{"id":41805,"date":"2021-05-18T14:10:51","date_gmt":"2021-05-18T14:10:51","guid":{"rendered":"https:\/\/stg.cira.ca\/small-teams-admin-guide\/"},"modified":"2025-04-17T14:56:49","modified_gmt":"2025-04-17T18:56:49","slug":"small-teams-admin-guide","status":"publish","type":"page","link":"https:\/\/stg.cira.ca\/en\/small-teams-admin-guide\/","title":{"rendered":"Small Teams &#8211; Admin Guide"},"content":{"rendered":"<p><!-- START IMPORTED DRUPAL CONTENT --><\/p>\n<div class=\"media_card\">\n<div class=\"copy\">\n<h2>How do phishing simulations work?<\/h2>\n<p>Phishing simulations are written and designed to look like real phishing emails.<\/p>\n<p>When a user receives a suspicious email, they should forward it to <strong>&lt;YourTenantID&gt;@ciratraining.ca<\/strong><\/p>\n<p><strong>If the email was a simulation<\/strong>&nbsp;from the training platform, they will get an auto-reply email immediately,&nbsp;saying congratulations, you &#8220;caught a phish&#8221; and their risk score will improve.&nbsp;If a user clicks on the link in the phishing simulation, they will be assigned a remedial&nbsp;course.<\/p>\n<p><strong>If it was not a simulation<\/strong>, they will get an email providing guidance on what to do next.<\/p>\n<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"copy\">\n<hr>\n<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"copy\">\n<h2>What will the initial&nbsp;training look like?<\/h2>\n<p>Users will:<\/p>\n<ul>\n<li><strong>Complete a survey:&nbsp;<\/strong>Users will answer questions on their cybersecurity behaviours and perceptions (e.g. &#8220;Have you shared your work password with someone else?&#8221;).&nbsp;<\/li>\n<li><strong>Take four courses:&nbsp;<\/strong>Users will learn cybersecurity basics and take a short quiz at the end of each course.<\/li>\n<li><strong>Get sent three simulated phishing emails<\/strong>: Three phishing simulation emails will be sent to them, and the user can forward them to a phish forward address.<\/li>\n<\/ul>\n<p>These activities determine a&nbsp;<strong>baseline risk scor<\/strong><strong>e&nbsp;<\/strong>for each user, which will go up and down over time, based on their interactions with automated monthly phishing tests.<\/p>\n<p>The admin can view the risk score&nbsp;for each user and the average score for their entire organization, and access reports which provide&nbsp;guidance on how to reduce cyber risk.<\/p>\n<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"infogram-embed\" data-id=\"phish-workflow-1hxr4zx0qnloq6y?live\" data-type=\"interactive\" data-title=\"\"><\/div>\n<div class=\"copy\">&nbsp;<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"copy\">\n<hr>\n<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"copy\">\n<h2>What ongoing training will users receive?<\/h2>\n<p>To keep cybersecurity top-of-mind, users will be assigned a course every two months. A few days after a user completes the course, they will receive a phishing email that relates to the course material.<\/p>\n<h3>Monthly phishing<\/h3>\n<p>Users will also receive an automated&nbsp;phishing test (randomly selected from a bank) once per month. If a user &#8220;passes&#8221; a phishing test by reporting it, they will receive progressively more difficult phishing tests. If a user clicks on a link in a phishing test, they will automatically be assigned a remedial training course, giving them the opportunity to improve their risk score.<\/p>\n<h3>Admins can assign more courses at any time<\/h3>\n<p>There are over 100 courses available in the library (to view, go to Education &gt; Courses) \u2013 if you see a course that covers a cybersecurity topic applicable to your workplace, click on Actions &gt; Assign. Users can also self-enroll.<\/p>\n<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"infogram-embed\" data-id=\"small-teams-course-timeline-cyber-1h7j4dvnwpz994n?live\" data-type=\"interactive\" data-title=\"\"><\/div>\n<div class=\"copy\">&nbsp;<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"copy\">\n<hr>\n<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"copy\">\n<h2>As an admin, what data can you view?<\/h2>\n<p>When you log into the platform as an admin, the dashboard shows data from the past&nbsp;30 days.&nbsp;<\/p>\n<p>Here are some reports we recommend admins check out to analyze training progress and identify cyber risks:&nbsp;<\/p>\n<ul>\n<li><strong>Awareness and Education Report: <\/strong>Displays information about the current education status of your organization. Additionally, you&#8217;ll see information about the average time to complete training, average scoring.<\/li>\n<li><strong>Course Summary Report:<\/strong> Displays all courses assigned\/taken by that user in the division.<\/li>\n<li><strong>Onboarding Summary Report: <\/strong>Provides a summary of where your users are in their education process.<\/li>\n<li><strong>Security Dissonance Repo<\/strong><strong>rt: <\/strong>Displays the alignment of perceptions across multiple layers of your organization. On the area chart, you&#8217;ll see the perception overlap between senior management, IT security, and the on-the-ground reality in four key areas: Governance, Awareness, Technology, and Culture.<\/li>\n<li><strong>Phishing Simulation Report: <\/strong>An in-depth analysis of the phishing simulations being sent out to your users. The report highlights the click rate, report rate, and specific statistics by division and phishing template.<\/li>\n<\/ul>\n<\/div>\n<\/div>\n<div class=\"media_card\">\n<p><img decoding=\"async\" src=\"https:\/\/stg.cira.ca\/uploads\/2023\/01\/CIRA-CAT-Phishing-mockup-4.png\" alt=\"CIRA CAT Mockup - Phishing\"><\/p>\n<div class=\"copy\">&nbsp;<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"copy\">\n<hr>\n<\/div>\n<\/div>\n<div class=\"media_card\">\n<div class=\"copy\">\n<h2>How can I analyze platform data and keep users engaged?<\/h2>\n<p>Our guide for implementing training describes how to <a href=\"#analyze\">analyze platform data<\/a> and provides some ideas to&nbsp;<a href=\"#keep\">keep users engaged<\/a> in training to keep cybersecurity top of mind.<\/p>\n<\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>How do phishing simulations work? Phishing simulations are written and designed to look like real phishing emails. When a user receives a suspicious email, they should forward it to &lt;YourTenantID&gt;@ciratraining.ca If the email was a simulation&nbsp;from the training platform, they will get an auto-reply email immediately,&nbsp;saying congratulations, you &#8220;caught a phish&#8221; and their risk score [&hellip;]<\/p>\n","protected":false},"author":11,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_acf_changed":false,"content-type":"","inline_featured_image":false,"ngg_post_thumbnail":0,"slim_seo":{"title":"Small Teams - Admin Guide - CIRA","description":"How do phishing simulations work? Phishing simulations are written and designed to look like real phishing emails. When a user receives a suspicious email, they"}},"category":[664],"class_list":["post-41805","page","type-page","status-publish","hentry","cira_category-cybersecurity"],"acf":[],"publishpress_future_action":{"enabled":false,"date":"2026-06-10 21:01:28","action":"change-status","newStatus":"draft","terms":[],"taxonomy":"translation_priority","extraData":[]},"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/stg.cira.ca\/en\/wp-json\/wp\/v2\/pages\/41805","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/stg.cira.ca\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/stg.cira.ca\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/stg.cira.ca\/en\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/stg.cira.ca\/en\/wp-json\/wp\/v2\/comments?post=41805"}],"version-history":[{"count":2,"href":"https:\/\/stg.cira.ca\/en\/wp-json\/wp\/v2\/pages\/41805\/revisions"}],"predecessor-version":[{"id":398009,"href":"https:\/\/stg.cira.ca\/en\/wp-json\/wp\/v2\/pages\/41805\/revisions\/398009"}],"wp:attachment":[{"href":"https:\/\/stg.cira.ca\/en\/wp-json\/wp\/v2\/media?parent=41805"}],"wp:term":[{"taxonomy":"cira_category","embeddable":true,"href":"https:\/\/stg.cira.ca\/en\/wp-json\/cira\/v1\/category?post=41805"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}