E · Education
Your people are a control too.
Ongoing phishing simulations and security awareness training through usecure. Required from SMB1001 Bronze and increasingly sophisticated at higher tiers.
What's included.
A complete managed awareness programme: simulations, training, policy sign-off and evidence records all in one place.
Realistic phishing campaigns that test your people without putting the business at risk. Full reporting on click rates, credential submission and reporting behaviour.
Short, engaging training modules delivered via usecure. Covers phishing, password hygiene, social engineering, data handling and more.
Staff sign-off on your security policies tracked and recorded. Auditable evidence for your SMB1001 evidence pack.
Full training history per user, exportable for compliance evidence. Automatically linked to your CyberGrape Platform compliance module.
Cyber Education
Managed for you, end to end.
Turn your team into the first line of defence.
We handle the setup, campaign management, reporting and follow-up training. You see the results in the CyberGrape Platform: click rates, completion rates, policy acknowledgements: all linked to your compliance programme.
Training records and phishing results are automatically available as evidence in your SMB1001 certification evidence pack. No manual export required.
Inside Education
- Short training modules built around the roles people actually do
- Simulated phishing that teaches rather than embarrasses
- A human risk score, so you can see who needs more support
- Onboarding for new starters that runs itself
Required from SMB1001 Bronze.
Security awareness training is required from SMB1001 Bronze (control 5.1.0.0) through to Diamond. Requirements increase at each tier. Our programme is designed to satisfy all tier requirements and produce the auditable evidence your certifier needs.
Learn about SMB1001 certificationCommon questions.
We deliver awareness training through usecure, a leading security awareness platform. CyberGrape is a licensed usecure partner. Training records flow into the CyberGrape Platform so they appear in your compliance evidence automatically.
Monthly is standard. We vary the templates, sender names and pretexts so your team is continuously tested without becoming desensitised to the same scenario. Repeat clickers get targeted training automatically.
Yes. Security awareness training is required from SMB1001 Bronze (control 5.1.0.0) through to Diamond. The requirements increase at each tier. Diamond requires documented training records and phishing simulation results as part of the evidence pack.
Yes. usecure tracks completion at the individual user level. You can see exactly who has completed each module, who hasn't started and who has clicked on a phishing simulation. All of this is auditable evidence for your certification.
Explore the other bundles
Make your people your strongest control.
Book a free consultation and we will show you how awareness training fits into your SMB1001 certification programme.

