It is unfortunate. The company I work for enrols all employees in training that takes place every month or so (regardless of your role). They also send out fake phishing emails every so often, and those who interact with them are automatically enrolled in additional training. Stats are anonymous, but apparently interactions with those fake phishing emails have drastically reduced. Training absolutely helps, but it needs to be consistent to keep security on everyone’s mind.
Weird that antifishing training isn't a normal requirement for people working with sensitive information.
It is unfortunate. The company I work for enrols all employees in training that takes place every month or so (regardless of your role). They also send out fake phishing emails every so often, and those who interact with them are automatically enrolled in additional training. Stats are anonymous, but apparently interactions with those fake phishing emails have drastically reduced. Training absolutely helps, but it needs to be consistent to keep security on everyone’s mind.