Home  /  Tracks  /  General Workforce
Track 03 · Workplace Security Hygiene

Everyday habits that quietly protect the entire business.

Most employees were simply never taught what to look for. This track builds practical, everyday security hygiene for every member of staff — tailored to what each department actually does, so it sticks.

The ten core modules

Awareness for everyone, at exactly the right depth

Phishing, smishing & business email compromise

Spotting suspicious emails, links, texts and impersonation attempts.

Passwords & multi-factor authentication

Strong, unique credentials — and why MFA stops most account takeovers.

Safe browsing & downloads

Recognising unsafe sites, fake updates and malicious attachments.

Protecting company & customer data

Handling sensitive information correctly — storing, sharing, disposing.

Device & document handling

Locking screens, clean desks, secure storage and safe disposal.

Safe remote & mobile working

Public Wi-Fi, personal devices and working securely outside the office.

Social engineering & impersonation

The psychology of manipulation — and the discipline to slow down and verify.

Physical security awareness

Tailgating, visitor control and protecting what's on screen and on paper.

Reporting incidents quickly

What to report, how, and why early reporting limits the damage.

AI-driven deception

Deepfakes, cloned voices and AI-generated fraud — the new everyday threat.

Tailored by department

The same module, sharpened to each team's reality

Department-relevant training changes behaviour. Here is how the hygiene track flexes across your organisation.

Finance

Money is the target

Wire-fraud and invoice-redirection defence, approval discipline and supplier-change verification.

HR

People & private data

Recruitment scams, malware in CVs, candidate-data privacy and confidential records.

IT

Keys to everything

Access oversight, joiner-mover-leaver hygiene and least-privilege habits.

Security

Eyes on the threat

Recognising and escalating early indicators, monitoring discipline and readiness.

Facilities

The physical layer

Access control, tailgating, visitor management and protecting devices on-site.

Customer Service

The voice on the line

Caller manipulation, identity verification and avoiding accidental disclosure.

Sales & Operations

Secure on the move

Travel safety, public-network risk and secure data handling in the field.

Legal & Compliance

Duty & evidence

Regulatory exposure, breach-notification duties and preserving evidence.

Leadership & Admin

High-value targets

Executive impersonation, deepfake awareness and verifying urgent requests.

Hands-on, even here

Your staff don't just hear about phishing. They hunt it.

Every workforce session includes live exercises: a simulated inbox to triage, red flags to spot, and a verify-or-act decision to make. Try the exact challenge your staff would.

Open the Phishing Inbox Challenge