Skip to main content
Gruppe af kollegaer i samarbejde omkring en bærbar

Security from the top

Security awareness training, strengthen your most important resource

Learn how to protect your business against cyber threats with our comprehensive security awareness training. People are your first line of defence.

Protect the business

We cover every part of it

Build deep knowledge with our security awareness training and be ready to protect your data against external threats. Our programme covers essential areas like network security, access control and risk management.

IT-sikkerheds-illustration

Our training modules

Practical courses from fundamental security principles to advanced cybersecurity techniques.

Raise your IT security

Understand the risks, learn to identify threats and implement effective security for a safer digital everyday.

Strengthen your IT security

We give you the tools for effective protection against digital threats, security protocols, vulnerability identification and data protection.

Secure the business

Training in network security, access control and risk management, practical solutions that protect every employee.

Improve your IT security

Courses covering everything from fundamental security principles to advanced cybersecurity techniques.

Phishing simulations

We send realistic test emails and build training programmes based on the results.

Leadership workshops

Dedicated sessions for management, so strategy is anchored at the top.

MI Support IT-medarbejdere i samarbejde

Results

Training that changes behaviour

Over time your organisation becomes markedly more resilient to phishing and social engineering. We report on progress and adjust the training based on results.

Phishing simulation

Phishing testing of employees: how it works

A phishing test of your employees shows how your organisation reacts to an attack, before the real attack arrives. We use simulated phishing: realistic but harmless emails that mirror the attacks Danish businesses actually face. No data is put at risk, and no employee is singled out.

A test programme with us always follows the same five steps:

  1. Planning

    We agree scope, scenarios and timing with management. Employees are informed in general terms that the company runs tests, but not when.

  2. Simulated phishing campaign

    We send test emails in realistic scenarios: fake login pages, invoices, parcel deliveries or messages from management. Everything is controlled and harmless.

  3. Measurement

    We measure click rate, submitted credentials and reporting rate, meaning how many reported the email to IT. The reporting rate is the number that matters most: It shows whether the culture is working.

  4. Follow-up training

    Employees who clicked receive short, practical training right away, while the experience is fresh. Results are treated confidentially and used for learning only.

  5. Repetition

    The effect comes from the rhythm. New scenarios, new colleagues and new threats mean the test is repeated at fixed intervals, so progress can be tracked over time.

We recommend regular phishing tests every quarter: often enough to keep awareness sharp, and rarely enough that the scenarios never become routine. After each round you receive a report with click rate, reporting rate, progress since the last test and recommendations for the next step, broken down by department and without exposing individuals.

Pricing depends on the number of employees and campaigns per year. You get a fixed price based on scope, so there are no surprises along the way.

Awareness

Security awareness training

Security awareness training for employees is the ongoing training that turns secure behaviour into a habit rather than an annual tick-box exercise. We combine short e-learning modules that employees complete at their own pace with workshops for teams and management, using your own systems and everyday situations as examples.

The topics cover what attackers actually exploit: phishing in all its variants, CEO fraud, strong passwords, MFA and secure use of email, mobile and cloud. The content is updated continuously as new attack patterns emerge.

Impact is measured rather than assumed: We track participation, test results and the development in click and reporting rates from the phishing tests, so you can document progress to management and auditors alike.

The training is also a compliance requirement. NIS2 explicitly requires cybersecurity training of employees and management, and documented awareness training is one of the minimum measures supervisors can ask about. With our programme, the documentation comes built in.

Møde mellem konsulenter og kunde

What's included

Reporting

Hard numbers on progress and participation.

Tailored content

Training tailored to your industry and roles.

Certificates

Documentation for employees and auditors.

Ready to train?

Let's design a training programme for you

We plan the programme, deliver the training and measure the impact, on an ongoing basis.

Book a meeting

FAQ

Frequently asked questions about phishing testing and awareness training

We recommend quarterly tests as a starting point. Test less often and the effect fades, while new employees go too long without being tested. Test much more often and the scenarios become routine. At elevated risk, for example after a real attack or during heavy recruitment, the frequency can be increased for a period.

The price depends on the number of employees, the format (e-learning, workshops or both) and whether phishing tests are included. You get a fixed price based on scope, typically a fixed amount per employee per year, so the cost is predictable. Contact us for a specific quote.
Yes, when the test is set up correctly. The employer has a legitimate interest in testing and training security behaviour, but the GDPR sets requirements: Employees must be informed in general terms that tests are carried out, results must be treated confidentially and used for training rather than sanctions, and no more personal data may be stored than necessary. The Danish Data Protection Agency's practice on monitoring in employment requires a legitimate purpose, proportionality and prior information. We design the tests to comply with the rules.

Strengthen your first line of defence