Scroll to top

EdTech Company – Employee Security Awareness

Project Overview

An EdTech company providing virtual classrooms needed to address increasing phishing attempts and internal security negligence. We were engaged to roll out a lightweight but effective employee awareness and training program.

Challenges

  1. Frequent phishing attacks targeting non-technical staff.
  2. No prior cybersecurity training or formal onboarding.
  3. Use of weak and repeated passwords across platforms.
  4. Staff unaware of basic reporting protocols for incidents.
  5. Shadow IT and unvetted third-party tool usage.

Solutions

  1. Conducted interactive phishing simulations with employees.
  2. Designed an internal cybersecurity awareness program.
  3. Rolled out a password manager and MFA policy company-wide.
  4. Created an easy-to-understand incident reporting framework.
  5. Audited all active tools and implemented app approval policies.