B BROCENT

Security · Phishing Test

See your real click-and-report rate — before you commit to a programme.

One realistic phishing campaign against your team, run by a named engineer, with a per-department results report — the fastest, lowest-commitment way to see where the human-risk gaps actually are.

Sample results — illustrative
"Invoice overdue — action required" Simulated campaign · sent to Finance, HR, Ops

Click rate

18%

Report rate

31%

Per-department breakdown in your full report

What's included

One campaign, a real benchmark

A single, no-subscription assessment — not a platform you have to configure and run yourself.

01

Realistic campaign design

A pretext built around real business context — invoices, HR memos, exec requests — selected and sent by a named engineer, not a template picker.

02

Multi-channel option

Email by default, with SMS ("smishing") and voice ("vishing") available for teams that want a fuller picture of human risk.

03

Per-department reporting

Click rate, credential-entry rate, and report rate broken down by department — so you know where the gap actually is, not just that one exists.

04

Results debrief call

A short session walking through the findings and what they mean, with a clear recommendation on next steps.

How it works

From booking to results, in three steps

1

Scope & pretext selection

A short call to confirm target departments and choose a realistic pretext — no generic template blast.

2

Campaign runs

The simulated campaign sends over an agreed window; every click, credential entry, and report is logged in real time.

3

Report & debrief

A per-department results report and a short call — plus a clear recommendation on whether an ongoing programme makes sense for you.

What happens next

A benchmark first, a fix if you need one

A single test tells you where the gap is. It doesn't close it — that's what an ongoing programme is for, and there's no obligation to take that step.

Step 1 — today

Phishing Test

One campaign, one report. See the real numbers before deciding anything else.

Step 2 — if the numbers say so

Security Awareness Training

An ongoing managed programme — quarterly or monthly campaigns, plus training that targets the departments that need it.

See Security Awareness Training →

Before you book

View all FAQs →

Is this the same as Security Awareness Training?

No — this is a single benchmark campaign with no subscription. Security Awareness Training is the ongoing programme you'd move to if the results show you need one. Many teams start here and decide from there.

Full answer →

What happens after the one-time test?

You get the full results report and a debrief call. If the numbers point to a real gap, we'll recommend the right cadence — but there's no obligation to continue.

Full answer →

Do you use generic templates, or something realistic?

A named engineer selects the pretext based on your actual business context — the goal is a realistic test, not a canned template that's easy to spot.

Full answer →

Can we test specific departments only?

Yes — finance, HR, and executive teams are common starting points given their typical exposure to targeted attacks.

Full answer →

Is this different from the social-engineering testing in your Penetration Testing service?

Penetration Testing includes social engineering as one vector within a broader technical assessment. Phishing Test is a focused, standalone benchmark on human risk alone — useful on its own or alongside a pentest.

Full answer →

Why isn't there a price on this page?

Pricing depends on team size, department scope, and channel (email vs. SMS/voice), so we quote it after a short scoping call rather than publish a number that wouldn't apply to most teams.

Full answer →

Book your phishing test

One campaign, one report, no subscription. Tell us your team size and target departments to get started.

Talk to a consultant