4 questions security experts ask about cybersecurity training 

  • Photo of Ethena Team
    Ethena Team

SOC II. Attack vectors. Bad actors. Phishing attempts. Cybersecurity can be more complicated than the latest multi-player fantasy adventure game. And, knowing what questions to ask to find the right data privacy training for your team can be more difficult than defeating a Level 20 Spellcaster. 

So we asked Matt Dean — our VP of Engineering, resident IT expert, and sword-wielding security sorcerer — what questions he would ask about any cybersecurity course he was considering. 

Matt Dean, VP of Engineering, Ethena

Will this course fit with my organization’s specific security policies?

Look for a course that's designed to teach best practices while also leaving room for policies and procedures specific to an organization

For example, while many organizations choose to use corporate password managers, it's important that training also discusses password best practices for even tighter security. 

Does this course emphasize realistic breach methods and attack vectors over-complicated technical jargon?

While learners will need to absorb a broad range of cybersecurity best practices, those same employees also need guidance on day-to-day cybersecurity risks.

A course that focuses on the ways individual employees can be more aware and vigilant against risks like social engineering, phishing, and malware will teach folks how to avoid leaving the door open to bad actors.

Does this course address everything I need to maintain SOC II compliance or other similar frameworks?

While there is no official required list of topics that organizations must cover in their security training in order to maintain SOC II compliance, companies that deal with sensitive information and customer data will want to train their teams to maintain a high level of information security.

You can think of it like taking an Honors course in data protection! 

How will this course prepare our teams for phishing attacks?

We've all seen more than our fair share of phishing fails, so getting teams some firsthand experience in identifying suspicious emails is key. Including a phishing simulator alongside comprehensive training will help equip teams to prevent future attacks from being successful. 

Find the training you seek... 

In case you're wondering where you can find training that does all of the above and more, we just launched our Cybersecurity Awareness course — with an integrated phishing simulator coming very soon!

Take a quick look at one of our sample microlessons from the course (simply use the link above and scroll slightly down the page) or schedule a demo with our adventurous sales team to see all the ways Ethena can prepare your organization for every potential attack! No swords necessary.

Let's build a better workplace together. Button: Let's Talk

Articles

View All
A grid of cartoon robots with green checkmarks and one flagged with a red warning, representing AI vendor risk auditing.

How to Audit Your AI Vendors: A Practical Guide to Third-Party Risk

Most companies have more AI vendors than they realize, and you're liable for what they do. A practical five-step audit for Compliance, Legal, HR, and People Ops teams.

4 min read

Five questions our first AI in Compliance cohort asked about vibe coding

Twenty-five compliance professionals. Ninety minutes inside Lovable. Here are the five questions they asked about vibe coding — and the answers worth keeping.

4 min read

How to give your employees a reality check, respectfully (and the training to do it)

Every People team has a story like it. We sat down with Hebba Youssef, CPO at Workweek, to talk through how to give employees a reality check without losing the room — and we're sharing the training deck we actually use.

3 min read

Why does everyone hate HR? Steal these scripts and prompts to reclaim the people work

Spend five minutes in an anti-work subreddit and the verdict on HR is unanimous. "Order takers." "Policy police." "The cleanup crew." "The scapegoats." Those were real words from real HR/People...

4 min read