Supplemental security awareness

Phishing Defense
Essentials.

Employees practice the pause, inspect, verify, and report decisions that interrupt credential theft, malicious attachments, business-email compromise, and urgent social-engineering requests.

LEARNING OUTCOMES

Replace urgency with a trusted process.

This short course gives employees a repeatable response to suspicious messages and requests. It emphasizes inspection and independent verification instead of asking learners to identify an attack from appearance alone.

01 · PAUSE

Recognize pressure

Notice urgency, secrecy, fear, authority, unusual payment changes, and requests to bypass normal controls.

02 · INSPECT

Check the real signals

Review sender domains, link destinations, attachment context, request patterns, and unexpected account notices.

03 · VERIFY

Use a known channel

Confirm unusual requests through established contact information and the organization's normal approval process.

04 · REPORT

Preserve useful evidence

Use the available reporting control or security channel rather than deleting only or forwarding broadly.

COURSE CURRICULUM

01

Pressure and sender identity

Display-name deception, lookalike domains, account alerts, authority, urgency, and secrecy.

02

Links and trusted destinations

Destination inspection and opening known services independently instead of using an unexpected message link.

03

Attachments and credentials

Unexpected files, password prompts, MFA requests, and safe escalation before opening or entering information.

04

Business-email compromise

Payment changes, executive impersonation, process bypasses, and out-of-band verification.

05

Reporting and assessment

Preserving the original message for security analysis and applying the full decision process in five scenarios.

Scope: Learners should follow their organization's specific reporting channel, incident procedures, and technical controls whenever those instructions are available.

MAKE THE SAFE RESPONSE REPEATABLE

Pause. Inspect.
Verify. Report.

Launch practical phishing defense training and retain completion evidence.

Assign this course View all courses