For the employee
Focused learning explains the behavior that needs to change, with a clear path toward safer decisions.
Auto · follows your device
ASAT scores every employee on how they handle real-world attacks, from phishing and texts to cloned voices, deepfakes and leaked passwords. Then it assigns the right training automatically and shows your board the number falling.
30 days · 5 users · No credit cardHuman risk management (HRM) is the continuous process of measuring how employees respond to cyber threats, stepping in with the right training or action when someone’s risk rises, and tracking whether risk falls over time. It replaces “who finished the course” with “who would fall for the attack.”
See it in practiceSeven signals in, four actions out, updated continuously. Every input is something the employee actually did, not a guess from their job title.
Measure email clicks and credential submissions, SMS taps, compliance with voice requests, actions on deepfake video, threat reports, training and exams, and dark-web credential exposure. Update scores continuously from observed behavior and exposure, not assumptions based on job titles.
Put the idea into practiceSimulation responses + threat reports
Learning completion + exams
Exposed work credentials
See the people, teams and departments behind a score. Identify credential submissions, leaked passwords, voice-call compliance, repeated clicks and unverified QR scans. Connect a person’s risky behavior, exposed credentials and overdue learning with a relevant training path.
Put the idea into practiceCredential submissions or repeated clicks
Department and account context
Learning gaps that need support
Behavior moves people between groups. Report a simulated attack or pass an exam and they move toward Safe. Click, hand over a password or turn up in a breach and they move back. High: focused path + manager informed. Average: monthly lessons + harder simulations. Low: lighter touch, monitored. Safe: advanced scenarios to stay sharp.
Put the idea into practiceHigh → focused path + manager informed
Average → lessons + harder simulations
Low / Safe → monitor and stay sharp
Set the rule once. ASAT watches for the behavior, picks the right response and follows up until the score comes down. Repeat clicker: 3 clicks in 30 days. Password found in a breach: dark-web exposure check. Complied with a cloned voice: vishing simulation failure. Trigger a 2-minute lesson on the spot, a new learning path matched to the behavior, or escalation to manager, HR or leadership. Events to your SIEM: Diamond plans. Skip people mid-course.
Put the idea into practiceTrigger · Three clicks in 30 days
Check · No focused path in progress
Action · Assign learning and follow up
See where human risk concentrates across departments and months, then send leadership a one-page report: the score, what changed, where the risk is and what’s being done about it. Review the six-month department heat map, quarterly report and click rates, riskiest department and people moved out of High. Next quarter: payment-fraud path for Finance; voice-clone verification for the executive office.
Put the idea into practiceOrganization and department trends
People moving out of High
Actions taken + next-quarter priorities
ASAT scans public breach data and dark-web sources for your employees’ work credentials. A match raises that person’s score, alerts them and assigns the right lesson, so a leaked password becomes a fix rather than a surprise. Continuous scanning of breach and dark-web sources. Alerts as soon as an exposure is found. Feeds straight into each person’s risk score. Employee alerted and asked to reset; password-hygiene lesson assigned.
Put the idea into practiceWork credential found in breach data
Exposure alert + password-reset request
Password-hygiene learning assigned
A live risk score for every person and department, built from how they handle simulated attacks and whether their credentials have leaked.
Lessons, learning paths and escalations that trigger automatically when someone’s behavior says they’re needed.
Trends and board-ready reports that show human risk falling, quarter by quarter.
Explore a sample scenario and the reasoning behind a safer response.
An employee clicks three simulations in 30 days. A configured playbook checks whether a focused path is already in progress before assigning credential-safety lessons.
Illustrative learning scenarioChoose a response to see the learning behind the decision.
Assign the relevant path, follow up with the manager and review how learning and reporting change the score.
Focused learning explains the behavior that needs to change, with a clear path toward safer decisions.
Individual scores and department context help prioritize support and avoid repeating work already in progress.
Connect the score, its movement and the interventions taken in a report that explains what happens next.
Understand the details, the learning objectives and how human risk management fits your program.
Talk to our teamHuman risk management (HRM) is the continuous process of measuring how employees respond to cyber threats, stepping in with the right training or action when someone’s risk rises, and tracking whether risk falls over time. It replaces “who finished the course” with “who would fall for the attack.”
Seven inputs contribute: email simulation clicks and credential submissions; SMS taps; compliance with simulated voice requests; acting on deepfake videos; threat reporting; training completion and exams; and leaked work credentials. Reporting attacks and passing exams move the score toward safer groups. Risky actions and credential exposure raise the need for support. Read the contributing behaviors and trends rather than treating someone’s job title as a risk prediction.
High: New or untrained, or showing risky behavior. Focused path + manager informed. Average: Some training done; still needs follow-up. Monthly lessons + harder simulations. Low: Most training complete; spots fakes most of the time. Lighter touch, monitored. Safe: All training done; reports what they see. Advanced scenarios to stay sharp. Behavior moves people between groups; Safe does not mean immune to attack.
Yes. For the repeat-clicker playbook, the trigger is three simulation clicks in 30 days across email, SMS or QR. Check that the employee is not already on a focused path, then assign four short credential-safety lessons and an exam. Inform the manager at 80% of the training deadline and copy HR at 90% if it remains open. Scores respond as learning and reports arrive; once the learner returns to Low, use harder simulations. Separate playbooks can respond to a breached password or a vishing failure.
Training completion cannot tell you whether a work password has leaked. Continuous scans of public breach data and dark-web sources find exposures, including password hashes in third-party breach datasets. A match raises the person’s score, triggers an immediate alert and password-reset request, and assigns a password-hygiene lesson for follow-up.
No. Available channels and integrations depend on the package. SIEM events are available on Diamond plans. Check the pricing page or confirm requirements with the team before choosing a plan.
Four responses connect measurement to action: a two-minute lesson at the moment of a mistake, a new learning path matched to the behavior, escalation to a manager, HR or leadership, and events delivered to your SIEM on Diamond plans. Available simulation channels vary by package.
Look for credential submissions, breached work passwords, compliance with a cloned-voice request, three or more simulation clicks in 30 days, and unverified QR scans. Combine those with overdue learning. For example, an Accounts Payable employee who clicks invoice lures, has an exposed password and has an overdue course can receive a payment-fraud path with manager follow-up.
A one-page report brings together the organization’s risk score, the change from the previous quarter, reporting and click rates, the riskiest department, the number of people who moved out of High, and the interventions taken. A six-month department heat map shows where risk concentrates. Next-quarter actions can include payment-fraud training for Finance and voice-clone verification for executives.
Move from who finished to who is at risk and why; from generic courses to behavior-triggered training; and from email-only tests to supported email, SMS, voice and deepfake simulations plus leaked credentials. Continuous scoring replaces an annual review, automated playbooks replace manual chasing, and a board-ready risk report complements the completion export.
Yes. Start a 30-day free trial with no credit card to see your organization’s Human Risk Management. Risk scoring is included in published plans; compare the pricing page for the simulation channels, support and integrations your team needs.
Bring your team’s priorities. We’ll walk through the scenarios, learning and insights that fit your program.