Social Engineering
This training shows how attackers use social engineering to manipulate people instead of hacking systems. The employee will explore how emotions like urgency, trust, and curiosity are used to trick colleagues into sharing access or sensitive information, whether through emails, phone calls, or face-to-face interactions.
6 mins · 3 Lessons · 3 Quizzes
Get the Free VersionCourse Content
Take Quiz →
Manipulating Humans
Social engineering is a tactic that involves manipulating people to act on a hacker’s behalf - essentially “hacking” humans rather than technologies. This approach aims to gain access to IT systems or confidential data and it is often more effective than exploiting technical vulnerabilities in IT systems. In fact, 2 out of 3 employees engage in risky behaviors, such as clicking links from unknown senders – despite being aware of the dangers.
Different Types of Social Engineering Attacks
Social engineering attacks can occur through any communication channel or in face-to-face interactions. An attack can be generic, targeting a wide audience, or specifically tailored to you.
How to Respond to a Social Engineering Attack?
Social engineering attacks are often subtle, relying on catching you off guard and manipulating your emotions. Your best defence in these situations is to use your awareness. If something feels off, trust your instincts and use the Stop, Think, Verify approach.
Related Courses
View all →
Email (Phishing)
This training teaches the employee how to recognise and respond to phishing emails, one of the most common causes of data breaches in organisations.
Safe Web Browsing
This training helps the employee stay safe while browsing the web by teaching how to spot fake websites, avoid malicious links, and respond correctly to suspicious pop-ups.
Physical Security
This training introduces the basics of physical security and why it matters for protecting the organisation’s devices, data, and documents.
