentivized and motivated to take their assigned training.Screenshot of Library of security awareness training content. KnowBe4’s partners with The Security Awareness Company, Popcorn Training, exploqii, Canada Privacy Training, Twist & Shout,  El Pescador, CLTRe, Saya University, lawpilots, and MediaPRO.

KnowBe4 Security Awareness Training Video

KnowBe4 Security Awareness Training Technical Details

Deployment TypesSoftware as a Service (SaaS), Cloud, or Web-Based
Operating SystemsUnspecified
Mobile ApplicationApple iOS, Android
Supported LanguagesArabic, Chinese (Cantonese) - Traditional, Chinese (Mandarin) - Simplified, Chinese (Mandarin) - Traditional, Czech, Danish, Dutch, English (Australia), English (Great Britain), English (United States), Finnish, French (Europe), French (Canada), German, Hebrew, Hindi, Hungarian, Indonesian, Italian, Japanese, Korean, Malay, Norwegian, Polish, Portuguese (Brazil), Portuguese (Europe), Romanian, Russian, Spanish (Europe), Spanish (Latin America), Swedish, Thai, Turkish, Ukrainian, Vietnamese

KnowBe4 Security Awareness Training Downloadables

Frequently Asked Questions

Cofense PhishMe, Infosec IQ, and Proofpoint Security Awareness Training are common alternatives for KnowBe4 Security Awareness Training.

Reviewers rate Phishing Simulations highest, with a score of 9.5.

The most common users of KnowBe4 Security Awareness Training are from Mid-sized Companies (51-1,000 employees).

KnowBe4 Security Awareness Training Customer Size Distribution

Consumers0%
Small Businesses (1-50 employees)5%
Mid-Size Companies (51-500 employees)75%
Enterprises (more than 500 employees)20%
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(1032)

Attribute Ratings

Reviews

(1-25 of 138)
Companies can't remove reviews or game the system. Here's why
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use KnowBe4 Security Awareness Training to provide training to our employees about cyber security. We also receive weekly newsletters that provide helpful information about trends in the world of cyber security so that we can stay up-to-date and alert about what phishing attacks are common in our industry and with businesses similar to ours.
  • Notifications of assigned trainings
  • Quick and easy to follow modules
  • Helpful, current information
  • It is difficult to assign training to users
  • Tough to know which training modules are relevant to which employee types
  • Adding employees to employee groups is not intuitive
KnowBe4 Security Awareness Training is a good tool to educate non-computer-savvy employees about phishing attacks. The site provides a risk score to each employee so that admins know where to focus their efforts and potentially assign additional training. It provides phishing "tests" where admins are able to monitor which employees pass or fail the tests.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
As a security engineer, i perform security awareness training annually for my organisation to fulfil compliance requirement. This tool is so user friendly for admin as well as users. Pre-loaded modules are easy to select and initiating training is also very easy. Most important we can customize trainings as per our needs and can initiate trainings to only those users/groups that whom we want as per company's requirement. Also, after trainings completion tracking and sharing reports is also very user friendly with the management. If someone fails the training then we can also enrol them for re-training so that compliance requirement is fulfilled. Great tool for everyone.
  • Creating Groups as per existing teams in our company
  • Performing Security awareness training enterprise-wide.
  • Performing simulation test to check the awareness.
  • Can't upload custom assessment questions
  • API integration is very limited.
  • Custom training options are very limited.
KnowBe4 Security Awareness Training is great if you want to perform security awareness training and the phishing simulation test with the available modules. These modules covers everything related to security, compliance, etc. Reports view is a great addon.

But if you want to upload your own training along with the assessment questions then it has very limited features.
January 20, 2024

KnowBe4

Score 10 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 Security Awareness Training we use for phishing campaigns and training for our end users. since we are a healthcare company, phishing is a huge problem and a way hackers to access sensitive PHI info. We use Knowbe4 for monthly simulated phishing attacks to see if our users understand and notice phishing type emails that hit their inbox.
  • videos classes
  • phishing campaigns
  • notifications within admin panel
the tool is easy to use. the technical support is really good and the sync tool to our office365 environment was easy to set up with the help of the rep and technical support. KnowBe4 Security Awareness Training is very well known and everyone should be using them for anything of phishing campaigns and training.
January 12, 2024

SAT from KB4

Score 8 out of 10
Vetted Review
Verified User
Incentivized
Mainly bi-monthly training sessions + continuous phishing simulations.
  • language support
  • reporting capabilities
  • enduser portal
  • excluding users that are long-term absent
  • reporting capabilities eg who failed x trainings per department or country
well suited for the large number of languages supported.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Our primary use of KnowBe4 Security Awareness Training is their phishing campaigns and additional training within. We typically do a phishing campaign monthly with varying degrees of difficulty. If a user fails the test, they are enrolled in additional training. Repeat failures get additional training on top of a normal failure. This is truly increased our security awareness to the point where most employees scrutinize all emails before any action on them.
  • Provides a variety of phishing templates. We can take a template and make adjustments to change the difficulty for our users.
  • I don't know if this exists, but sending emails from our domain rather than a KnowBe4 Security Awareness Training email. Many users don't trust when they're told to do training that comes from outside.
It is easy for my admins to prepare and deploy phishing tests. The follow up training deployment is great also. Pulling metrics to present to my leadership is very easy as well, the numbers breakdown and are easy to follow.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use it to train users on emerging cyber issues and also as our phishing test and management.
  • Easy to use interface
  • Manages the phishing test and reporting well
  • Provides a fast, streamlined way to look at potentially malicious emails
  • Maybe make it easier to find documentation, or maybe advertise what KnowBe4 Security Awareness Training can do but currently isn't
  • The ratings for Phishing email templates sometimes have high stars for obviously fake emails
The training is very useful to help our users keep up to date with cyber issues, this is crucial, especially in a non-profit. As they grow their information it will be even more invaluable.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
I've been using KnowBe4 Security Awareness Training for a while now, and I can confidently say that this training software helps us create a culture of cybersecurity awareness among our employees and reduces the risk of falling victim to cyberattacks with clear metrics. With its comprehensive training, reasonable pricing, realistic simulations, and user-friendly interface, I recommend this solution to anyone.
  • Phishing Simulations
  • Customizable Content
  • Comprehensive Reporting
  • Multi-language support
  • Mobile support
This solution is great for helping employees learn how to deal with a real-world phishing attack with an economic budget and convince many stakeholders, especially executives that the phishing attack is much more tricky than people assume. The phishing simulation helps capture the ROI of the software effectively, too.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We currently use it for training the whole company on various topics like password security, phishing emails and other tips to prevent social engineering. We are required to have on-going quarterly trainings. We also get random phishing emails from the company to keep us alert.
  • Explains simply
  • Does not go into too much technical jargon
  • Enforces training with simulated phising emails.
  • Would like to see something more advanced targeting technical users.
  • Videos sometimes play but do not getting credit for watching video.
  • Would like to see more in depth about social engineering since that is where the most problems take place.
It has worked for Mission Produce as it has trained users on what to look for and we quite regularly get requests to our service desk reporting phishing/scam/fraud emails. Sometimes it does a little too good of a job as we have periods where users report everything as a scam/fraud/phishing and we have to spend time looking at a lot of legit emails. But would rather have someone over report than under report.

This is best suited for a large IT department with many users. For small shops, I feel that this would be overkill.
October 06, 2023

Would recommend highly

Score 9 out of 10
Vetted Review
Verified User
Incentivized
Our organization uses KnowBe4 Security Awareness Training to provide relevant content to our employees. The modules allow the users to complete all of their required training in short, less time consuming, intervals that meet their work schedules. The content is engaging and provides an overall vehicle for required training as well as self-developed content.
  • Engaging content
  • Easily "digested" topics
  • Remedial training opportunities
  • More content at the lower tiers. You shouldn't have to pay for the highest tier to get the best content.
  • Default Dashboard should be to the training content for all users. Admins should have to choose to see the Admin Dashboard should they need that view.
  • Users should be able to enter more information on their own. Currently the admin has to update any phone number or organizational information instead of the user doing it.
KnowBe4 is very well suited for large organizations that need to make Security Awareness Training readily available. It is also a great tool to provide self-developed content to specific users as necessary.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
This is one piece of the CyberSecurity puzzle we have. Using KnowBe4 we are able to train our users what the risks are and how to spot probable malicious attempts. Along with that we are able to test and see what patterns we have for strengths and weaknesses. We are also able to determine attitudes and perceptions so we can implement training that explains the possible attacks and why it is important to be aware.
  • Identifies and defines all the different possible attack scenarios.
  • Gives real life examples of successful attacks and how they could have been identified and avoided.
  • Keep things simple and easy to understand. The training is for the everyday person so they avoid a lot of tech-speak - or define it simply when they can't avoid it.
  • Split out a lot of the current attack strategies into their own training modules to be more in depth.
  • Work on the exit of the module to show user has completed. Frequently have to have users log back on just to "finish" one or two screens at the end so that it will register them as having completed.
  • Cover more things like replying to a phish and why it's bad
Learning how to recognize who actually sent an email or how to hover over a link to see where it actually points are great little tips that people have been able to pick up. Understanding the threats that come with simple everyday things most people don't really think about like tailgating or finding a USB drive and knowing that it may not be harmless to just plug it in and see what it is. Even after all these years people are still learning that attachments can be bad. KnowBe4 SAT has done a pretty good job at explaining how that all works in simple to understand terms.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We solely use knowb4 security awareness training to train all of our staff here with all departments. We train our front end staff as well as back admin office. We also train our accounting, HR and IT department with these trainings.
  • It helps us keeping our staff informed on phishing emails
  • it helps our staff to protect the front end systems
  • It is user friendly platform
  • one improvement could be easily adding users to the training rather then whole group
  • Another thing is I have to manually select the level of subscription we have in order to filter out trainings specific to our level. I think it would be ideal if it was setup to be default
I think the trainings are very well suited in all areas for our organization
Score 9 out of 10
Vetted Review
Verified User
Incentivized
This helps in getting all employees get basic security awareness training and it helped a lot from phishing attacks and many more attacks
  • Providing information on Latest security trends
  • Providing information on Common attacks
  • More contents on developers secure code training needed
For new hire and getting all employees trained on basic security awareness to prevent them from many attacks
Patrick Thibeault | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We started using theKnowBe4 Security Awareness Training platform just over 6 months ago, and we made the change because of the ease of use of the platform and the fact that everybody gets a different email for simulations. The fact that our employees receive different phishing simulations on different days was a big win for us. In the past they use to tell one another about the simulation.
  • Phishing
  • Variety of training
  • Platform ease of use
  • phishing emails that go out bilingual.
After 6 short months, we are seeing a huge improvement on our staff's propensity to click on a phishing simulation. We used the previous vendor for over 10 years, and yet our organization's scores were not very good. We have seen a huge improvement in our scores, and our employees really like the content. Particularly the "Inside man" series. This is interesting to watch, and the best thing is that they are learning at the same time. The executive reporting section on the platform is great. it's never been so easy to pull customized reports. The vendor management team is very knowledgeable. They have earned our trust, and I am confident I am being steered in the right direction.
August 04, 2023

7 years of use

Score 6 out of 10
Vetted Review
Verified User
Incentivized
Automates our phishing test program, as well as remediation, onboarding, and annual training campaigns.
  • Automated Phishing campaigns
  • Phishing test reporting
  • User syncing- offfboarded employees are often still enrolled and managers receive reports about overdue training for these employees
  • In my opinion, the admin GUI can be confusing
Great for automated phishing campaigns for any industry where this is important (all industries?). Training modules may not be great for cases where a custom training is more appropriate.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 has been a great asset to us. We started using it when we realized our users didn't know enough about the threats that were out there. I set up a fake email address and sent it to a few people in our organization, and an alarming number failed to tell it was fake. Now after training, our users are amazing at either spotting or reporting phishing and fake emails. We went from a nearly 30 percent failure rate to less than 2 percent now. I can't recommend KnowBe4 enough. Everyone I talk to that even mentions phishing, I tell them about our success. The ongoing training videos keep us all up to date, and the simulated phishing emails work wonders to make our users stay on their toes about security. It also goes past just email, their videos have helped our users spot fake websites and be much more cautious when traveling and getting on WIFI.
  • Amazing customer service. Our rep constantly monitors our campaigns and helps keep us up to date.
  • Prenominal content. They constantly keep their content for training and simulated phishing emails up to date.
  • Easy to use. The portal is a breeze to get training and other campaigns up and running.
  • I honestly can't find anything wrong with KnowBe4.
If you are worried about your people needing training about how to spot phishing, this is for you. I recommend it to all the other John Deere and Freightliner dealers I talk to, and they almost all end up as customers as well. I'm not sure of a scenario it's not well suited for. The only downfall is you have to pay for it, but it's pretty well priced for all that it does, and they have multiple levels to choose from.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We conduct regular phishing tests and monthly training, with additional training as needed based on the testing. All users with an email address get phished and are sent the training. We analyze the results of every test and adjust the next training session as needed.

We have no begun to create our own flyers and posters based on those we see in KnowBe4 to raise awareness and keep people thinking about data security.
  • The phishing is great
  • Adding new content fairly regularly is a plus
  • I love the analytics on the admin side
  • The training is more engaging than other training services
  • KnowBe4 really seems to listen to their user-base and makes changes accordingly
  • Sometimes users complain the training content is a bit repetitive
  • I would like to assign managers to users based on the department I put them in
  • Recurring phishing management can be a bit cumbersome with how it's nested, I understand why it's like this, but it can be hard to wrap your head around.
We've already seen a substantial improvement in security awareness in our organization in just a year. People see me in the hallways and tell me about the phish email they caught, or how they are always on their guard now.

Knowbe4 is the easiest to use, most user-friendly and smartest security awareness training around.
George Palmer | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
we use KnowBe4 in order to ensure that we have a high level of Cyber Awareness amongst different layers of staff in the organization. We use it to manage all Cyber training as well as internal training as well as testing of the effectiveness of the training modules over time. We use it for phishing simulations and policy acceptance recording.
  • The content is relevant, contectual and easy to understand
  • The setting up and managing of a cyber training and evaluation program is dead easy
  • it is wasy to deloy to different groups for focussed training.
  • the setting up of notifications to managers and admins could be made a little easier
  • some content is very US orientated and not massively relevant to non US companies
it is well suited to any organization with a small training budget. Very easy to roll out irrespective of the size of the company. it is difficult to not see it fit in an organization. The management facilities are great, but there is an inability to work across multiple brands in the organization from a phishing perspective.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
KB4 is part of our overall cybersecurity program - specifically targeting security awareness. We have campaigns to do monthly automated phish emails to all users, a smaller targeted monthly campaign for our finance users, and two automated training program campaigns. One of these is for new hires. New employees are automatically assigned training. The last campaign is for yearly required training for all employees.
  • Automated campaigns.
  • Adding new users from Active Directory.
  • Customization of email templates.
  • The logic to automatically add people to campaigns has a little bit of a learning curve. The setup isn't very straightforward.
  • Even though we have the diamond subscription, many of the training modules don't work for us for one reason or another. There is either something in the training that doesn't quite match my organization's policies (or terminology) or it's not well done.
  • The email templates are not consistent within a group of related communications. Meaning you can have automated emails sent out to remind users to take a training, report on progress, complete emails, etc but those emails are not formatted consistently. I have to edit each one, which is there is some configuration pain to this as well, to make all the communications consistent and professional.
If you have a small IT staff and need automation to help with your security awareness training, then KB4 is good - albeit with some decent initial configuration effort. I wouldn't necessarily get the higher subscription though to access more of the training as most are not useable. If you have a bigger staff that can dedicate more time to awareness I think KB4 can still be good.
July 27, 2023

Good training

Score 10 out of 10
Vetted Review
Verified User
Incentivized
We learned this knowbe4/training to simulated Phishing Attacks with thousands of Templates. Real Time Intervention Training. It will reduce Staff Susceptibility to Phishing by a large percentage. Besides that, there are plenty of relevant and engaging training samples to choose from. I felt that I don't have to be a training expert to run this Security Awareness program. Instructors guided me through the process, and setting up automated escalations to get the compliant is very straightforward.
  • know the softaware
  • know the tool
  • know how to use this
  • more examples
  • online practice
  • training material download
For anyone who try to protect the web attacks and improve the security. For example, my agency has a significant new employee and large percentage turnover. The training is easily targeted to help reduce the risks presented by phishing and provide easy-to-generate compliance reports for audit and risk assessments. Between the training, the phishing assessments and the ability to provide follow up training for problem clickers, this is a great program. In addition, it is always good to have this training as out annual security training.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Our company uses KnowBe4 for annual Security Awareness Training for all employees and contractors. We plan to conduct more frequent training as well. We utilize Phishing Campaigns to determine if our employees are being vigilant when receiving emails.
  • The console is extremely user-friendly.
  • The training modules are very engaging and interactive.
  • Email templates are customizable.
  • Technical Support responds quickly and thoroughly.
  • Ability to send out reminders to users and managers is a great feature.
  • I'd like to see more areas of regulatory compliance be added to the ModStore (such as 26 US Code 7216 (use and disclosure of tax return information).
  • I'd like to have more "Point of Failure" training modules added to Phishing Email Templates.
  • There should be more training modules with quizzes and would like the option to add my own questions.
  • It would be nice to be able to add my own content using formats outside of SCORM and video.
  • I'd love to see more robust Privacy training modules.
  • The training and policy acknowledgments reports should be customizable. For example, I may only want to see results from 1 policy acknowledgment but the report will show all policies within the campaign which is not what is needed.
KnowBe4 is a very useful tool for companies of all sizes, no matter the industry. The Security Awareness Training content seems to be updated regularly and there are many options to choose from. The console is very user-friendly and intuitive, which makes training our users very easy. While I like the idea of the ASAP tool, it can be a bit overwhelming to keep up with the timeline. Overall, KnowBe4 is an excellent platform.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
As everyone knows, email security is volatile and a common way for risks to enter a company. Security awareness training is one of the best ways to educate your users and keep them on alert for suspicious emails and things that don't look right. This tool helps us to train our users to be better at spotting the signs of bad emails, report them more frequently, and experience less clicks and compromises. It also allows us to see our company posture by reporting on failure rates of phishing simulations, as well as helps remediate issues by using PhishER.
  • PhishER allows our admins to quickly delete emails from remote mailboxes when the emails are reported.
  • The simulations are well designed and configuring the campaigns is easy.
  • Reporting clicks occasionally is incorrect - where the security system in place sandboxes an email and counts it as a click or sometimes other click reports that are still a mystery why they occur.
KnowBe4 Security Awareness Training is great to use on executives, sales team, marketing and other positions and roles that constantly communicate externally and may receive a lot of spam. In my experience, even if a member of one of these areas fell for a real phishing email, they don't always learn from it. Being required to take some training because they fell for a phishing simulation is great because it is something they don't want to have to take (the training) and makes them less likely to click away on the next email. I would not use this product to phish your employees with emails that look like legit emails from legit coworkers. While it can be a good test, employees end up more likely to report legit emails from HR and cause them to be blocked across the organization.
Score 10 out of 10
Vetted Review
ResellerIncentivized
As a reseller, we have many customers that use it for end-user training and awareness for ransomware. There are many organizations that have been stricken by ransomware, or see it in the news and out of fear, request that we look into options: KnowBe4 leads that charge. We have also used some other tools to check for domain spoofing, and fill some other needs, but training is on the forefront.
  • End-user awareness training
  • Diversifying your testing with a new customer with lots of tools
  • Eage of administration
  • There are a couple tools, such as the MFA assessment, that lack automation, and we find those much less useful.
Customers who have issues with ransomware, or are particularly "clicky," are well suited for the end-user awareness training component. We've noticed a drastic decrease in ransomware activity. For the customers that have not improved in training, the software is still appropriate but we have to take new approaches. It might be even more useful with increased administrator training, in the sense of training who deploys the software even more by recommending ways to improve scores based on what metrics have been logged.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 Security Awareness Training is a comprehensive program that helps companies improve their cybersecurity defenses by educating employees about the latest threats and how to avoid them. The program includes interactive training modules, simulated phishing attacks, and assessments to test employee knowledge and identify areas for improvement. Additionally, the program features automated reminders, reports, and management tools to help keep employees engaged and on track. KnowBe4 Security Awareness Training can help companies reduce their risk of data breaches and other cybersecurity incidents by providing employees with the knowledge and skills they need to spot and avoid cyber threats.
  • Phishing Campaigns
  • Awareness Training
  • Templates for campaigns or communications
  • PhisER
  • The Modstore, this is not editable, you get an idea, but you have to create the art yourself
  • user groups are hard to update
  • Renew the awareness training for the next year and updating the content is not easy, is easier if you just create a new campaign
  • Updating the content of a campaign takes work. You have to re-create the drive again.
Pros: - Awareness Training. - Content Updated for trending cyber crimes - Campaigns including QRs, or new ways that phishing works. - Phishing Campaigns easier to track
Cons: - Not easy to customize. - The ModStore includes examples that are not editable. Regenerate a campaign when you only want to update the content and address new content to the same users/groups is not possible. You have to create everything from zero.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
As an industry that is audited for compliance for several reasons, we use KnowBe4 to perform the following: Automate required training for new hires (within 30 days). Automate annual training for all employees, automate monthly phishing campaigns, and perform annual compliance/regional trainings. We also track high-risk users and provide additional training for them based on how they do on quizzes, and campaigns, and tests.
  • Wide variety of training materials.
  • Easy to use interface.
  • Automated Security Awareness Program (ASAP) makes the onboarding process great.
  • Automate the full training process.
  • Gamification of trainings is a bit lacking.
  • There is TOO much content so it's hard to find the right info without watching hours of videos/training.
  • Sometimes training is too broad and not specific enough.
The automation and integration with SSO products like Okta or AAD are great. If you have a larger corporation and want things set up and just run, this product is for you. You do need some dedicated resources to manage it long-term such as selecting the right content and enabling campaigns out of the gate but it for the most part can run independently.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Ransomware and phishing are major problems and the first line of defense is our staff. Training them with quarterly security awareness training is very important to securing our technology environment. We also do phishing email testing on staff every quarter and those that click on those are required to take additional training. Continual clicking requires notification to supervisor and is considered a performance issue. If employees enter data into a simulated phishing test, there is a formal conversation with the employee. Staff that enter date into a real phishing email have their account suspended for a day for forensic research to clean up their account and avoid compromises.
  • The video modules have receive great feedback from staff. Its different learning.
  • The building of campaigns is fairly easy
  • Ongoing alerting to staff to complete training is automated.
  • We can upload policy acknowledgement documents into their portal
  • Supervisors get notified when staff do not take training in time
  • The ability to customize phishing tests
  • Content is being updated constantly
  • More video skits...staff really like them
  • Still need to explore Compliance plus module but it looks promising
  • Allow additional modules for subsets of employees instead of all or nothing.
  • Consider user groups or subject matter experts from customers for advisory info
Great for new staff or volunteers that have limited enterprise email experience. The ability to customize the training for small groups of employees helps create focused training for staff I am hoping the compliance module is as robust as the security module. We have recently used the active directory interface and it eliminate duplicated entries. Also, they have upgraded the HIPAA compliance info with new data.
Return to navigation