Module 1
Threats that reach people
Phishing, impersonation, payment diversion, malicious files, and urgent requests.
Universal · Original 101PD learning guide
A nontechnical operating guide for phishing, payments fraud, passwords, access, devices, vendors, privacy, incident recognition, and evidence-preserving response.
Small organizations rarely need every enterprise security tool. They do need clear controls around money, identity, access, data, vendors, backups, and the first hour after something suspicious happens.
Small-business teams · Administrative professionals · Managers · Client-facing staff
Recognize common social-engineering, credential, payment, and vendor fraud patterns.
Apply practical controls for accounts, devices, sensitive records, and payment changes.
Use an incident checklist that preserves evidence and assigns communication responsibility.
Create a prioritized improvement plan appropriate for a small organization.
The final course will expand these modules with original explanations, realistic cases, practice questions, and source review.
Module 1
Phishing, impersonation, payment diversion, malicious files, and urgent requests.
Module 2
Passwords, MFA, permissions, devices, updates, backups, and account recovery.
Module 3
Data inventory, sharing, retention, cloud tools, contracts, and third parties.
Module 4
Triage, containment, evidence, notifications, recovery, and lessons.
Applied portfolio exercise
Assess a fictional organization and produce a prioritized, owner-assigned security and fraud-control plan.
Sources establish current requirements and standards. They do not supply 101PD’s lesson text, scenarios, assessments, or project work.
Current U.S. government cybersecurity guidance for smaller organizations.
A risk-based structure for governing and improving cybersecurity outcomes.
101PD develops its own explanations, examples, assessments, and applied projects.