IT & Security training
Most awareness training is written for general staff. AfriPhish also ships a dedicated track for the people who run security — IT engineers and SecOps — covering both the technical craft and the governance around it.
These courses appear in their own "For IT & Security Teams" section of the training catalogue (and under the IT & Security category filter), so they're easy to find and never buried among the end-user modules.
What a course includes
Like every AfriPhish module, each IT course combines slides, a narrated video generated from those slides, and a graded quiz the learner must pass to complete it. Course titles, descriptions and quizzes are localized in English, French and Arabic; the slide content and narration ship in English and French.
Assign them like any other module — to individuals, groups, or a whole team — with due dates, completion tracking and scores. See Phishing & training.
The curriculum
The track spans foundational controls, hands-on defensive engineering, and the governance and compliance frameworks IT leaders are measured against.
Foundations & compliance
- CIS Controls — essential cyber hygiene and the Implementation Groups
- PCI DSS — the cardholder data environment, scoping and requirements
- GDPR for engineering — lawful basis, data minimization and DPIAs in system design
- ISO 27001 & the ISMS — Annex A controls, risk treatment and the Statement of Applicability
- NIST Cybersecurity Framework — Govern, Identify, Protect, Detect, Respond, Recover
- Third-party & vendor risk — assessment, due diligence and ongoing monitoring
- Data classification, retention & access reviews
- Change & configuration management
Infrastructure & hardening
- Active Directory security — tiered admin, Kerberos risks, privileged hygiene
- Firewall best practices — default-deny, segmentation and rule governance
- Secure cloud configuration — IAM least privilege, CSPM and guardrails
- Zero Trust architecture — identity-centric access and microsegmentation
- Container & Kubernetes security — image scanning, RBAC and admission control
- TLS, PKI & certificate management — the certificate lifecycle and key protection
- Secrets & credential management — vaults, rotation and short-lived credentials
- Privileged Access Management (PAM) — vaulting, just-in-time access and session recording
Detection & response
- EDR & endpoint hardening
- SIEM & log management
- Vulnerability & patch management
- Backup & ransomware resilience
- Incident response playbooks
- SOC triage & detection engineering
- MITRE ATT&CK for defenders
- Threat intelligence fundamentals
- Log forensics & evidence handling
- Email security — SPF, DKIM, DMARC and secure email gateways
- DDoS defense & resilience
Enabling the track. The IT courses are provisioned once into your environment. If you don't see the "For IT & Security Teams" section yet, ask your AfriPhish operator to run the IT-training provisioning step.
Next: Coaching & interventions.