KnowBe4 is a security awareness and compliance training and simulated social engineering product. It is used by organizations worldwide to strengthen their security culture and reduce human risk. The product includes a comprehensive suite of awareness and compliance training, real-time user coaching, AI-powered simulated social engineering, crowdsourced anti-phishing defense and an AI suite that enhances human risk management through personalized training and automation. With…
$0.95
per month (billed annually) per seat
Sophos Phish Threat
Score 8.3 out of 10
N/A
Sophos offers security awareness and phishing training and preparation testing via Sophos Phish Threat, the company's phishing attack simulator.
I don't have any frame of reference for comparison, but the training that I have used has proved impactful for my staff. Since starting KnowBe4 training, we've seen a great increase in the number of phishing attempts, but also a great increase in the number of attempts that have been recognized by staff, and we have thus not been the victim of phishing or other cyberattact vectors
If you're looking for a tool to maximize digital productivity without hindering the effectiveness of your workforce, Sophos is a great tool. It quickly & safely manages the threat level across all of our digital channels to reduce the potential engagement with fishy characters or websites that might present vulnerabilities.
Campaign settings are overwhelming and non-intuitive
While the domains available for sending phishing emails are numerous, they are still often obviously fake
Certain features are locked away behind paid addons, when they should be incorporated in the base tool/licence, e.g. PhishER. It's fine that, for example, Compliance+ is an added feature, but PhishER is practically integral to the task KnowBe4 Security Awareness Training performs
I chose 8 because Microsoft has a version of software bundled in Azure that may fulfill our needs. If this software does not measure up then we will be continuing with Knowbe4. They keep their offerings fresh so training is not redundant this is important when asking for engagement from employees
The training videos we have access to are high quality, and provide a wide variety. The Inside Man videos has a cult following within our organization, and has driven a much greater interest in security awareness. And KB4's willingness to negotiate pricing for us as a nonprofit has been very valuable to us as well.
It is easy to use and setup. You can schedule the Phish email test to be sent out in the future or right away. You can also send to all users in your list as well as stagger so all users do not get the email at the same time and tell each other there is a test going on
There have only been a handful of outages in the 2 years we have had the product. Even during those instances, parts of the system were still operational
Pages load quickly, filter/sort quickly, and don't slow down or freeze. Everything is smooth and very easy to use. There are a places in the UI where you can forget how to get there, but other than that everything is great. We have had no issues using any part of the website.
Tech prod support is great! I did have to ask for a new customer success rep, needed a more experienced person to match my 12 years of experience running Cybersec training programs. Would suggest that more matching of rep level of knowledge to client level knowledge would help.
Support is solid but not spectacular. While I haven't used support for Phish Threat specifically, this is a general rating for Sophos' support across the board. It could be easier to find the FAQ or other information I need, but when I've needed to reach out to support they've been good to work with.
confusing question. I inherited this application so I didnt get any formal training other than the person who was leaving. The CSM provided some later on when I asked in a zoom call
The implementation went really well and KnowBe4 was there the whole time on setup to make sure things were setup correctly. The only thing we had to figure out on our own was to script users automatically being added to security groups. So that when they sync to knowBe4 from AD they are placed into the same/correct groups.
KnowBe4 offered a significantly more favorable cost-benefit ratio compared to other solutions. Its seamless integration with our existing infrastructure—particularly Active Directory and email systems—was the most compatible with our operational and security requirements.
We selected Phish Threat because it was an easy to use add-on for our existing Sophos solution. By having it integrated into our existing antivirus, email, and encryption suite it allowed for a single pane of glass management in addition to robust total reporting of what users and computers we need to be most concerned about.
The product scales greatly. As long as you upgrade the license to support the number of users you are needing, adding in those new users is easy. Also getting those users set up with trainings/campaigns is very easy as well
There is really no way one can make all the needed trainings with in house resources anymore! The cost for this would be way way more than that of any platform!
There is no way to even calculate the damage a company would suffer in case of a cybersecurity breach! So the cost for the use of the KnowBe4 Security Awareness Training platform if minimal compared to that of a possible breach!
The cost of creating content for security awareness training is no longer realistic for a company. This is really no option, and it is in no way comparable to the cost of access to the training material available in the KnowBe4 Security Awareness Training platform. Also the training content needs to be constantly updated!