Help Turn Your Users into Human Firewalls!
January 04, 2024

Help Turn Your Users into Human Firewalls!

Anonymous | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User

Software Version

Training Access Level II (Gold & Platinum)

Modules Used

  • KnowBe4
  • The Security Awareness Company

Overall Satisfaction with KnowBe4 Security Awareness Training

We use the Security Awareness training to help educate our users on detecting malicious emails to PREVENT unauthorized access to our systems. Our goal with the software is to create a "human firewall" and if we can get our end users to be smart enough to determine that an email truly is malicious and NOT click on it (and report it using the PAB and PhishER) then we know we've made an impact on them and they will hopefully not click on an email.
  • Real World Examples - Many of the training modules show Kevin Mitnick actually gaining access to a machine showing how one click can allow a malicious actor access to a machine or network.
  • Up-to-Date content - They are always adding new training and phishing examples.
  • The ability to schedule training and phishing tests.
  • More frequently updated phishing templates. Yes they are updated regularly, but I would like to see them updated with more frequency.
  • Security Posture - By using this software we've been able to increase the security posture of many of the top level executives. Some take it very seriously and understand the risks of not being secure and just blindly clicking on anything.
  • Helping end users save time in determining if an email is a valid email without having to reach out to IT.

Do you think KnowBe4 Security Awareness Training delivers good value for the price?

Yes

Are you happy with KnowBe4 Security Awareness Training's feature set?

Yes

Did KnowBe4 Security Awareness Training live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of KnowBe4 Security Awareness Training go as expected?

I wasn't involved with the implementation phase

Would you buy KnowBe4 Security Awareness Training again?

Yes

It helps to keep it fresh and new so that we don't have to use the same content over and over again. When sending out tests (either short or long) we always try and send some of the newest training modules out so that the people that need it, mainly the ones outside of IT, are given the latest information regarding the state of what's going on in the world of tech security.
User management is done via our Active Directory integration. We have all of our active users added to KnowBe4 automatically when they're created in Active Directory and then we've also got a group that we can use to have users not sync (incase they've left or haven't started at the company yet).

We'll also use our AD groups (that are also sync'd) for training specific departments, when requested by the managers of a specific department.
For us there's a couple of things we're always looking at during active campaigns (be it phishing or training).

For phishing, we're always looking to see who submitted the email using the PAB, who clicked, and even potentially who entered credentials if they clicked.

As far as training goes, we're constantly looking at who completed it and how long it took them to complete the active training they're assigned.
Arctic Wolf Managed Detection and Response, Cisco Duo, BlackBerry Optics (CylanceOPTICS), BlackBerry Protect (CylancePROTECT)
The training program is well suited for phish testing to see if users will open, click, and enter credentials on a phishing email. If you're using PhishER, you'll even be able to see if they "submitted" the email. This gives us good (and scary) insight into what our users are doing.

Some of the "less appropriate" things are having the funny landing pages (i.e. rick rolling someone when they click, etc.). We don't use them since they don't help us to drive our point home that security is something that everyone needs to take seriously, not just us in IT.

KnowBe4 Security Awareness Training Feature Ratings

Training Content Library
10
Multilingual Training Content
10
Training Gamification
8
Industry-Specific Security Training
7
Individualized Security Training Plans
6
Phishing Simulations
10
Security Reporting
10
Integration with Security Tech Stack
Not Rated
Role-based user permissions
8
Single sign-on capability
10