Cybersecurity awareness programs play a crucial role in mitigating cyber threats by educating employees about best practices and potential risks. However, many organizations struggle to measure the effectiveness of these programs. This talk will delve into the challenges of making cybersecurity awareness programs practical, focusing on equipping employees with skills rather than simply testing their knowledge. By understanding the factors that contribute to program effectiveness, organizations can partner with employees in addressing cyber security challenges rather than blaming them for security gaps and errors.
Penetration testers and red teamers often rely on a variety of tricks and tips to gain an advantage, but only a few share the truly game-changing insights. In our pen testing and red teaming practice we do not take these techniques from classrooms; we develop them through field experience and enrich them by observing real threat actors while adapting their methods. In this presentation, we’ll cover five such techniques that can produce critical findings and significantly enhance your pen testing and red teaming efforts.