# Raise employee awareness, not just your defenses.

A firewall stops technical attacks. It does not stop a click. This path works on the six situations where an employee decides alone, in a few seconds, with nobody to ask.

-   ✓**From €19 per module** — [see pricing](/en/academy/pricing/)
-   ✓**6 modules, 10 to 20 min**, taken at the workstation
-   ✓**Auditable certificate**, filed in the training record

## One classroom session a year does not last a year.

Most companies have already done something: a meeting, a slide deck, a poster in the break room. Then an email lands on a Thursday at 5 p.m., it looks like the one from accounting, it asks for an urgent transfer — and nothing said six months earlier comes back to the surface.

**Cybersecurity awareness** that works does not try to make experts. It installs reflexes on a small number of concrete situations: a sender worth checking, a password not to reuse, a USB stick found in a parking lot, a screen left unlocked, personal data sent to the wrong recipient.

And because the risk is not the same everywhere, the path goes down to the **industrial environment**: production workstations, removable media, access to PLCs. On that floor a USB stick is not the same problem as it is at head office.

No longer just good practice

The NIS 2 directive expects management bodies to undergo training and to have their teams trained. The GDPR explicitly assigns the data protection officer a duty to raise staff awareness and provide training.

## Six situations, six modules.

About an hour and a half in total, in one sitting or spread out. Each module stands alone and can be assigned separately.

Cyber

### Phishing: the reflexes

Recognize a booby-trapped email, check a sender, don't click, report.

10 minBeginner

Cyber

### Passwords & authentication

Strong passwords, password manager, multi-factor authentication (MFA), good habits.

12 minBeginner

Data protection

### Data protection: the fundamentals for employees

Personal data, purpose, retention period, individual rights: the essentials.

18 minBeginner

Data protection

### Handling a data breach

Detect, qualify and report a breach: what to do and the key deadlines.

15 minIntermediate

Industrial cyber

### Cybersecurity in industrial environments

Production workstations, removable media, access to PLCs: the OT risks.

20 minAdvanced

Cyber

### Mobility, remote work & on-the-go devices

Public Wi-Fi, session locking, screen privacy, external media.

12 minBeginner

[See the full cybersecurity hub →](/en/academy/cybersecurity/)

## Your questions on awareness training.

What comes up most often before a rollout.

Who needs to be covered? +

Everyone, regardless of seniority or role. Phishing attacks do not target IT: they target accounting, HR, management and assistants — the people who receive attachments and who release payments.

How often? +

At least once a year, and whenever someone joins. Ten- to twenty-minute modules make that rhythm sustainable, where a half-day classroom session ends up being postponed.

How long does it take per person? +

About an hour and a half for the full path. Since each module stands alone, you can also assign only the first three company-wide and reserve the industrial module for production teams.

Does this meet NIS 2 expectations? +

The directive expects management bodies to be trained and teams to receive regular awareness training, without imposing a format. A path that is completed, dated and certified per person is the evidence you will be asked for. We do not issue NIS 2 certification: we provide the training and its traceability.

Can we plug it into our LMS? +

Yes, through SCORM or xAPI, with results and history reported back. If you do not have an LMS, the paths work as is and the certificate stays auditable.

## Neighboring topics.

-   [The full cybersecurity & data protection hub →](/en/academy/cybersecurity/)
-   [HSE & workplace safety →](/en/academy/hse-safety/)
-   [Pricing and plans →](/en/academy/pricing/)

## Reach every employee.

The full catalog, with durations, levels and pricing.
