← Back to overview

The phish dives into the 2LRN4 security awareness platform

How phishing campaigns work in 2LRN4: pick scenarios by difficulty and topic, target teams, give feedback, and track results in dashboards.

Phishing simulations let employees practice real-world behavior in a safe environment. In 2LRN4 you can run campaigns across different difficulties and topics, so you can train and measure in a targeted way. The goal is not to “catch people,” but to build a rhythm where employees learn to recognize doubt and report quickly.

How it works in 2LRN4

  1. Your own organization only: campaigns are sent only within your tenant.
  2. No hard participation cap: anyone with an active account can participate.
  3. Repeat campaigns: run simulations as often as your rhythm requires.
  4. Select a scenario by difficulty, language, and topic.
  5. Choose the audience: department, team, or individuals.
  6. Track outcomes in dashboards (opens, clicks, form submissions).
  7. Provide feedback: highlight missed signals and safe actions.
  8. Learn from comparisons: benchmarks help prioritize improvements.

What to optimize for

  • Reporting behavior (how much gets reported?)
  • Speed (how quickly is it reported?)
  • Repetition (improvement over time)
  • Audience differences (where targeted support is needed)

Best practices

  • Be transparent: simulations are part of learning.
  • Avoid naming & shaming. Reward reporting, not perfection.
  • Use short feedback (30–90 sec) immediately after an action.
  • Work with monthly themes or cycles instead of one-off actions.

Phishing campaigns are available in plans that include this module. If you need organization-specific scenarios, custom campaigns are possible.

Want help with implementation?

Book a short demo or discuss your use case. We respond quickly.