Security Awareness Training

Last updated

Definition

Security awareness training (SAT) is recurring, managed education that teaches client employees to recognize and report attacks – phishing, credential theft, and payment fraud – paired with simulated phishing campaigns that measure clicks, reports, and changes over time. Modern platforms automate enrollment, short lessons, scheduled simulations, assignments, and reporting. Acronis Security Awareness Training is an MSP-focused option managed through Acronis Cyber Protect Cloud. Other options include KnowBe4 (roughly $20–25/user/year at small-business tiers), Breach Secure Now, usecure, and Huntress SAT.

Why it matters to an MSP

Insurers now list SAT among the standard minimum controls on cyber-insurance applications – alongside MFA, EDR, and tested backups – so clients need it whether or not they want it, and platform reports give you documented evidence to support renewal attestations. The economics can support a bundled add-on. Point-product COGS commonly runs roughly $1–2/user/month, while Acronis pricing is quote-based. Confirm the actual per-user cost, minimum commitment, and administration time before setting a $25–50/user security-tier price. It also generates client-facing proof of value – phish-prone percentages trending down are great QBR material. One caution: training reduces human error, never eliminates it. It complements MFA, email security, and the finance-process controls that stop BEC; it doesn't replace any of them.

Related terms: Phishing, BEC, Cyber Insurance