Get in Touch
 Duration 14 hours

Course Outline

Core Concepts, Social Engineering, and the Work Environment

Module 1: Cybersecurity Fundamentals for Employees

  • Understanding threats: The definition of cybersecurity and the critical role of every employee.

  • Digital hygiene and password management: Strategies for creating strong credentials, utilizing password managers, and adhering to unique password rules per service.

  • Clear desk and clear screen protocols: Implementing physical information security within office spaces.

Module 2: Phishing and Social Engineering – Threat Recognition

  • The psychology behind attacks: Understanding social engineering and why cybercriminals exploit urgency, fear, or authority (e.g., CEO Fraud, BEC).

  • Deconstructing phishing: Analyzing message headers, concealed links, and malicious attachments through exercises based on real-world examples.

  • Alternative attack vectors: Recognizing vishing (voice phishing) and smishing (SMS phishing).

Module 3: Securing Remote and Mobile Work

  • Network security: The risks of public Wi-Fi (cafes, trains) and the correct application of VPNs.

  • Device protection: Implementing disk encryption, screen locks, and avoiding unauthorized USB drives.

  • Bring Your Own Device (BYOD) policy: Guidelines for using personal smartphones for business and maintaining data separation.


Tools, Regulatory Compliance, and Incident Response

Module 4: Cybersecurity within the Microsoft 365 Ecosystem

  • Authentication and verification: Practical application of Multi-Factor Authentication (MFA/2FA) for account access.

  • Secure data sharing: Managing file and folder permissions in OneDrive and SharePoint to prevent insecure 'anyone with the link' access.

  • Communication and collaboration: Secure usage of Microsoft Teams, including managing external guests and shared file controls.

Module 5: Personal Data Protection and GDPR in Practice

  • Information classification: Distinguishing between public, confidential, sensitive, and personal data.

  • GDPR in daily workflows: Avoiding common pitfalls that lead to data breaches, such as incorrect recipients or failure to use BCC.

  • Data sharing and disposal: Protocols for securely transferring information to third parties and permanently deleting documents.

Module 6: Managing Security Incidents

  • Identifying incidents: Recognizing breaches such as lost devices, ransomware infections, or accidental clicks on phishing links.

  • Reporting protocols: Understanding who to notify and the required timeframes, including the roles of the IT Helpdesk, Security Officer, and Data Protection Officer.

  • Response best practices: Disconnecting affected devices, maintaining calm, and strictly avoiding DIY fixes or deletion of evidence.

Requirements

  • Foundational proficiency with computers and web browsers.

  • Routine engagement with standard office tools, including email, messaging applications, and document processing software.

  • No specialized IT background is necessary; all technical concepts are contextualized through business value and everyday workflows.

Target Audience

  • Office staff, administrative personnel, and mid-level management across all departments.
  • Especially recommended for professionals working in hybrid or fully remote environments.
  • Regular users of the Microsoft 365 ecosystem.

Testimonials (3)

Upcoming Courses

Related Categories