SoSafe named a Strong Performer in The Forrester Wave™: Human Risk Management Solutions, Q3 2024. Learn more.

Gonçalo Gaiolas on stage at HuFiCon presenting SoSafe’s product innovations on the right and a picture of the Human Risk OS platform on the left.

Product

Personalized solutions for evolving threats: Product innovations revealed at HuFiCon 2024

20 November 2024 · 7 min read

This year’s HuFiCon, SoSafe’s annual Human Firewall Conference, was all about innovation. We introduced a powerful set of new features designed to elevate security awareness and tackle the evolving challenges of human risk management. With cyberthreats becoming more complex every day, these innovations are not just timely – they’re essential for staying one step ahead of cybercriminals. 

Our latest updates are crafted to meet you wherever you are on your cyber security journey. Whether you’re building the foundations of a security program or looking to take yours to the next level, these features are designed to help you reduce risks, boost employee engagement, and create an awareness culture that drives lasting change.

A man in a blue shirt with a table from the Human Risk OS platform showing metrics. Upward arrows in the background.

New content and personalization to stay ahead of threats

In a world where hackers constantly evolve their tactics, stale and generic training is no longer enough to protect your organization. Today’s threats – like AI-driven attacks and million-dollar ransomware attacks – demand personalized, cutting-edge solutions that keep pace with the ever-changing environment.

That’s why we introduced a suite of tailored content designed to address these risks head-on. From specialized lessons for finance professionals to guidance on the German Church Data Protection Act (KDG), our most recent updates offer carefully selected content that allows you to move beyond meeting regulations and establish true resilience.

Profile-based personalization for role-specific learning and targeted simulations

Each role within an organization faces different risks – HR safeguards sensitive data, IT defends critical infrastructure, and management often encounters phishing and sophisticated social engineering threats. These unique challenges make role-specific training essential, as a generic approach often fails to address the specific vulnerabilities each team faces.

That’s why one of our most anticipated features is Profile-based personalization, which allows you to create tailored learning paths for your organization’s different roles and needs. This content aligns directly with employees’ daily responsibilities, increasing engagement and also ensuring employees are better equipped to handle the threats they’re most likely to face.

Personalized Learning setup screen displaying group assignments for tailored lessons.

Ongoing Awareness Assessments to keep learning fresh

There’s no doubt that staying prepared against threats requires continuous learning. However, we know that employees already juggle countless responsibilities, from meeting tight deadlines to managing critical tasks. Their time is valuable, and training needs to fit seamlessly into their workflows, not disrupt them. That’s why we’ve introduced Awareness Assessments – a smarter, more efficient way to keep security knowledge fresh and top of mind.

Instead of requiring employees to repeat entire e-learning modules, these assessments challenge users to demonstrate their understanding of key security concepts to avoid repeating the training multiple times. This approach ensures that knowledge stays current and relevant without taking up unnecessary time, allowing employees to focus on their work while maintaining a high level of security awareness.

Introducing Simulation Studio: Targeted phishing simulations made simple

Simulation Studio, our latest innovation, simplifies the process of creating phishing simulation templates. Whether you’re addressing specific threat vectors, complying with internal policies, or meeting regulatory requirements, this tool allows you to design personalized and realistic phishing emails tailored to your organization’s unique risks and security objectives.

Simulation Studio leverages AI to streamline the creation process. With intelligent features, you can quickly craft relevant phishing tests and translate templates into multiple languages, making it easier than ever to roll out effective simulations across diverse teams.

By simulating real-world attacks that reflect the threats your organization is most likely to face, our Simulation Studio helps prepare your workforce with targeted, impactful training. The result? A more secure, resilient organization ready to stay ahead of emerging threats.

Protecting from mobile phishing threats with Smishing Simulations (beta)

As mobile phishing becomes an increasingly common tactic for attackers, ensuring your security strategy covers every front is more important than ever. That’s why we’re introducing Smishing Simulations – a new feature that allows you to create fully localized and customizable SMS phishing simulations to tackle this rising threat. With this addition, your organization will be up to date and prepared for attacks across all channels, keeping your security strategy comprehensive and current.

Two smartphone screens displaying a smishing simulation. The first screen shows a fake urgent message asking for payment, and the second provides educational feedback about identifying smishing attacks.

Phishing Report Button for Google Workspace

We want reporting to be easy for everyone, so our Phishing Report Button is now available for Google Workspace users. With just a single click, employees can flag suspicious emails directly from their inbox. This integration not only encourages proactive security behavior but also provides your security team with valuable insights to quickly identify and address potential threats.

SoSafe's phishing report button integrated into Google Workspace, prompting the user to report an email as phishing.

Real-time insights for proactive human risk management

Our Human Risk OS™ platform, designed to detect, analyze, and mitigate human-related security risks, has just become even more powerful with additional advanced analytics and reporting capabilities. Combining behavioral insights, cultural data, and real-time actions provides a comprehensive view of human risk across your organization.

The platform now enables security teams to focus on key data points, offering actionable insights while safeguarding user privacy. This empowers smarter, faster decisions and helps tailor your approach to managing human risk. With enhanced precision in monitoring progress, you can quickly pinpoint critical areas that require immediate attention. This way, you can ensure your security strategy remains proactive and effective.

The Human Risk OS platform displaying the Human Security Index with core KPIs, intervention suggestions, and detailed awareness, behavior, and culture scores.

Advanced Sofie: AI-driven intelligence, now smarter

Sofie acts as a reliable cyber security companion, answering questions, guiding employees through challenges, and easing the burden on your security team. You probably already know Sofie’s ability to turn employees into the strongest line of defense. Sofie is always accessible and is the cornerstone that allows security teams to integrate security into the daily work lives of employees. Building on this strong foundation, we’re thrilled to introduce powerful new features that take Sofie’s capabilities to the next level.

Real-time alerts and targeted interventions

Sofie enhances organizational security with two powerful features: real-time alerts and targeted interventions. Real-time alerts keep employees informed about emerging threats as they happen, providing concise, actionable notifications that empower them to respond immediately and mitigate potential risks.

Sofie’s targeted interventions enable administrators to address specific behaviors and needs within the organization. These interventions include personalized nudges to encourage secure habits, praise for security champions to reinforce positive actions, and escalation prompts to address risky behaviors. By combining timely threat awareness with tailored interventions, Sofie not only strengthens immediate defenses and fosters a positive security culture but also ensures security becomes an integrated, natural part of everyday work.

Invervention for "Reduce knowledge decay," with a Sofie chat message nudging a user to resume learning modules.

Sofie insights and hot topics

Sofie’s capabilities extend far beyond real-time alerts and targeted interventions. Its latest AI-driven upgrade analyzes user interactions from the past week, uncovering actionable insights into key security themes like handling sensitive data and adhering to guidelines. With detailed behavioral insights, such as timestamps and percentage-based data, administrators can identify trending topics, address knowledge gaps, and fine-tune training programs to enhance the impact of security initiatives.

Analytics dashboard from Sofie displaying user statistics, messages, tickets, and trending security topics.

Comprehensive ecosystem integration for seamless security

To enhance the effectiveness of your security efforts, SoSafe now integrates effortlessly with your existing tools, such as Vanta, Power BI, OneDrive, and more. By unifying data across platforms, these integrations provide a comprehensive view of your security landscape, enabling deeper analysis and more informed decision-making. This allows you to maximize the value of your cyber security investments while fostering a cohesive and collaborative approach to managing risks across your organization.

Introducing SoSafe API: Customization at your fingertips

In addition to integrations, we are introducing SoSafe APIs, which provide security teams with the flexibility to customize dashboards, automate reporting, and access real-time insights across systems. These APIs not only streamline workflows but also enable seamless compliance reporting, ensuring your organization meets regulatory requirements with ease. They enable faster, more informed decisions to strengthen security and build long-term resilience.

SoSafe API connecting a user interface to features like customized dashboards, custom notifications, alerts, and compliance reporting.

Driving innovation to protect what matters most – your organization’s security

These new features represent a significant leap forward in advancing security awareness training and human risk management. With personalized learning experiences, real-time insights, and automated processes, SoSafe continues to lead the way in empowering organizations to strengthen their security culture and effectively manage human risk. Stay tuned for even more updates as we continue to push the boundaries of what’s possible in human risk management.

We’re excited for you to experience these innovations firsthand and see the measurable impact they can have on your security. Our experts are ready to help you explore how these features can fit seamlessly into your security strategy and how they can contribute to achieving your organization’s goals.

See it firsthand

Book a demo

Curious to know how our new features can transform your approach to security and human risk? We can help you!

Do you want to stay ahead of the cyber game?

Sign up for our newsletter to receive the latest cyber security articles, events, and resources. No spam, only content that truly matters.

Newsletter visual

Request a demo

Learn how our platform can help you empower your team to continuously avert cyber threats and keep your organization secure. Schedule a demo and one of our experts will contact you soon.

The Forrester Wave™ Strong Performer 2024: Human Risk Management Solutions