Resources

RESOURCES  /  CYBERSECURITY ESSENTIALS

Cybersecurity Essentials Training

Equip your team with the knowledge to identify threats, protect sensitive data, and respond confidently to security incidents. Our on-demand training modules are built around the frameworks your organization depends on — NIST, ISO 27001, HIPAA, CMMC, and more.

10
Core Training Modules
90%
Reduction in Credential Attacks with MFA
6
Compliance Frameworks Mapped
24/7
On-Demand Access
TRAINING MODULES

Core Cybersecurity Awareness Curriculum

Each module is self-paced, takes under 15 minutes, and includes a knowledge check. Complete all ten to earn the STM Cybersecurity Essentials Certificate.

MODULE 01  ·  FOUNDATIONAL

Phishing & Business Email Compromise

Learn to identify phishing emails, SMS smishing, and AI-generated voice scams. Covers the latest BEC tactics targeting finance and executive teams.

 12 min
Start Module →

MODULE 02  ·  FOUNDATIONAL

Password Hygiene & MFA

Strong password creation, password manager adoption, and multi-factor authentication enrollment. Understand why MFA blocks over 90% of credential-based attacks.

 10 min
Start Module →

MODULE 03  ·  FOUNDATIONAL

Social Engineering Defense

Recognize vishing, smishing, tailgating, and pretexting using OSINT data. Includes real-world scenarios of AI-generated voice cloning and deepfake video impersonation.

 14 min
Start Module →

MODULE 04  ·  COMPLIANCE

Data Handling & Classification

Identify data categories — PII, PHI, PCI, CUI — and apply secure storage, sharing, encryption, and disposal practices. Covers shadow-IT risks and data exfiltration prevention.

 13 min
Start Module →

MODULE 05  ·  CRITICAL

Incident Reporting & Response

Know exactly when and how to report suspicious activity. Learn reporting channels, escalation timelines, and why prompt reporting is the fastest path to containment.

 11 min
Start Module →

MODULE 06  ·  FOUNDATIONAL

Acceptable Use & Secure Browsing

Policies for internet, cloud services, SaaS apps, personal devices, and generative-AI tool usage. Understand the risks of unsanctioned tools and data leakage through AI platforms.

 10 min
Start Module →

MODULE 07  ·  OPERATIONAL

Physical Security & Clean Desk

Tailgating prevention, device locking, screen privacy filters, and secure disposal of printed materials. A required control for ISO 27001 and NIST SP 800-50 compliance.

MODULE 08  ·  OPERATIONAL

Mobile & Remote Work Security

Secure Wi-Fi practices, VPN usage, BYOD policies, device encryption, and home-network hygiene. Built for the 30%+ of your workforce that operates remotely.

 12 min
Start Module →

MODULE 09  ·  EMERGING

AI-Era Threat Awareness

AI-generated spear-phishing, deepfake video impersonation, AI-voice cloning for vishing, and OSINT-driven pretexting. Learn how AI is lowering the cost and raising the quality of attacks.

 15 min
Start Module →

MODULE 10  ·  ROLE-BASED

Role-Based Security Practices

Tailored content for executives, finance, IT, and HR teams. Meets ISO 27001 Clause 7.2, CMMC AT.L2-3.2.1, and HIPAA role-specific awareness requirements.

 14 min
Start Module →

RECOMMENDED LEARNING PATH

Your Training Journey, Step by Step

Follow this structured path to build cybersecurity competency from the ground up. Each phase builds on the last.

1

Onboarding Baseline

Complete Modules 1–3 within your first 30 days. Establish baseline knowledge of phishing, passwords, and social engineering before you encounter real threats in the wild.

Days 1–30 · ~36 min total

2

Core Compliance

Complete Modules 4–6 to cover data handling, incident reporting, and acceptable use. This phase satisfies annual compliance refresher requirements for most frameworks.

Days 31–60 · ~34 min total

3

Operational Security

Complete Modules 7–8 to address physical security, clean-desk practices, and remote-work hygiene. Essential for teams with field, hybrid, or remote personnel.

Days 61–90 · ~20 min total

4

Advanced & Role-Based

Complete Modules 9–10 to understand AI-era threats and role-specific security practices. Earn your STM Cybersecurity Essentials Certificate upon completion.

Ongoing · ~29 min total

COMPLIANCE MAPPING

How Our Training Maps to Your Frameworks

Every module is mapped to the regulatory and industry frameworks your organization must satisfy. Use this table for audit-ready evidence of your awareness training program.

Training Module Framework Alignment
Phishing & BEC NIST CSF 2.0ISO 27001SOC 2CMMC
Password Hygiene & MFA NIST CSF 2.0ISO 27001PCI-DSSCMMC
Social Engineering Defense NIST CSF 2.0ISO 27001SOC 2
Data Handling & Classification HIPAAGDPRPCI-DSSCMMC
Incident Reporting & Response NIST CSF 2.0ISO 27001HIPAASOC 2
Acceptable Use & Secure Browsing ISO 27001SOC 2CMMC
Physical Security & Clean Desk ISO 27001NIST SP 800-50
Mobile & Remote Work Security NIST CSF 2.0ISO 27001SOC 2
AI-Era Threat Awareness NIST CSF 2.0ISO 27001
Role-Based Security Practices ISO 27001 §7.2CMMC AT.L2HIPAA

Ready to Build a Security-First Culture?

Register your team for the full STM Cybersecurity Essentials Training program. Get progress tracking, completion certificates, and audit-ready reporting.

Schedule a Consultation  →