Said It Here

Why is security awareness training so rigid and hard to customize?

Most security training platforms force a rigid monthly schedule and rely on long, ten-minute videos that clients resist watching. Administrators also face a lack of flexibility in micro-training options and clunky management tools that make tracking and assigning courses a manual chore.

What people tried

Every workaround mentioned in the threads below. We haven’t tested any of them — and nobody here is claiming they worked.

  1. 1
    manually managing the cadence
  2. 2
    using alternative security awareness platforms like Hook Security that offer shorter training videos and automated campaign frequencies
  3. 3
    Switching to different training vendors like KnowBe4, Metacompliance, BullPhish ID, Ninjio, or Huntress managed SAT
  4. 4
    Recording videos for users who missed sessions to watch later
  5. 5
    Manually noting who attended mandatory training sessions

In their words

Unedited, grouped by where they were said, most upvoted first within each place, each linked to the thread it came from.

r/msp1 person · September 2026

“One thing I dislike a bit is the managed method doesn't allow you to select a cadence, it's monthly or you need to manually manage.”source ↗

“The other thing is the videos tend to get towards 10 minutes rather than a shorter video which is a harder sell in general.”source ↗

“the issue we find is a lack of flexibility managing their micro trainings.”source ↗

bbztds · r/msp · 12 upvotes
r/sysadmin1 person · September 2026

“We currently use the training built into proofpoint but oh my is it awful to manage (can't filter and assign by licenced users, can't easily extend or notify for users who haven't completed training) Basically it requires too much maintenance / input.”source ↗

Longjumping-Time2076 · r/sysadmin

Where this came up

People with this problem also raised