A great help to skeleton crew IT departments!
December 18, 2023

A great help to skeleton crew IT departments!

Anonymous | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Overall Satisfaction with KnowBe4 PhishER

PhishER is used to automate the detection, response, and remediation of phishing emails as well as triage messages in general. It automates the process of breaking down the email headers and makes a MUCH faster and simpler response for a small IT department.

PhishRIP and PhishFlip are superb addons that allow us to scan our entire Exchange 365 environment for other copies of phishing mail and instantly purge them from other user's mailboxes that haven't reported them yet - and then turn around and use that very message as a training template with KnowBe4 to test users.

We can automate processes, scanning, detection, message flagging, and alerting from PhishER - it takes a bit to get set up well, but then it's cheaper than an FTE being hired on to help manage it all!
  • automated message header decoding
  • remote removal/deletion of phishing mails from entire mail environment
  • fast and easy false positive/clean identification
  • easier customization of automation rules
  • better end-user feedback to message submitter of submission status
  • Pulled over 200 phishing emails out of inboxes this year - before they ever even got looked at by the recipient!
  • Reduced time needed to verify legitimacy of attachments ("Is this a real invoice?" or "Is this safe to open?" by 60% compared to manual tracing.
The categorization and filtering enable us to spend between 20 and six minutes checking out a submitted message instead of 25 to 30 minutes for a full manual back-trace. This is something that we can stay on a call for if the user submits a message to us and then calls because they're concerned about it - no need to wait for a chance to call them back or hold up other things because of checking a message.
PhishRIP and PhishFlip I've already talked of. They are great tools to prevent 'frequent clickers' from getting caught and causing security issues. If a savvy user catches an email and submits it, being able to scan every user mailbox for similar messages and pre-emptively delete them is a HUGE game changer for keeping our organization safe. Then, being able to turn that around into a test email gives us better templates that are 'more real' than the pre-designed ones that come in the system.
We are able to better focus our training on specific weak areas by flipping legit scams into test emails. The reporting tools allow us to see just how effective at penetrating our company the threat actors might have been - and then tailor the learning needed to those styles (and those people that would have fallen victim!).

Do you think KnowBe4 PhishER/PhishER Plus delivers good value for the price?

Yes

Are you happy with KnowBe4 PhishER/PhishER Plus's feature set?

Yes

Did KnowBe4 PhishER/PhishER Plus live up to sales and marketing promises?

Yes

Did implementation of KnowBe4 PhishER/PhishER Plus go as expected?

Yes

Would you buy KnowBe4 PhishER/PhishER Plus again?

Yes

Small IT department use is great as it can be quite set-and-forget and saves money versus hiring.

Anything less than 10 users submitting messages to PhishER, and it's probably not worth the cost of the subscription in comparison to 1:1 communication.

If you have an email system that it doesn't tie well with, it'll be more difficult to get the really really nice integrations working in a way that truly saves time/effort/money.

KnowBe4 PhishER/PhishER Plus Feature Ratings

Company-wide Incident Reporting
6
Integration with Other Security Systems
6
Centralized Dashboard
8
Machine Learning to Prevent Incidents
8
Live Response for Rapid Remediation
9