Summary
This policy outlines the requirements for security awareness training for all contractors. It is designed to ensure that contractors are equipped with the knowledge to identify, prevent, and respond to security threats. Contractors will attend seminars and receive interactive training sessions that help maintain a secure and compliant work environment.
Eligibility
This policy applies to all contractors, aligning with the terms of their agreements. It ensures that everyone has the necessary skills to recognize and mitigate security risks. Freelancers are not covered under this policy.
Training Requirements
- Initial Training: All contractors must complete an initial security awareness training session within the first 30 days of their contract. This training introduces key concepts like phishing, social engineering, and data protection.
- Ongoing Training: After the initial session, contractors will participate in annual refresher courses to stay updated on the latest threats and best practices.
Training Platform
- KnowBe4: All training sessions are conducted through the KnowBe4 platform, a leading provider of security awareness training. It offers interactive modules, quizzes, and simulations designed to reinforce secure practices.
- Access: Contractors will receive login credentials and instructions to access the KnowBe4 platform upon starting their contract. Training sessions are accessible anytime, making it convenient to complete them within the designated timeframes.
Compliance
- Certification: Upon completion of each training module, contractors will receive a certificate of completion, which should be submitted to the HR team for record-keeping.
- Monitoring: Compliance with the training requirements will be monitored, and reminders will be sent for any missed deadlines to ensure all contractors remain up-to-date.
- Non-Compliance: Failure to complete the required training may result in a review of the contractor’s engagement, as it is crucial to maintain a security-conscious work environment.
Review and Updates
This policy will be reviewed annually to incorporate new training practices and evolving security threats. Contractors will be informed of any changes to ensure continued awareness and compliance.
At Trio, we believe that security is a shared responsibility, and through comprehensive training, we ensure everyone is prepared to tackle emerging threats. By working together, we can create a safer and more secure environment for all. 💪