IT & Security training

Most awareness training is written for general staff. AfriPhish also ships a dedicated track for the people who run security — IT engineers and SecOps — covering both the technical craft and the governance around it.

These courses appear in their own "For IT & Security Teams" section of the training catalogue (and under the IT & Security category filter), so they're easy to find and never buried among the end-user modules.

What a course includes

Like every AfriPhish module, each IT course combines slides, a narrated video generated from those slides, and a graded quiz the learner must pass to complete it. Course titles, descriptions and quizzes are localized in English, French and Arabic; the slide content and narration ship in English and French.

Assign them like any other module — to individuals, groups, or a whole team — with due dates, completion tracking and scores. See Phishing & training.

The curriculum

The track spans foundational controls, hands-on defensive engineering, and the governance and compliance frameworks IT leaders are measured against.

Foundations & compliance

  • CIS Controls — essential cyber hygiene and the Implementation Groups
  • PCI DSS — the cardholder data environment, scoping and requirements
  • GDPR for engineering — lawful basis, data minimization and DPIAs in system design
  • ISO 27001 & the ISMS — Annex A controls, risk treatment and the Statement of Applicability
  • NIST Cybersecurity Framework — Govern, Identify, Protect, Detect, Respond, Recover
  • Third-party & vendor risk — assessment, due diligence and ongoing monitoring
  • Data classification, retention & access reviews
  • Change & configuration management

Infrastructure & hardening

  • Active Directory security — tiered admin, Kerberos risks, privileged hygiene
  • Firewall best practices — default-deny, segmentation and rule governance
  • Secure cloud configuration — IAM least privilege, CSPM and guardrails
  • Zero Trust architecture — identity-centric access and microsegmentation
  • Container & Kubernetes security — image scanning, RBAC and admission control
  • TLS, PKI & certificate management — the certificate lifecycle and key protection
  • Secrets & credential management — vaults, rotation and short-lived credentials
  • Privileged Access Management (PAM) — vaulting, just-in-time access and session recording

Detection & response

  • EDR & endpoint hardening
  • SIEM & log management
  • Vulnerability & patch management
  • Backup & ransomware resilience
  • Incident response playbooks
  • SOC triage & detection engineering
  • MITRE ATT&CK for defenders
  • Threat intelligence fundamentals
  • Log forensics & evidence handling
  • Email security — SPF, DKIM, DMARC and secure email gateways
  • DDoS defense & resilience

Enabling the track. The IT courses are provisioned once into your environment. If you don't see the "For IT & Security Teams" section yet, ask your AfriPhish operator to run the IT-training provisioning step.


Next: Coaching & interventions.