#SecurityTraining

OWASP Foundationowasp@infosec.exchange
2025-06-04

๐ŸŽŸ๏ธ EARLY BIRD TICKETS ON SALE NOW!

Get ready for the ultimate cybersecurity experience at the OWASP Global AppSec US Conference, happening November 3โ€“7, 2025 in Washington, D.C.

Training Dates: Nov 3โ€“5, 2025
Conference Dates: Nov 6โ€“7, 2025

owasp.glueup.com/event/131624/

#OWASP #AppSecUSA #CyberSecurityConference #OWASP2025 #Infosec #AppSec #SecurityTraining #EarlyBird #WashingtonDC

LBHustonlbhuston
2025-06-03

Employee cybersecurity training is no longer optional, it's a critical line of defense against ever-present digital threats

Read more ๐Ÿ‘‰ lttr.ai/AfDd7

Overture Rede Private LimitedOvertureRede
2025-05-26

Master real-world attack strategies to defend smarter. Train offensively, protect proactivelyโ€”with Overture Rede. ๐Ÿ”๐Ÿ’ป

๐Ÿš€ Start your journey with Overture Rede!
๐Ÿ“ฉ resumes@overturerede.zohorecruitmail.in
๐Ÿ“ฑ WhatsApp: +91-9582224661
๐Ÿ”— Apply: zurl.co/LJ7gD

Paul Reynolds :verified:ren@infosec.exchange
2025-05-25

This week I've been:

โœ… Finalising a strategic partnership with a vulnerability assessment company
โœ… Creating video-based security training that people actually want to watch
โœ… Conducting Cyber Essentials assessments (yes, they still catch critical gaps!)
โœ… Providing technical leadership to growing companies
โœ… Deep-diving into AWS security best practices

Cybersecurity isn't just about the latest tools or threats โ€“ it's about building security into the fabric of how organisations operate.

The manufacturing client who was eager to learn despite having basic gaps impressed me more than the financial services firm with all the right tools but inconsistent processes.

Security culture > Security technology. Every time.

Three things that stood out this week:

๐ŸŽฏ Cyber Essentials still matters โ€“ Even "basic" frameworks catch significant vulnerabilities when properly implemented
๐ŸŽฅ Training works when it's human โ€“ Scenario-based learning beats policy recitation every single time
โ˜๏ธ "Security as code" is the future โ€“ Treating security configurations with the same rigor as application code

The variety in this field never stops amazing me. In five days I touched business development, content creation, regulatory compliance, technical consulting, and professional development. Each area informed the others in ways that wouldn't be possible in a more specialised role.

Question for my network: What's been the most surprising security challenge you've encountered recently? I'm always curious about the problems others are solving.

Full weekly roundup here: paulreynolds.uk/weekly-roundup

#CyberSecurity #InfoSec #SecurityLeadership #CyberEssentials #CloudSecurity #SecurityTraining

2025-05-18

๐ŸŽฃ Social Engineering Cheatsheet: Understand the Human Attack Surface

Social engineering targets human behavior โ€” not just systems. This cheat sheet outlines common tactics used in awareness training and authorized red team simulations.

๐Ÿง  Top Social Engineering Techniques (for educational use):

1. Phishing โ€“ Deceptive emails that trick users into clicking links or revealing credentials

2. Spear Phishing โ€“ Targeted emails with personalized content

3. Vishing โ€“ Voice-based phishing (e.g., fake IT support calls)

4. Smishing โ€“ Malicious SMS/text messages

5. Pretexting โ€“ Creating a fabricated scenario to gain trust

6. Baiting โ€“ Leaving infected USBs or tempting downloads

7. Tailgating โ€“ Gaining physical access by following authorized personnel

8. Quid Pro Quo โ€“ Offering something (e.g., IT help) in exchange for access

๐Ÿ” Defense Tips:
โ€ข Train employees with real-world scenarios
โ€ข Enforce multi-factor authentication (MFA)
โ€ข Validate requests before sharing info
โ€ข Encourage reporting of suspicious activity

Disclaimer: This content is for educational and awareness purposes only. It is not intended to promote or support unauthorized manipulation or access.

#SocialEngineering #CyberSecurity #InfoSec #SecurityAwareness #Phishing #RedTeamReady #EducationOnly #HumanFirewall #SecurityTraining

Sasha the Dancing Flamingosashatheflamingo@infosec.exchange
2025-01-12

๐ŸŽ“ Want to share your security knowledge at @bsideschicago 2025?

Whether you've led workshops before or have always wanted to try teaching - we want to hear from you! Security is built on knowledge sharing, and YOUR expertise could help others level up their skills.

Never given a workshop? Don't let that stop you. Some of our best sessions have come from first-time presenters sharing their unique perspectives and hands-on experience.

Mark your calendar: The Workshop day for BSidesChicago is happening October 31, 2025. (Conference is Nov 1) Start brainstorming your workshop ideas now!

#BSidesChicago #InfoSec #CyberSecurity #SecurityTraining

Fake Scrum Stats Memes & HumorFakeScrumStats@techhub.social
2025-01-06

It's that time of year again to spend a few hours on the same training videos you did last year, and the year before, and the year before that, etc...

#scrum #scrumteam #dev #developer #qa #scrummaster #productowner #hrtraining #humanresources #securitytraining #corporatesecurity #corporatetraining #Meme #memes #Humor

A large group of angels looking down at the Earth

Caption: My ancestors watching me make an impact on the world by taking the same HR-mandated security training yet again this year
Sasha the Dancing Flamingosashatheflamingo@infosec.exchange
2024-12-08

๐Ÿฆฉ Living the HIGH life in DOHA!

Fun fact: Qatar's Doha airport has a 23-foot tall teddy bear lamp that weighs 35 tons! Even a flamingo feels small next to that one ๐Ÿ˜…

Speaking of larger-than-life experiences - your girl just lived it up in a Qatar Airways First Class suite! Who knew a dancing flamingo could travel so fancy? Catching some Z's at 40,000 feet before bringing my security training (and dance moves) to Hyderabad!

Next stop: India ๐Ÿ‡ฎ๐Ÿ‡ณ
Because even fancy flamingos have work to do!

#SashaTheFlamingo #QatarAirways #FirstClass #GlobalFlamingo #SecurityTraining
โœˆ๏ธ๐Ÿ‘‘๐Ÿ’ƒ

Cyber Tips Guidecybertipsguide
2024-11-11

Are phishing simulations hurting cybersecurity? New research challenges traditional methods, suggesting a focus on reality-based training. However, studies show up to 87% improvement in phishing awareness after training. What's your take?

| ๐Ÿ‘‰ zurl.co/dTeo

LINUXexpert.orglinuxexpert
2024-07-22

Cyber threats are becoming more advanced every day, making it crucial to stay informed and prepared. Social engineering and deepfake attacks are two significant concerns that require robust security measures.
linuxexpert.org/cybersecurity-

ITSPmagazine ๐ŸŽ™๏ธโœจ:verified:ITSPmagazine@techhub.social
2024-05-31

๐ŸŽ™๏ธ โœจ A new episode has been published on @ITSPmagazine

Show: Redefining CyberSecurity With @seanmartin

Episode: The Art of Security Education: Security 101 Training Essentials

Guest: Sarah Young

Podcast format: Video & Audio

#cybersecurity #securitytraining #podcast

Enjoy!

๐Ÿ‘‰ itsprad.io/redefiningcybersecu

To learn more about Sean and this podcast, visit the page here
๐Ÿ‘‡
itspmagazine.com/sean-martin

East Africa Hi Tech Solutionseastafricahitechsolutions
2024-05-16

Cyber Security Awareness & Training for Corporates.

Arm your staff with the knowledge and skills to:

โœ… Recognize and stop social engineering attacks
โœ… Identify and avoid phishing emails, smishing & vishing scams
โœ… Practice safe data handling & cyber hygiene
โœ… Understand policies for working remotely and BYOD
โœ… Respond appropriately to security incidents
โœ… And develop an overall culture of cyber vigilance

Call 0714883783 or Visit zurl.co/iCD1

2024-02-21

Why do so many people take against actionable low friction security advice?

It seems like a huge chunk of the industry is incapable of doing any form of accurate risk assessment or understand that most people's personal risk tolerance is different to theirs or to a company's. Which is part of the underlying worry for personal security - people are happy with quite high risk/data handover if it's low friction (because low friction is what people want).

But offer simple things for people to do to improve their security a little, like using bookmarks, any form of password manager with autofill etc seems to cause rage with people diving in with how autofill is the devil, edge cases, people should assess links etc.

No.

Low friction. Easy. Implementable by someone with few tech skills. Stuff that makes their day to day easier and faster. Those WILL get used by people. High friction/high skills based things WILL NOT get used. Most people are not high risk of being personally targeted. Most people can benefit from using bookmarks and password managers.

Some security is better than none. What this industry is doing is making security so complex and high friction that people will have zero security because it's too hard.

Make security low friction. Make it easy. BE HAPPY THAT PEOPLE CAN DO SOME SECURITY even if you personally like to live with a million complex set ups.

Your risk appetite is not the same as anyone else's.

#criticalthinking #infosec #infobex #education #training #dobetter #cybersecurity #security #securityawareness #informationsecurity #cybersecurityawareness #cyber #tech #cybersecuritytraining #securitytraining #risk #riskmanagement

2023-12-26

If you're running business, it's compulsory to be aware in cybersecurity. This guide might be a good place to start with.

oothoughts.com/articles/cybers

#oothoughts #cybersecurity #cyberattacks #securitytips #business #securitytraining #preventionmethods

Yโ€™all, I love my employees. I had another instance of an end user self reporting a phish success as fast as my security alert tripped. They reset their own password while waiting for us to get on the line.

Toxic phishing training and anti-user attitudes can screw right off into orbit and transfer straight into the sun.

#phishing #infosec #securitytraining

2023-11-01

There are some well-known reasons why gamification is considered to be a good tool for cyber security training and awareness programs.

There are also some misconceptions about gamification that tend to lead people to dismiss the approach.

In today's live Cyber Security Awareness Forum panel discussion, we'll dig into "The pros and cons of gamification in a security awareness program"

Joing us at 1pm EDT today (Wednesday, November 1), and bring your questions or comments...

us02web.zoom.us/webinar/regist

#csaf #cybersecurityawarenessforum #gamification #securityawareness #securitymanagement #riskmanagement #securitytraining

2023-09-26

๐Ÿ” Elevate Your Cyber Defense with Udemy's "Building Cyber Threat Intelligence Operations for Organizations" course!

๐Ÿ›ก๏ธ Gain insights into proactive threat hunting, incident response, and cutting-edge tools. Arm yourself with the skills to safeguard against evolving cyber threats.

udemy.com/course/building-cybe

2023-09-23

Are you ready to take your cybersecurity skills to the next level and stay one step ahead of cyber adversaries? ๐Ÿš€

Introducing our ๐Ÿ”ฅ "Cyber Threat Intelligence Mastery Course" ๐Ÿ”ฅ, where you'll unlock the secrets of the digital battlefield and become a cyber sentinel! ๐Ÿ›ก๏ธ

udemy.com/course/building-cybe

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst