ClubIT

Cyber Security & Compliance

Cyber security awareness training

Your controls stop most things. The rest arrive as a convincing message to a busy person, which makes your staff the layer that matters most and the one least often invested in.

How we run it

  • Quarterly, short modules rather than an annual hour nobody remembers
  • Simulated phishing at a realistic frequency, with the click treated as a teaching moment rather than a disciplinary one
  • Sector-relevant examples — a fake supplier invoice for a club, a spoofed referral or pathology result for a practice, a rostering or payroll message for aged care
  • Completion and result reporting you can put in front of an accreditor, an insurer or a board
  • Targeted follow-up for individuals or teams who need it, without naming people in reports

A word on blame

Programs that punish the person who clicked produce one reliable outcome: people stop reporting. That is strictly worse than the click, because the click is survivable and forty minutes of silence often is not.

We measure report rate alongside click rate and treat a rising report rate as the leading indicator of a healthy program.

Why regulated sectors need the records, not just the training

For accreditation and for insurance, being able to demonstrate that training happened — who, when, what result — is as important as the training itself. Records are kept current between audits rather than reconstructed the week before one.

Common questions

How long does each module take?

Short by design — a few minutes, quarterly. Long enough to land one idea, short enough that shift workers and clinicians will actually complete it.

Will you tell us who clicked?

We report aggregate results and flag where targeted follow-up is warranted. Naming individuals in board reporting is counterproductive; we will discuss specifics with you directly where a real risk exists.

Related

Book a Technology Review.

One to two hours onsite, across support, cyber posture, backup and recovery, infrastructure, Microsoft 365 and where the organisation is heading. You receive a written findings report within five days — prioritised risks, quick wins and gaps, in writing.

$1,500 including GST. Credited in full against your engagement if you proceed.

The report is yours to keep regardless of what you decide to do next.

The 90-day guarantee. Give us 90 days. If you're not satisfied with our service in that time, cancel and we'll refund our fees. You keep the audit, the report and every improvement we've made. Third-party hardware, licences and subscriptions purchased on your behalf are excluded. Full terms

Start your review Let's talk — 15 minutes