Train for industry threats & requirements
Prepare every employee with role-based training
Do you have role-based training requirements? With role-based training, you can help your payroll department identify financial threats, teach executives to recognize whaling attacks and reinforce secure coding practices with your engineering team.

Frequently asked questions
-
What is compliance training for cybersecurity?
-
Compliance training is employee education required by legislation or regulations. Compliance training may also refer to education mandated or recommended via industry standards, frameworks or internal policies. Although some compliance mandates specify training topics or types, many include general requirements (e.g., provide annual security awareness training for all employees).
-
-
My organization is required to provide security awareness training for every employee. Does Infosec IQ cover this requirement?
-
Yes. The Infosec IQ security awareness and simulated phishing platform includes everything you need to deliver — and document — security awareness training for all employees and prove compliance.
-
-
How can I achieve NIST Cybersecurity Framework compliance for security awareness training?
-
The NIST Cybersecurity Framework is a voluntary set of standards, guidelines and best practices to help organizations manage cybersecurity-related risk. The Framework outlines five core functions used to help organizations organize basic cybersecurity activities: Identify, Protect, Detect, Respond and Recover. The Protect function identifies security awareness training as a key component to an effective cybersecurity program.
To align with NIST recommendations, organizations should ensure “personnel and partners are provided cybersecurity awareness education and are trained to perform their cybersecurity-related duties and responsibilities consistent with related policies, procedures, and agreements.”
NIST provides guidance on security awareness and training topics in its special publications and encourages organizations to train employees on phishing, social engineering, password security, safe web browsing, physical security and more.
All Infosec IQ security awareness training content is mapped to the NIST Cybersecurity Framework and special publication recommendations to make it easy for any organization to build an effective employee training program into their cybersecurity strategy.
-
-
How can I fulfil mandatory security awareness training while keeping my training program fun and engaging?
-
Mandatory security awareness training doesn’t have to be boring. The most effective security awareness training blends training topics and best practices with relevant scenarios, engaging storytelling and relatable characters. This allows you to keep employees engaged and inspire behavior change while accounting for compliance requirements.
-
Select training by standards & regulations
-
C-TPAT
-
Customs-Trade Partnership Against Terrorism
-
-
CCPA
-
California Consumer Privacy Act
-
-
CJIS
-
Criminal Justice Information Services
-
-
COPPA
-
Children’s Online Privacy Protection Act
-
-
CPNI
-
Customer Proprietary Network Information
-
-
EFTA
-
Electronic Funds Transfer Act
-
-
FACTA
-
Fair and Accurate Credit Transactions Act
-
-
FAR | DFARS
-
Federal Acquisition Regulation
Defense Federal Acquisition Regulation Supplement
-
-
FCPA
-
Foreign Corrupt Practices Act
-
-
FERPA
-
Family Educational Rights and Privacy Act
-
-
FINRA
-
Financial Industry Regulatory Authority
-
-
GDPR
-
General Data Protection Regulation
- Privacy and EU GDPR
- GDPR – Breach Notification (Video)
- GDPR – Consequences of Non-compliance (Video)
- GDPR – Important Definitions (Video)
- GDPR – Rights of the Data Subjects (Video)
- GDPR – What Is GDPR? (Video)
- GDPR for Data Processors
- GDPR for Executives
- GDPR for Managers
- Need to Know: Privacy by Design
-
-
GLBA
-
Gramm–Leach–Bliley Act
-
-
HIPAA | HITECH
-
Health Insurance Portability and Accountability Act
Health Information Technology for Economic and Clinical Health Act
- HIPAA HITECH
- Introduction To HIPAA
- HIPAA Minimum Necessary Standard
- HIPAA/HITECH for Healthcare Executives
- HIPAA/HITECH for Healthcare Managers
- Ransomware and HIPAA
- PHI Definition
- PHI Life Cycle
- PHI Policy
- Physical Security and PHI
- Removable Media and PHI
- Consequences of PHI Release
- Breach Notification for Healthcare Managers
-
-
IRC 6103
-
Internal Revenue Code 6103
-
-
ISO 27001
-
Information Security Management Standard
-
-
NIST 800-171
-
National Institute of Standards and Technology Special Publication 800-171
-
-
PCI DSS
-
Payment Card Industry Data Security Standard
-
-
PIPEDA
-
Personal Information Protection and Electronic Documents Act
-
-
Privacy Act of 1974
-
SOC2
-
Service Organization Controls 2
-
-
SOX
-
Sarbanes–Oxley Act
-
-
SSA 1106
-
Social Security Act Section 1106
-