• Phishing IQ
  • Pricing
  • FAQ
securitytask
Sign In
Sign Up
securitytask

Swiss-made gamified security awareness training for SMBs. Turn compliance into a habit your team actually keeps — with NIS2, ISO 27001 & nFADP training evidence.

© Copyright 2026 SecurityTask. All Rights Reserved.

Product
  • Pricing
  • Phishing IQ test
  • FAQ
Get Started
  • Sign In
  • Sign Up
Legal
  • Terms of Service
  • Privacy Policy
  • Cookie Policy
  • Trust & Security
  • DPA
Swiss-made·NIS2 · ISO 27001 · nFADP evidence·Now onboarding teams
Swiss-made security awareness

Turn your team into your strongest firewall

Weekly 3-minute challenges, realistic phishing simulations and one-click NIS2 / ISO 27001 / nFADP evidence — the gamified training your team enjoys and your auditor trusts.

Request a demo Test your phishing IQ
GDPR & nFADP-aligned·Native EN / IT·Demo in 20 minutes
Your progress · this week
Sales team
SWISS MADE
Current streak
12 days
M
T
W
T
F
S
S
Achievement
Phishing Pro
+250 XP
How it works

Security training people don’t dread

Three steps to a security-aware team. No jargon, no four-hour seminars.

01

Assess

A five-minute baseline shows where your team stands today — and who could use a gentle nudge.

02

Learn

Weekly 3-minute missions teach real skills: spotting phishing, strong passwords, safe sharing.

03

Level up

Streaks, XP and team leaderboards keep everyone coming back. Watch risk drop, week over week.

The curriculum

A full programme, not a one-off

A guided path of bite-sized modules — built so a new hire and a board member each learn what matters to them.

Foundations

  • Spot the phish
  • Strong passwords & managers
  • Two-factor authentication
  • Passkeys & passwordless
Gamified by design

The parts that make it stick

Habits beat lectures. We borrowed the best ideas from your team’s favourite apps.

M
T
W
T
F
S
S

Daily streaks

Three minutes a day beats three hours once a year. Streaks build the habit — and the flames are oddly motivating.

Security posture
30d90d1y
Participation
96%
▲ +6 pts
Risk score
24
▼ −31%
Resilience
88%
▲ +12 pts
Risky clicks / weektrending down
Phishing simulations

Real drills, zero shame

We turn every click into a teaching moment — never a gotcha. Our tracking even tells genuine human clicks apart from security-scanner noise, so nobody is blamed for a false positive.

Try the 2-minute test
micros0ft-account.com
M
Microsoft account team
security@micros0ft-account.com
Unusual sign-in detected

Verify your account within 24 hours or it will be locked.

Report Trust
Compliance evidence

The awareness-training evidence auditors ask for

We don’t make you compliant on our own — these frameworks have many controls. We cover the security-awareness training portion and produce the per-person, timestamped records auditors and insurers keep asking for.

2016/679

GDPR

Document training, consent and data-handling awareness in line with EU GDPR.

ISO 27001

ISO 27001

Evidence the awareness controls Annex A asks for, exported in one click.

2022/2555

NIS2

Meet the management-training obligations of the EU NIS2 directive.

nFADP
What we don’t do

The opposite of the training everyone hates

Most “security awareness” is a yearly box-tick people resent — and training people dread is training that doesn’t change behaviour. We built the deliberate opposite.

Most tools
Gotcha phishing that humiliates whoever clicks
SecurityTask
No-blame teachable moments — and reporting is what earns points
Questions

Things teams ask us

How are data protection and compliance handled?+

SecurityTask is Swiss-made and built to align with the GDPR, the Swiss nFADP and NIS2. We keep per-person, timestamped training records and give you one-click audit evidence, with data encrypted in transit and at rest.

Does it help with NIS2, ISO 27001, SOC 2, DORA and nFADP?+

Yes — for the security-awareness training controls of these frameworks (not full-framework certification, which also covers access control, encryption, incident response and more). We produce evidence to support your audit and insurer submissions — per-person, timestamped training records plus policy acknowledgements — for NIS2 (Art. 21(2)(g) and management-body training Art. 20), ISO 27001 (Clauses 7.2/7.3 & A.6.3), SOC 2 (the competence & internal-communication criteria), DORA (Art. 13(6)) and nFADP/GDPR (Art. 32), exportable to PDF or CSV in one click. Records are append-only and tamper-evident.

Which languages is the content in?+

Native English and Italian (not machine-translated). German and French are coming — ideal for multilingual teams.

Ready when you are

Make security a habit, not a headache.

See it on your own team in a 20-minute demo. Swiss-made, GDPR-aligned, built for NIS2 awareness training.

Request a demo Test your phishing IQ
Swiss-made · GDPR-aligned · Cancel anytime
  • Social engineering
  • Threats & scams

    • Ransomware defence
    • CEO / invoice fraud (BEC)
    • Phone & SMS scams
    • AI & deepfakes
    • QR-code phishing
    • Safe browsing & downloads

    Workplace & devices

    • Handling sensitive data
    • Sharing data safely
    • Public Wi-Fi & travel
    • Removable media & USB
    • Mobile & cloud/SaaS
    • Physical security

    Governance & risk

    • The first 10 minutes (incidents)
    • Report it fast
    • Insider threat
    • Supply-chain risk
    • Executive targeting & whaling
    • Cyber risk for leaders

    25+ bite-sized modules · native EN & IT · new content added regularly

    1,850
    XP / wk

    XP & levels

    Every lesson, drill and good catch earns points. Real progress your team can actually feel.

    1Operations9,840
    2Engineering9,210
    3You · Sales8,760
    4Finance7,500

    Team leaderboards

    A little friendly rivalry between departments. Bragging rights very much included.

    88%
    Phishing pass rate
    Swiss made Export NIS2 report
    Admin insights

    See your whole org at a glance

    A live dashboard for the people who answer to auditors. Track participation, spot at-risk teams, and export proof in one click.

    • Participation & risk, liveReal-time completion and a single risk score you can act on.
    • Find at-risk teams earlyDrill into departments and people who need a nudge — before incidents.
    • Audit exports in one clickPer-person, timestamped awareness-training evidence for GDPR, ISO 27001 and NIS2.

    Swiss nFADP

    Aligned with the revised Swiss Federal Act on Data Protection.

    One-click PDF & CSV evidence packs · NIS2 · ISO 27001 · SOC 2 · DORA · nFADP · cyber-insurance

    Most tools
    A public “wall of shame” that names clickers
    SecurityTask
    Per-person data is admin-only; teams compete, individuals are never exposed
    Most tools
    One 45-minute compliance video, once a year
    SecurityTask
    3-minute weekly missions that actually stick
    Most tools
    Weeks of setup and a full-time admin to run it
    SecurityTask
    Set-and-forget: role-based paths auto-assign and run themselves
    Most tools
    Condescending, fear-first content
    SecurityTask
    Respectful, practical, genuinely enjoyable to complete
    How much content is there, and how often is it updated?+

    A guided programme of 25+ bite-sized modules across four tracks — from phishing and passwords to AI, passkeys, incident response and executive whaling — each ~3–5 minutes. We add new modules and phishing examples as threats evolve.

    Do employees get a certificate?+

    Yes. Every learner can download a dated, branded completion certificate with a verification ID — useful as personal proof and as awareness-training evidence for NIS2, ISO 27001 and nFADP.

    How do the phishing simulations work?+

    Italian- and Swiss-localised templates, with tracking that tells genuine human clicks apart from security-scanner noise — so staff are never blamed for a false positive.

    Does the gamification shame poor performers?+

    Never. Leaderboards are by team, not individual. We reward positive behaviour (like reporting an email) and never expose individual employees.

    How do we get started?+

    Book a short demo and we’ll set your team up — tailored to your size and country, and your compliance needs (NIS2, ISO 27001, nFADP).