MSP Success October/November | 页面 30

HOW-TO HUB

Stop the Clicks

What MSPs Should Demand in a Security Awareness Training Solution

With Mike Puglia, General Manager, Kaseya Labs

Nearly 70 % of breaches involve human error, according to the Verizon Data Breach Investigations Report. That means your customers’ end users— not firewalls or EDR solutions— are often the weakest link. A single click on a phishing email or an accidental data share can open the door to costly incidents.

For MSPs, security awareness training( SAT) is no longer a nice-to-have— it’ s a must-have. The right platform can transform users from liabilities into defenders. But what should you look for? Mike Puglia, General Manager, Kaseya Labs, shares his guidance.
1. Automate for Consistency
Repetition is what makes training effective. That’ s why automation should be at the top of your checklist. Puglia says,“ The No. 1 feature to look for in a SAT solution is the ability to automate training campaigns to send on a regular basis. It’ s kind of like working out. You don’ t build muscle memory by doing the workout once a year or once a quarter.”
2. Keep It Short and Engaging
Users won’ t sit through long training sessions. Look for platforms with a large library of bite-sized lessons, Puglia advises.“ Two- to 10-minute videos that are fun and entertaining can help build that muscle memory because they see them, they take them, they remember it.”
3. Phishing Simulations Should Be Built-In
Measuring the percentage of users that fall for phishing is a good indicator of a company’ s security culture, Puglia says, so look for a program that has built-in phishing simulation. It should also be able to generate reports on which users opened the phishing email, clicked on links, or filled out fake forms.“ It’ s not about embarrassing someone, but you want to have some way to understand how prevalent it is,” Puglia says.
4. Customize for Relevance and Relationship Building
Off-the-shelf training only goes so far.“ Having the ability to customize and send your own messages as part of the training
30 | MSPSUCCESS. COM