Get in Touch
 Duration 14 hours

Course Outline

Foundations, Social Engineering, and the Workplace Environment

Module 1: Cybersecurity Fundamentals for Staff

  • Introduction to threats: Understanding cybersecurity and why every employee plays a critical role.

  • Digital hygiene and password management: Developing strong passwords, utilizing password managers, and adhering to the "one password per service" principle.

  • Clear desk and clear screen policies: Ensuring physical information security within office spaces.

Module 2: Phishing and Social Engineering – Identifying Threats

  • The psychology of attacks: Defining social engineering and understanding why cybercriminals exploit urgency, fear, or authority (CEO Fraud, BEC).

  • Anatomy of phishing: Techniques for analyzing message headers, concealed links, and malicious attachments (using authentic case examples).

  • Alternative attack vectors: Vishing (voice phishing) and Smishing (SMS phishing).

Module 3: Secure Remote and Mobile Operations

  • Network security: Understanding the risks of public Wi-Fi networks (in cafes, transit) and the correct use of a VPN.

  • Device protection: Implementing disk encryption, screen locks, and avoiding unverified USB drives.

  • Bring Your Own Device (BYOD) policy: Guidelines for using personal smartphones for business and separating data.


Tools, Legal Compliance, and Incident Response

Module 4: Cybersecurity within the Microsoft 365 Ecosystem

  • Login and verification: Practical application of Multi-Factor Authentication (MFA/2FA) for secure account access.

  • Secure data sharing: Managing file and folder permissions in OneDrive and SharePoint (preventing "anyone with the link" access).

  • Communication and collaboration: Secure usage of Microsoft Teams (managing external guests and controlling shared files).

Module 5: Personal Data Protection and GDPR Application

  • Information classification: Distinguishing between public, confidential, sensitive, and personal data.

  • GDPR in daily workflows: Avoiding common errors that lead to data breaches (e.g., incorrect email recipients, failure to use BCC).

  • Data sharing and disposal: Protocols for securely transferring information to third parties and permanently deleting documents.

Module 6: Managing Security Incidents

  • Incident recognition: Defining what constitutes a breach (lost devices, ransomware infections, accidental phishing link clicks).

  • Reporting workflows: Identifying who to notify and the required timeframe (roles of IT Helpdesk, Security Officer, and Data Protection Officer).

  • Core response principles: Isolating devices from the network, maintaining composure, and strictly avoiding unauthorized "fixes" or evidence deletion.

Requirements

  • Foundational computer and web browser proficiency.

  • Regular engagement with standard office workflows (email, messaging applications, and document management).

  • No specialized IT expertise is necessary – all technical concepts are presented through the context of business value and daily operations.

Target Audience

  • All administrative and office staff, as well as mid-level management, across all departments.
  • This training is particularly recommended for hybrid or fully remote workers.
  • Routine users of the Microsoft 365 ecosystem.

Number of participants


Price per participant

Testimonials (3)

Upcoming Courses

Related Categories