01
Phishing and social engineering
The team recognizes the risk and knows who to pass the incident on to.
Cyber course
First hour decides. Phishing, accounts, data and incident procedure for management and operation.
Division Director GBH Cyber
Your cybersecurity is not driven by a marketer, but by an engineer.
He built secure systems for IBM and Trezor. Now they are building them for your organization.
1 day
practical team course
10-25
management, IT, operation
NIS2
comprehensible for management
First hour
what to do in an incident
Practical impact
People need to know who to call, what to disconnect and what to let run.
The course doesn't matter cyber security by layers. Accounts, dates, physical operation and human roles will be put together in such a way that no one improvises in the incident.
Accounts, backups and critical data. Do you know who holds them and how to recover them?
The network, cameras and building mode run 24/7. The course links them with data into one procedure.
Management, IT and reception. Everyone knows what they are doing in the first hour of an incident.
We build the course for people who incident they really pick up the phone, open the door or make traffic decisions.
01
The team recognizes the risk and knows who to pass the incident on to.
02
Accounts, cameras and administration have an owner.
03
Critical data has clear recovery.
04
Cyber sits on the building, cameras and entrances.
05
First phone call, decision and isolation.
06
We translate duties into steps for management.
We do not deal with cybernetics in isolation. We will connect dates, people, building and management decision making.
Accounts, data, cameras, suppliers, crisis contacts.
Phishing, lost device, data leak, camera outage.
Management, IT, reception, operation and communication in one procedure.
What to change now, what to plan and what belongs to the audit.
01
You protect student data, teacher accounts and cameras. In the course, you will receive a clear procedure, not another directive in a drawer.
02
When cyber stops production or billing, you decide. You will learn what to do in the first hour and who to call.
03
You keep the network, accounts and backups yourself. You'll leave with a process you can handle even without a SOC behind you.
04
The attack starts with one click on the reception desk. You can recognize phishing before you open the attachment and know who to forward it to.
05
We will translate the obligations into steps that you can defend in front of management and the regulator. No legal chaos.
06
Instead of improvising, you leave with a plan: who isolates, who communicates, and who decides on traffic.
The course connects employees, account managers, reception and management. We train for the first hour: recognizing an attack, who to pass it on to, what to limit and how to maintain traffic.
Know the attack
Submit an incident
Restrict access
Keep running
The first hour of the incident
Who's calling What to turn off. To whom to pass.
A technical problem quickly becomes an operational crisis. The course gives people a concrete procedure, not another presentation.
Publicly documented Czech incidents that were triggered by one click or an open attachment. The course trains exactly that moment — how phishing know who incident to pass and what to do in the first lesson.
December 2019 Ryuk ransomware
On December 11, 2019, ransomware crippled hospital systems. Full operation did not resume until December 30, the damage exceeded 59 million crowns.
What we do with it: It started with email and poorly protected accounts. Cyber audit examines exactly these entry points.
Source: Czech Television (ČT24)
March 2020 · ransomware, the day after the state of emergency was declared
On March 13, 2020, a day after the state of emergency was declared, an attack encrypted the systems of the country's second largest hospital. Postponed operations, provisional damage of 150 million crowns.
What we do with it: One open attachment stopped the operation. That is why in the course we train phishing recognition and the procedure of the first hour.
Source: Aktuálně.cz268
of cyber security incidents recorded by NÚKIB in 2024 — the most so far, most often in the public sector
Source: NÚKIB, Report on the state of cyber security of the Czech Republic (2024)NIS2 and the new Cyber Security Act shift responsibility to management. An audit and a prepared team will cost less than a fine, downtime and data loss.
up to €10 million
or 2% of turnover — fines according to NIS2
Management is responsible
personal responsibility for the measures taken
24 / 72 h
statutory deadlines for reporting an incident
Suppliers
you are also responsible for the supply chain
Phishing, traffic analysis i risks on mobile — a day with the team, shot by shot.
It is practical. Management, operations and IT get a common language: what is the risk, who has what role and what to do in the first minutes of an incident.
Yes. The course can stand alone, but it makes the most sense after auditing accounts, data, cameras and suppliers. The audit will find weaknesses, the course will teach the team to react.
Yes. Schools deal with student data, staff accounts, cameras, suppliers and crisis communications. The course translates cyber risks into normal school operations.
Cyber course
Just describe the organization, the number of people and the current problem. We will return the recommended rate range.
Write whether you are dealing with a school, company or institution, the number of participants and the main concern. We will propose a specific course.