Security awareness training

Help your team recognize threats before they become incidents.

An 11-module workforce program built from documented incidents, controlled technical demonstrations, and the decisions that can interrupt compromise.

Enrolling now
11 modules

Approximately 76 minutes total, self-paced, with an annual refresh and an onboarding assignment for new hires.

Every module

Each module starts with a documented incident, includes a controlled demonstration, and ends with practical ways to reduce the risk.

250+

Environments assessed. The attack paths taught are sourced from that fieldwork.

The method

Think like a spy.

Praeven teaches the tradecraft behind the policy. Every module trains people to think like the person the policy is trying to stop.

See the attacker's perspective

Learners watch a password fall in a recorded cracking demonstration, so the lesson lands as evidence.

Real, documented incidents

Every module connects a documented incident with controls that can interrupt similar attacks.

Built for learning, not punishment

No gotcha simulations and no public shaming. The goal is a workforce that reports early because it feels safe to.

Useful at work and at home

The habits that help prevent business email compromise also help learners protect their families, finances, and identities.

Praeven Tradecraft Series

The 11 modules.

01

Target Package

The Human Perimeter: Security Culture and Individual Accountability

How an adversary researches a person before first contact, illustrated through an open-source reconnaissance demonstration. Establishes the five individual responsibilities and the anticipation standard the series builds on.

02

The Approach

Phishing and Social Engineering: Recognition and Response

The setup phase of every social engineering operation: email, spear phishing, smishing, vishing, and QR lures, including AI-written variants that defeat grammar-based instincts. Teaches the STOP check as the standing habit.

03

Watch a Password Fall

Strong Passwords and Passphrases

A recorded cracking demonstration shows why short, predictable passwords are vulnerable and how long, unique passphrases improve resistance to guessing. Length over complexity per current NIST guidance, no arbitrary periodic password changes (with required changes when compromise is suspected or confirmed), and an approved password manager wherever passwords remain necessary.

04

Beating the Second Lock

MFA and MFA Fatigue

How attackers defeat weak second factors: push-bombing, adversary-in-the-middle pages, and stolen session cookies, demonstrated from the attacker's console. Ranks factors from phishable to phishing-resistant.

05

The Voice on the Line

AI Threats and Deepfakes

How little source material a synthetic voice or video needs, and why the defense is a process rather than a better eye. Out-of-band callback to a directory number, a pre-shared challenge phrase, and dual authorization, executed regardless of who appears to be asking.

06

Know Where Data Lives

Handling Data the Right Way

Four-tier classification and the handling rules that follow from it, with a demonstration of what a compromised endpoint can expose: the passwords file, the cookie store, autofill, and a system fingerprint.

07

Hostile Ground

Safe Browsing and Device Security

Untrusted networks and devices treated as an operating environment. Evil twin access points, external exposure, and the device and identity controls that can limit whether a compromised browser becomes a compromised network.

08

Left in Plain Sight

Acceptable Use, Physical Security, and Clean Desk

What systematic observation of a workspace yields, demonstrated through badge cloning and keystroke injection. A dropped drive is a report to file, not a mystery to solve.

09

The Recruitment Pitch

Insider Threat Awareness: Behavioral Indicators and Reporting

Indicators of negligent, compromised, coerced, recruited, malicious, and third-party insider risk. Framed protectively, never as peer monitoring.

10

Observe and Report

Incident Recognition and Reporting Without Fear

What qualifies as reportable, the quantified cost of delay, and the no-blame standard. Includes the ransomware economy of brokers, affiliates, and leak sites.

11

Standing Posture

Security Commitment: Recap, Assessment, and Attestation

Program recap, final knowledge assessment, and the signed acknowledgment that generates the completion certificate.

Outcome

Practical skills your team can use.

Threat recognition

Learners recognize an approach sooner, rather than after the attack is already in motion.

Verification

Learners identify how to verify a request through an alternative method before acting on it.

Early reporting

Learners build the habit of speaking up: if you see something, say something.

Lifelong habits

Learners build habits that follow them home. These practices help protect learners and their families.

Evidence

Six completion records per learner.

Record types and the fields each one captures.
RecordFields captured
AssignmentLearner identifier, course, assignment date, due date, and administrator.
CompletionStart and completion timestamps, time zone, and completion status.
AssessmentAttempts, final score, passing threshold, and result.
AcknowledgmentAcknowledgment status and the exact text accepted by the learner.
VersionCourse, module, transcript, and export version identifiers.
AdministrationExport date, administrator identity, certificate identifier, and renewal date where applicable.

Evidence an assessor can sample. The six records capture assignment, completion, assessment, acknowledgment, version, and administration detail for each learner, exported for review. Control mappings for common frameworks are available privately on request.

Pricing

Clear annual pricing by team size.

One annual price for your organization, based on workforce size. No usage fees or automatic renewal price increases.

Up to 25

$1,500per year

Up to 50

$2,500per year

Up to 100

$4,000per year

Included at every band

  • All 11 modules, with an annual refresh
  • Onboarding assignment for new hires
  • The six completion records per learner, exportable
  • Organization-specific reporting instructions
  • Scenario selection reviewed against your sector

Current availability

The program is being released as production is completed. Organizations can begin with the available modules and receive each remaining module at no additional charge during the annual term.

Program request

Request the program.

Standard programs use the published pricing. Custom requirements are quoted separately.

Scope

Workforce size, roles, and what is driving the requirement.

Responsibilities

What Praeven delivers and what remains with the customer, stated before any agreement.

Delivery

Hosting, assignment method, accessibility needs, and language requirements.

Evidence

Export format, retention, and how records reach the reviewer.

We typically respond within one business day.
For a single session instead of a program, book a briefing or workshop.

Prepare. Anticipate. Protect.