Get in Touch
 Duration 14 hours

Course Outline

Foundations, Social Engineering, and the Work Environment

Module 1: Cybersecurity Essentials for Staff

  • Introduction to threats: Understanding cybersecurity and the critical role of every employee.

  • Digital hygiene and password management: Creating robust passwords, utilizing password managers, and adhering to the “unique password per service” principle.

  • Clear desk and clear screen policies: Implementing physical information security within the office.

Module 2: Phishing and Social Engineering – Spotting Threats

  • The psychology of attacks: Understanding social engineering and why cybercriminals exploit urgency, fear, or authority (such as in CEO Fraud or BEC scenarios).

  • Anatomy of phishing: Analyzing message headers, hidden links, and malicious attachments through exercises based on real-world examples.

  • Additional attack vectors: Covering vishing (voice phishing) and smishing (SMS phishing).

Module 3: Secure Remote and Mobile Work

  • Network security: Understanding the risks of public Wi-Fi (e.g., in cafes or transit) and proper VPN usage.

  • Device protection: Implementing disk encryption, screen locks, and avoiding unknown USB drives.

  • Bring Your Own Device (BYOD) policy: Guidelines for using personal smartphones for business and ensuring data separation.


Tools, Law, and Incident Response

Module 4: Cybersecurity within Microsoft 365

  • Authentication and verification: Practical application of Multi-Factor Authentication (MFA/2FA) for secure account access.

  • Secure data sharing: Managing file and folder permissions in OneDrive and SharePoint to avoid excessive “anyone with the link” access.

  • Communication and collaboration: Safely using Microsoft Teams, including managing external guests and controlling shared files.

Module 5: Personal Data Protection and GDPR in Action

  • Information classification: Distinguishing between public, confidential, sensitive, and personal data.

  • GDPR in daily work: Identifying common errors that lead to data breaches, such as sending emails to incorrect recipients or failing to use BCC.

  • Data sharing and disposal: Following rules for securely transferring information to third parties and permanently deleting documents.

Module 6: Handling Security Incidents

  • Incident identification: Recognizing breaches, such as lost devices, ransomware locks, or accidental clicks on phishing links.

  • Reporting procedures: Knowing who to notify and the required timeframes, involving the IT Helpdesk, Security Officer, and Data Protection Officer.

  • Key response principles: Disconnecting devices from the network, remaining calm, and avoiding DIY “fixes” or destruction of evidence.

Requirements

  • Familiarity with basic computer operations and web browsing.

  • Routine engagement with standard office tools, including email, messaging applications, and document management systems.

  • No specialized IT background is necessary; all technical concepts are presented through the lens of business impact and daily workflows.

Target Audience

  • Office staff, administrative personnel, and mid-level management across all departments.
  • Especially recommended for hybrid or fully remote employees.
  • Regular users of the Microsoft 365 ecosystem.

Number of participants


Price per participant

Testimonials (3)

Upcoming Courses

Related Categories