TrustRadius: an HG Insights company

KnowBe4 PhishER/PhishER Plus Reviews & Insights

Score9.2 out of 10

215 Reviews and Ratings

Top industries

Based on 124 HG Insights installations.

Powered by

Community Insights for KnowBe4 PhishER/PhishER Plus

Synthesised from 8 verified reviews.


Synthesised from 8 reviews | Last Published May 27, 2026


KnowBe4 PhishER/PhishER Plus is primarily used by security and IT teams to strengthen defenses against phishing attacks, focusing on user education, efficient threat remediation, and streamlined incident response. In TrustRadius reviews, a significant use case involves comprehensive phishing simulation and security awareness training, often complemented by the Phish Alert Button for user reporting. Reviewers widely praise its ability to automate and streamline the response to email-based threats, with 38% highlighting its effectiveness in automating suspicious email handling. This automation is crucial for rapid threat removal from multiple mailboxes.

Emerging positives include the platform's integration capabilities and robust data tracking, with popular features like PhishRIP and PhishER Blocklist seeing significant adoption. However, some reviewers noted areas for improvement in user experience, particularly simplifying administration and email template modification. Concerns were also raised regarding customization flexibility and reporting integration with SIEM systems. Despite these, reviewers report positive ROI through significant time savings for security personnel and improved incident response.


  • Automated handling and remediation of suspicious emails
  • Instant threat response and removal from mailboxes
  • Comprehensive phishing training and security awareness resources
  • Significant time savings for security and IT personnel
  • Enhanced incident response and triage processes
  • Complexity in user experience and administration
  • Difficulty modifying email templates
  • Limited customization flexibility for user groups
  • Reporting capabilities and SIEM integration
  • Insufficient automation for handling unknown threats
KnowBe4 PhishER/PhishER Plus offers a handful of capabilities, such as PhishML, PhishRIP, PhishFlip, and PhishER Blocklist, which are designed to help automate remediation of known threats from your users’ mailboxes, turn known phishing email templates into training opportunities, and curate your organization’s own blocklist based on user-reported email threats. Which of these capabilities has your organization implemented?

From 8 reviews | Last Published May 27, 2026

Organizations implementing KnowBe4 PhishER/PhishER Plus frequently leverage its automated remediation capabilities to enhance their cybersecurity posture. PhishRIP emerges as the most commonly adopted feature, with 4 of 8 reviewers indicating its active use for rapidly removing phishing emails from user inboxes. Another key capability, the PhishER Blocklist, is also widely implemented, cited by 3 of 8 reviewers for its utility in building a customized defense against threats. While these specific tools see significant adoption, a smaller proportion of reviewers, 2 of 8, report implementing the full suite of PhishER/PhishER Plus features, appreciating the comprehensive nature of the platform for both threat remediation and training opportunities. The integration of these features allows organizations to streamline their response to user-reported threats and proactively strengthen their email security.

PhishRIP

PhishRIP and PhishER Blocklist

PhishER Blocklist

PhishRIP and PhishER Blocklist

All features implemented

We've implemented all of them.

KnowBe4 PhishER/PhishER Plus is capable of cutting down on incident response noise by identifying and managing messages that actually are threats and those that are not. Please describe how using KnowBe4 PhishER/PhishER Plus has saved your organization time and the benefits/value of the overall time saved.

From 8 reviews | Last Published May 27, 2026

KnowBe4 PhishER/PhishER Plus significantly contributes to organizational efficiency by automating the identification and management of potential email threats, thereby reducing the workload on security teams. A key benefit highlighted by 3 of 8 reviewers is the platform's automated threat identification capabilities, which allow for the swift resolution of reported emails. This automation directly translates into substantial time savings for security personnel, a benefit noted by 3 of 8 reviewers, enabling them to reallocate focus to other critical tasks. Furthermore, the system facilitates faster threat resolution, with 2 of 8 reviewers observing reduced exposure and increased confidence in their email security defenses. The platform also fosters improved user engagement and awareness, as noted by 2 of 8 reviewers, by providing an easy reporting mechanism that educates end-users without consuming excessive work time, further contributing to overall security posture and operational efficiency.

Automated threat identification

The Automation element of the KnowBe4 PhishER/PhishER Plus' PhishRIP has proved invaluable.

Time savings for security team

campaign automation has freed up my time as a support technician, allowing me to focus on other tasks and projects.

Faster threat resolution

The real benefit is more than just time saved—it’s that our team can now move faster when there’s a real phishing threat.

What positive or negative impact (i.e. Return on Investment or ROI) has KnowBe4 PhishER/PhishER Plus had on your overall business objectives?

From 8 reviews | Last Published May 27, 2026

KnowBe4 PhishER/PhishER Plus has demonstrably contributed to positive business outcomes for organizations, primarily by enhancing operational efficiency and strengthening cybersecurity posture. A majority of the 8 reviewers (5 of 8) cited significant time savings, particularly for security and IT personnel, by automating the investigation and remediation of suspicious emails. This efficiency gain directly correlates with improved incident response capabilities, as noted by three of eight reviewers, allowing organizations to detect and neutralize threats more rapidly and reduce their window of risk. Furthermore, the platform has shown a direct financial return, with two of eight reviewers reporting reduced costs, including lower cyber insurance premiums and the prevention of potentially significant financial losses. The system also appears to foster a more proactive security culture, as a quarter of reviewers observed increased user engagement with security awareness, contributing to a more robust overall defense.

Time Savings

Freed security managers from spending hours investigating and manually ripping emails

Improved Incident Response

boosted our incident response efficiency

Reduced Costs

hundreds of thousands most likely

Besides KnowBe4 PhishER/PhishER Plus, what other software do you regularly use? How likely would you be to recommend it to a friend or colleague?

From 8 reviews | Last Published May 27, 2026

An analysis of eight reviews regarding software recommendations beyond KnowBe4 PhishER/PhishER Plus indicates a limited consensus on alternative tools. While the question sought general recommendations, only one specific software suite, Microsoft 365, emerged as a notable mention. This was cited by 25% of the reviewers (2 of 8), suggesting it is a familiar and integrated part of their operational environment rather than a direct competitor or complementary tool to the primary subject. The lack of other frequently named applications in this small sample implies either a highly diverse set of individual preferences or that reviewers primarily focused on foundational business productivity tools when prompted for general software usage. No other distinct software solutions garnered sufficient mentions to establish a trend or widespread recommendation within this specific review set, highlighting the narrow scope of shared tools beyond the core security platform.

Microsoft 365

Microsoft 365

Describe how you use KnowBe4 PhishER/PhishER Plus in your organization. What are the business problems the product addresses and what is the scope of your use case?

From 8 reviews | Last Published May 27, 2026

KnowBe4 PhishER/PhishER Plus is primarily utilized by organizations to bolster their defenses against phishing attacks, addressing business problems related to user education, efficient threat remediation, and streamlined incident response. A significant use case, cited by 5 of 8 reviewers, involves comprehensive phishing simulation and security awareness training, which helps identify vulnerabilities and educate users on how to handle suspicious emails. This training is often complemented by the Phish Alert Button (PAB), highlighted by 4 of 8 reviewers, which allows employees to easily report potential threats directly from their inboxes. The product's automated email remediation capabilities, also noted by 5 of 8 reviewers, are crucial for rapidly removing identified threats from multiple mailboxes, significantly reducing manual effort and response times. Furthermore, 3 of 8 reviewers emphasize the platform's role in enhancing incident response and triage processes, providing a centralized system for reviewing reported threats and improving overall cybersecurity posture. The integration of these features creates a robust ecosystem for managing and mitigating phishing risks.

Phishing Simulation and Training

We use the Phish testing. We run regular tests against our users to find individuals that may need additional education or training. This allows us to close weak links.

Automated Email Remediation

This function has now proven to be one of the most useful tools. With the automation and PhishRIP(+) we are able to more quickly remove emails that would prove to be risky.

Phish Alert Button (PAB)

All employees use the Phish Alert Button to report suspicious emails and they actually appreciate being Phished regularly!

Please provide some detailed examples of areas where KnowBe4 PhishER/PhishER Plus has room for improvement.

From 8 reviews | Last Published May 27, 2026

Reviewers identified several areas where KnowBe4 PhishER/PhishER Plus could be enhanced, primarily focusing on user experience, customization, and reporting. User experience and simplicity were noted by 3 of 8 reviewers as needing improvement, with specific calls for simplifying the overall administration and email template modification processes. Similarly, 3 of 8 reviewers provided mixed feedback on customization and flexibility, indicating that while the platform offers extensive options, there is a desire for more nuanced control over user groups and phishing email templates. Less frequently, but still present in the feedback, were concerns regarding reporting and data integration, with 2 of 8 reviewers seeking more tailored reports and better integration with SIEM systems. Additionally, 2 of 8 reviewers suggested a need for greater automation and more tools within the platform, particularly for handling unknown threats.

Customization and Flexibility

Extremely customizable and it is easy to get lost in the documentation.

User Experience and Simplicity

Email Template Modification - Simplification

Reporting and Data Integration

tailored reports that show the specific trend, like type of phish

Please provide some detailed examples of things that KnowBe4 PhishER/PhishER Plus does particularly well.

From 8 reviews | Last Published May 27, 2026

KnowBe4 PhishER/PhishER Plus is frequently recognized for its capabilities in automating and streamlining the response to email-based threats. A significant portion of reviewers, 38%, specifically highlighted its effectiveness in automating the handling of suspicious emails reported by employees, which contributes to a more efficient security posture. Concurrently, 38% of reviewers also praised the platform's ability to facilitate instant threat response, allowing for quick mitigation and removal of malicious emails from inboxes. Beyond immediate threat management, 38% of reviewers valued the comprehensive phishing training and educational resources provided, which are seen as crucial for improving user awareness and reducing susceptibility to attacks. Furthermore, the platform's integration capabilities with existing security systems, mentioned by 25% of reviewers, and its robust data and insight tracking features, also cited by 25% of reviewers, enhance its overall utility by providing actionable intelligence and seamless operation within diverse IT environments.

Automated Email Handling

automates the handling of suspicious emails reported by employees

Phishing Training and Education

Education

Instant Threat Response

Quick phishing mitigation

Loading Reviews List....