What is Encrisoft?

Encrisoft is a cybersecurity awareness and human risk platform that helps organisations prepare their people for real-world cyber threats.

It brings phishing simulations, security training, employee risk insights and security awareness into one place. Instead of treating security awareness as something employees complete once a year, Encrisoft helps organisations continuously understand how people respond to threats and where additional support or training may be needed.

The aim is simple: help employees recognise suspicious activity before a real attack succeeds.

How does Encrisoft work?

Encrisoft helps organisations improve security awareness through a cycle of testing, learning and measuring.

You can run realistic phishing simulations to understand how employees respond to common attack techniques. You can then use security training to help people improve their knowledge and recognise similar threats in the future.

As employees interact with simulations and training, Encrisoft helps your organisation build a clearer picture of human cyber risk. This allows administrators and security teams to focus attention where it is needed instead of relying only on whether someone has completed a course.

What can you do in Encrisoft?

Depending on your role and the features available to your organisation, you can use Encrisoft to:

  • Add and manage employees and departments.
  • Create phishing simulations using templates or Encrisoft AI.
  • Send realistic simulations to selected employees or groups.
  • Schedule simulations for a later date.
  • Review simulation activity and results.
  • Assign security awareness training.
  • Monitor training progress and completion.
  • Understand employee and department risk.
  • Review your organisation's overall human risk.
  • Manage your organisation, account and security settings.

Employees can also use Encrisoft to access assigned training, complete lessons and quizzes, and review their learning progress.

Phishing simulations

Phishing simulations allow organisations to safely test how employees respond to realistic phishing attempts.

A simulation can reproduce situations employees may encounter in everyday work, such as an unexpected login request, an urgent message, a suspicious invoice or another form of social engineering.

The purpose is not to catch people out. The purpose is to identify where additional awareness or training may be useful before somebody encounters the real thing.

Encrisoft also allows authorised users to create simulations using templates or Encrisoft AI, making it easier to build scenarios that are relevant to their organisation.

Security training

Security training helps employees understand common cyber threats and learn how to respond to them.

Administrators can assign training to employees, monitor progress and see when courses have been completed. Employees can access their assigned courses from Encrisoft and work through lessons and quizzes.

Training can also be used alongside simulations so that awareness activities are based on the risks employees actually encounter rather than relying entirely on generic annual training.

Human risk

Encrisoft helps organisations understand the human side of cybersecurity.

The Risk area brings together information from security awareness activities to help organisations see where risk may exist across employees and departments.

This can help administrators understand which areas may need additional training, where behaviour is improving and where further attention may be required.

A risk score should be treated as a tool for improving security awareness, not as a way to punish employees. The objective is to identify where people need better preparation and help them become more confident when dealing with suspicious activity.

People and departments

The People area allows authorised users to manage employees within their organisation.

Employees can be organised into departments, given appropriate access and included in simulations or training activities.

Keeping employee and department information accurate is important because Encrisoft uses this structure when assigning training, selecting simulation participants and presenting risk information.

Your Encrisoft dashboard

Encrisoft organisation dashboard showing navigation and security overview information


After signing in, your dashboard gives you a starting point for understanding what is happening across your organisation.

Depending on your access level, you may see information relating to risk, simulations, training, employees and recent activity.

You can use the main navigation to move between the different areas of Encrisoft.

Different users can see different features

Not everybody using Encrisoft has the same permissions.

Organisation owners and administrators may be able to manage employees, simulations, training, organisation settings and risk information.

Employees may have a simpler experience focused mainly on their own training and security activities.

If you cannot see a feature described in the knowledge base, it may not be available to your account, role or current Encrisoft plan.

Where should I start?

If you are setting up Encrisoft for an organisation, a sensible starting order is:

  1. Review your organisation details and settings.
  2. Add or invite your employees.
  3. Organise employees into departments where appropriate.
  4. Review your available security training.
  5. Create your first phishing simulation.
  6. Review the results.
  7. Use the results and risk information to decide where further training or simulations may be useful.

If you are using Encrisoft as an employee, start by checking My Training for any courses that have been assigned to you.

Encrisoft becomes more useful as your organisation runs simulations, delivers training and builds a clearer picture of how employees respond to security threats over time.