I have been doing some research for firms that offer both on-site security awareness training along with the development of a security awareness program. The bottom line is that while our environment is small, it is clear that our awareness efforts to this point have not been enough. There is also a desire to conduct an onsite training exercise for key personnel.
I can find a number of firms--some big ones such as KnowBe4, Wombat, and MediaPro, that offer program development. Some of them offer onsite training, but I have a feeling that I may have to look to a smaller vendor or local firm to provide onsite training. Our current program is a mix of messaging, LMS-based training done at orientation and regularly thereafter, and phishing simulation from a vendor.
I am hoping others can offer some feedback on vendors they may have engaged.
Thanks!