With a decentralized document library, policy version control becomes sloppy and difficult to manage, resulting in outdated policies that aren't fit for purpose.
Policy updates that are announced through company-wide email shots are easily missed, barely read and often forgotten about by employees.
Tracking which employees have acknowledged and approved policies and procedures is crucial for company audits, but difficult to achieve at scale.
Since we are ISO27001 accredited, we need to be able to evidence things like training. This is difficult to manage in a large organization with over 2,000 employees and 25 business areas. The training platform allows us to do this easily and produce reports for managers so they can see their stats compared to other areas and send chasers for those who haven’t completed modules.
We now issue the Phishing and GDPR modules for new starters, plus we send the Advanced Phishing module when people fall for phishing attacks. So, over time, MyCyberIQ has become more integral to our security management and reporting process.