Introduction to the Test

Phishing Email Training Service
This training service diagnoses the phishing response capabilities of your organization's members and evaluates their security awareness, behavior, and vulnerability in a real-world scenario.
By designing and sending phishing emails identical to actual attacks, we analyze individual employee behavior and quantitatively identify the organization's security awareness level and weak points.

What attacks the organization is not technology, but (one click from an employee).
Ransomware - malware - personal information leakage... all start with (one email).
Hackers always attack the weakest and most easily accessible point.


WHY? The Need for Training

- The starting point of a security incident is not technology but the lack of security awareness among employees.
- 90% of all security incidents begin with an email.
- One (click) from a single employee can infect the internal network.
- Personal information leakage, ransomware infection... all start with one email.

Industry sector

Test Standard

HOW? Tranining Process

1. Identify Training Participants
2. Scenario Selection
- Design and creation of phishing emails identical to actual attack levels.
- Application of customized scenarios based on the latest attack trends:
(Link-based / Attachment-based / Text customized to organizational characteristics)
3. Training Schedule Consultation
- Consultation on sending schedule and analysis period.
4. Test Email Dispatch
- Sending verification emails to internal admin* to confirm normal operation.
5. Main Training Email Dispatch
- Enterprise-wide dispatch of phishing emails to all employees.
- Analysis of email reception and reaction in an environment identical to a real attack.
6. Analysis of Employee Behavior
- Analysis of individual employee actions: Opening (reading) / clicking / reporting, etc.
- Capability to identify vulnerability by individual - department - job level.
- Measurement of attack response capability and organizational risk.
7. Provision of Comprehensive Report
- Analysis of click-through rate / reporting rate / open rate.
- Diagnosis of vulnerable employees - vulnerable departments.
- Recommendation for the direction of future training.

Risk: The Fatal Risks Created by Lack of Training

1. Incident costs are 100 times or more than the training cost.
2. Surge in risk of ransomware and personal information leakage.
3. Irrecoverable damage to reputation, customer trust, and revenue.
4. Incident accountability is often attributed to 'lack of training'.
5. Spreads to core servers in just 10 minutes after infiltration.
6. Exposure of the entire organizational sys* upon account compromise.

Contact Person

Cybersecurity

greenjs@icrqra.com