What is our primary use case?
My main use case for Huntress Managed Security Awareness Training is employee security awareness and phishing risk reduction. We use it to provide our employees with practical and ongoing training around phishing, social engineering, and other suspicious emails, including credential security and common security risks. Compliance is one of the important use cases for us, and this training provides evidence of participation while helping support our internal security and compliance requirements.
I see the biggest difference in day-to-day behavior of employees and their awareness, as the training definitely helps employees become more cautious about suspicious emails, links, or other attachments that come unnoticed, along with requests for sensitive information instead of automatically trusting what appears in their inbox. For example, after completing phishing awareness training and running simulated phishing activities, employees are now more likely to pause and verify unexpected requests, check sender information carefully, and report it back to us without acting on it. These use cases indicate that security awareness becomes an ongoing employee behavior rather than just an annual compliance activity, with the training data helping us identify whether additional awareness or targeted training is required.
Another benefit is that it helps make security awareness an ongoing activity rather than just a once-a-year compliance completion exercise. The combination of short training modules and phishing simulations provided by our service provider gives better visibility into awareness among employees and tracks when additional education may be required, which I view as a practical and continuous approach adding definite value.
How has it helped my organization?
Huntress Managed Security Awareness Training has positively impacted our organization by making security awareness continuous and measurable rather than a one-time compliance training exercise. We have observed better employee awareness around phishing, suspicious links, and unexpected requests, with employees becoming more proactive about reporting threats. From a measurable outcome perspective, we can track training completion, phishing simulation results, and any behavioral changes or repeat risk patterns over time. After phishing simulations and follow-up coaching, employees who initially interacted with simulated phishing messages have become more cautious and are now more likely to report suspicious emails in subsequent exercises. This change reduces our manual effort in terms of running campaigns and increases overall awareness with improved employee behavior.
We have seen improvement particularly in the phishing simulation metrics, showing a decreasing click rate on simulated phishing emails and an increase in employees reporting suspicious messages. Training completion rates remain high because the modules are short and easy to complete. The most useful metric is the trend across campaigns, as employees who previously interacted with the simulated phishing emails are now less likely to repeat that behavior after targeted coaching. We have also observed more employees using the reporting mechanism proactively.
What is most valuable?
The feature that stands out most prominently for me in Huntress Managed Security Awareness Training is the realistic phishing simulation and the engaging, short training content that is fully managed. The content informed by current threat intelligence feels much more relevant than generic annual security training, and I also appreciate the phishing defense coaching that offers scenario-specific guidance rather than simply marking employees as having failed or completed training. The reporting is useful, allowing us to track completion levels and activity, while administration becomes very simple as Huntress Managed Security Awareness Training manages the learning plans and phishing simulations along with providing the database of completions and industry best practices.
We have seen a positive change in employee behavior, particularly regarding phishing awareness and the reporting of suspicious emails. Employees are now more likely to verify emails before clicking links, thus showing that our goal is achieved. For example, after a phishing simulation, some employees have started proactively reporting similarly looking emails instead of interacting with them, and the short, practical training significantly engages them right from the beginning without the complaints associated with lengthy compliance training, making it easier to demonstrate that awareness translates into day-to-day behavior.
We are using the managed learning feature, which has been helpful in keeping the training program current without needing any additional manual support from our side to plan and update each training cycle.
Memorable episodes have noticeably impacted changing user behaviors, as they make training more relatable and easier to remember than traditional compliance content. Instead of simply reading security rules and different scenarios, illustrating how real situations unfold helps employees connect lessons to their daily work. For instance, after an episode on phishing or social engineering, employees have become more aware of checking senders, questioning unexpected requests, and reporting suspicious emails, which has even made me more conscious about security measures, ensuring I check links and sender names before interacting with emails, even in my personal accounts.
I think the just-in-time approach is particularly effective because it connects training directly to risky behavior while the situation remains fresh in the employee's mind, making learning feel more relevant than completing a generic course. For example, after an employee interacts with a simulated phishing email, they receive immediate coaching to explain the indicators they should have ideally noticed, such as unusual senders, suspicious links, or unexpected information requests, allowing them to apply that learning in future encounters.
We have utilized the Threat Simulator feature, which has been beneficial as it moves beyond passive training to actively test employee responses in realistic scenarios, such as running simulated phishing scenarios resembling the type of emails they might realistically encounter. If an employee clicks on a simulated malicious link or interacts with a message, they receive immediate feedback reinforcing the warning signs they should have ideally noticed.
Regular updates to Tradecraft scenarios are crucial in keeping training relevant as phishing tactics evolve. Attackers continuously devise new methods, and instead of limiting employees to learning about traditional phishing emails, newer scenarios expose them to techniques including credential harvesting, impersonation, and urgent business requests, which represent more targeted social engineering attempts. Huntress Managed Security Awareness Training supports us in managing this educational content, helping to maintain awareness over time and preventing training from becoming repetitive or predictable. The combination of updated scenarios and just-in-time learning proves useful as it exposes employees to new threats and relevant guidance close to the time of the behavior.
What needs improvement?
I really cannot think of any area for improvement regarding Huntress Managed Security Awareness Training as I have not compared it with any other vendors. The only thing that comes to mind is that integration capabilities with HR or other identity systems would be helpful so that employee joiners, movers, and leavers can be automatically reflected in the training population instead of manually forecasting and inputting data. Overall, I find this platform very effective; such enhancements, particularly integrating with HR systems, would definitely add value.
I would not specify any wish list items for Huntress Managed Security Awareness Training, only a curiosity to see what new simulation methods they will develop.
For how long have I used the solution?
I have been using Huntress Managed Security Awareness Training for roughly about four years, and I am actively involved in training myself while providing opportunities for others as well.
What do I think about the stability of the solution?
There has been absolutely no downtime, and I find the platform to be reliable and user-friendly.
What do I think about the scalability of the solution?
Huntress Managed Security Awareness Training has scaled exceptionally well for us, handling growth in users and multiple locations without requiring significant additional effort as the centralized cloud-based approach allows for straightforward onboarding of users and management of training campaigns while tracking completion across locations, with no significant downtime or reliability issues disrupting our training.
How are customer service and support?
The customer support for Huntress Managed Security Awareness Training has been very good, as we have reached out mainly for occasional product or configuration-related issues, receiving timely and practical guidance rather than generic responses. From a day-to-day administration perspective, we have not needed much support because the platform is straightforward and easy to use.
Which solution did I use previously and why did I switch?
We have partnered with Huntress Managed Security Awareness Training for over two years, and prior to that, everything was handled in-house, so I do not possess any comparative metrics.
What was our ROI?
I would not directly compare our ROI with our investment, as I do not have the specific numbers, but I can certainly say that the overall ROI has been primarily about the time saved and reductions in manual effort. The decrease in manual tasks and the increase in employee awareness are more prominent outcomes rather than explicit dollar savings. The managed approach simplifies administrative effort for our security and IT departments, creating, scheduling, and tracking multiple instances while fostering better engagement and encouraging more employees to report suspicious activities.
What other advice do I have?
Huntress Managed Security Awareness Training stands out for me due to the combination of short, practical, and interactive training modules, which do not lead to employee complaints or discontent during training, and the overall engagement level is high. This approach keeps security awareness ongoing rather than making it another annual compliance exercise, while overall reporting and automated follow-ups provide visibility into completion and employee behavioral changes along with areas where additional coaching may be required.
I am positive about the way Huntress Managed Security Awareness Training approaches AI, particularly because it does not seem to rely on AI alone for high-impact security decisions, instead using it alongside human security analysts. The approach is described as AI-assisted and human-led, which is important from a governance and accountability perspective. Overall, I see the AI capability as a useful enhancement to our security awareness program, particularly when coupled with human expertise rather than as a replacement for IT.
From a user perspective, the content and recommendations from Huntress Managed Security Awareness Training are generally relevant, particularly regarding phishing and social engineering scenarios. The AI acts as an enablement layer, and though it is not overtly labeled as an AI-enabled platform due to our company's regulations, I expect the usual controls around validation through human review, data protection, and transparency about AI usage. With these safeguards in place, I find the AI capability useful and consistent with what I expect from a modern security awareness platform.
We utilize Huntress Managed Security Awareness Training as a SaaS solution with no on-premises deployment. Employees can access the training and phishing simulations through the Huntress Managed Security Awareness Training platform while administration, learning plans, reporting, and ongoing management are handled through the cloud, which alleviates the need to manage infrastructure or maintain an on-premise training application, making it easier to scale across various populations and locations.
We use Amazon Web Services as the underlying cloud provider for Huntress Managed Security Awareness Training, consuming it as a cloud-based SaaS solution without managing the AWS infrastructure directly, as Huntress Managed Security Awareness Training oversees hosting and platform infrastructure while we access services through the Huntress Managed Security Awareness Training cloud for training, phishing simulations, administration, and reporting.
I definitely recommend Huntress Managed Security Awareness Training to any organizations seeking a managed, low-administrative security awareness program, as the main value is the combination of automated training and realistic phishing scenarios enabling just-in-time learning and ongoing updates. It is relatively easy to deploy and scale while providing security teams visibility into employee engagement and risk, so I suggest evaluating the reporting and customization options against specific requirements, such as location needs. Overall, it offers a practical method to keep security awareness active rather than viewing it as a one-time compliance exercise. I would rate Huntress Managed Security Awareness Training a perfect 10 out of 10.