Train the workday decisions attackers exploit.
Solis Learn turns awareness training into realistic decision practice: inbox pressure, AI data handling, MFA fatigue, file-sharing traps, voice fraud, incident reporting, and mobile work risk. Every mission teaches one practical habit employees can use the same day.
Awareness content that feels like a workplace simulation.
Inbox Siege: Phishing & Business Email Compromise
Work through a live-looking inbox, inspect a suspicious vendor message, and make the safest next move before money or credentials are lost.
MFA Meltdown: Passwords, Prompt Fatigue & Account Hygiene
Build safer password habits, spot MFA fatigue, and decide how to recover when a login pattern looks wrong.
Prompt & Prejudice: Safe Generative AI at Work
Decide what belongs in an AI prompt, what must stay out, and how to use AI without leaking sensitive business context.
Face/Off Payroll Edition: Deepfakes, Voice Clones & Executive Fraud
Practice resisting urgent requests that sound real, look real, and still need independent verification.
The QR Trap: Mobile Safety, Smishing & Public Wi‑Fi
Practice safer decisions around text-message lures, QR codes, and work performed from cafés, airports, and event spaces.
Permission Slip: Shadow AI, Plug-ins & Connected Apps
Understand why browser plug-ins, AI assistants, and unsanctioned SaaS tools can quietly gain access to more company data than expected.
ChatOps Impersonator: Teams, Slack & Internal Message Fraud
Practice spotting internal-style message fraud, fake help requests, and the “quick favour” tone that thrives in chat tools.
Incident Radar: Reporting, Evidence & First Response
Know what to report, what evidence helps, and how to respond without making the situation worse.
Meeting Mirage: Calendar Invites, Fake Join Links & Last-Minute Pressure
Practice resisting fake meeting invites that weaponize calendar trust, browser logins, and executive timing pressure.
File Share Frenzy: OAuth Consent, Shared Docs & Cloud Collaboration Traps
Spot malicious shared-document flows, fake file portals, and connected-app consent traps before access tokens are handed away.
The Helpful Stranger: Data Handling, AI Assistants & Secure Collaboration
Practice handling over-helpful AI assistants, broad data-access requests, and collaboration shortcuts that can expose more than employees realize.
Agent Autopilot: AI Tool Use, Approvals & Human Review
Control agentic AI workflows before an assistant sends email, changes records, or takes action with the wrong context.
Model Mirage: Hallucinations, Sources & Decision Checks
Catch unsupported AI claims, fabricated citations, and overconfident summaries before they influence real decisions.
Extension Exposure: Browser Add-ons, Tokens & Web Data
Evaluate browser extensions before they read every page, capture tokens, or quietly exfiltrate sensitive work data.
Ransomware Ready: Backups, Isolation & First Decisions
Practice the first hour of a ransomware suspicion: isolate, preserve evidence, report fast, and avoid making recovery harder.
Advanced Threat Intelligence Models
Use AI to turn CVE, KEV, IOC, vendor, ATT&CK, and report feeds into ranked, decision-ready security intelligence.
Autonomous Agents for Cyber Defence
Design cyber defence agents with scoped authority, guardrails, auditability, approvals, and rollback for production SOC use.
Adversarial Red-Teaming AI
Test AI-enabled security systems for prompt injection, poisoning, evasion, extraction, unsafe tool use, and output manipulation.
SOAR + LLM Integration
Connect LLMs into SOAR workflows for enrichment, classification, recommendations, approvals, and reversible response actions.
AI Governance and Policy for Security Leaders
Build AI cyber governance with risk registers, system inventories, accountability matrices, review boards, and approval workflows.
AI-Enhanced Incident Response
Use AI to support incident triage, clustering, timeline reconstruction, evidence review, response rationale, and reporting.
AI Forensics and Behaviour Logging
Preserve model, prompt, tool-call, decision, signer, timestamp, retention, and residency artefacts for forensic reconstruction.
Mission-Driven Security Consulting & Assessment Methodology
Run a mission-first assessment: discovery interviews, messy inventories, evidence collection, risk translation, and practical executive summaries.
Microsoft 365 & Google Workspace Security Assessment
Assess M365 and Google Workspace tenants for identity, admin privilege, email security, sharing, logging, evidence, and prioritized fixes.
SaaS Ecosystem, Identity, and Unfamiliar Tool Hardening
Use a repeatable assessment lens for Slack, Zoom, 1Password, Okta, integrations, audit logs, retention, lifecycle, and unknown SaaS tools.
Practical Security Rollout, Change Management, and Client Enablement
Turn findings into safe implementation plans with phases, owners, communications, exceptions, rollback paths, champions, and adoption measures.
Polished Deliverables, Incident Response Planning, and Senior-Level Client Delivery
Create client-ready reports, executive summaries, technical appendices, readouts, incident plans, tabletops, and calm evidence-backed recommendations.
Capstone: Mission-Driven Security Engagement Simulation
Complete a RipRap-style engagement from discovery through assessment, evidence, findings, roadmap, rollout plan, and client presentation trade-offs.
COBOL Foundations for Enterprise Delivery
Learn COBOL structure by comparing valid programs, arranging divisions, and simulating a minimal batch run.
COBOL Data, Copybooks, and Financial Precision
Practice PIC clauses, packed decimal judgement, copybook reading, and fixed-width record interpretation.
COBOL Batch, JCL, and Operational Reliability
Connect COBOL SELECT names to JCL DD names, handle file status, and design restartable batch changes.
COBOL DB2 and CICS Transaction Patterns
Work with embedded SQL, SQLCODE handling, CICS response checks, and transaction-safe thinking.
COBOL Modernization, Testing, and Code Review
Modernize legacy COBOL safely with characterization tests, structured refactors, API boundaries, and production-aware review.
Vendor Access Gate: Third-Party Risk & Supply-Chain Social Engineering
Triage a contractor access request, verify the business owner, constrain privileges, and respond when a trusted vendor account behaves strangely.
Executive on the Move: Travel, Devices & Public-Space Security
Navigate airport Wi-Fi, charging, border and hotel risks while keeping corporate devices, conversations, and data protected.
Secure Floor: Tailgating, Visitors & Sensitive Workspaces
Challenge unsafe entry, handle visitors professionally, protect printed information, and respond to an unknown device in a restricted area.
Data Lifecycle Drill: Classify, Share, Retain & Dispose
Move a sensitive dataset through classification, collaboration, retention, and disposal without losing control of access or evidence.
RAG Under Attack: Knowledge Poisoning & Indirect Prompt Injection
Detect malicious instructions hidden in retrieved content, preserve source trust, and contain a compromised enterprise AI assistant.
AI Vendor Gate: Procurement, Model Risk & Contract Controls
Evaluate an AI vendor before purchase, test data and security claims, and set measurable approval conditions for organizational use.
Copilot Secure Build: AI Coding, Secrets & Dependency Safety
Use an AI coding assistant without leaking secrets, accepting unsafe code, or importing vulnerable and unlicensed dependencies.
AI Incident Command: Contain, Investigate & Recover
Run a coordinated response when an enterprise AI service exposes data, takes an unsafe action, or begins producing harmful outputs at scale.
Fairness in the Loop: Bias, Accessibility & High-Impact AI Review
Review an AI-assisted people decision for subgroup harms, weak proxies, accessibility barriers, and unsafe automation before it affects staff.
Geometry Lab: 3D Nets & 4D Object Reasoning
Fold polyhedron nets, trace face adjacency, and distinguish tesseract nets from projections and cross-sections.
Logic Systems Lab: Propositions, Predicates & Possible Worlds
Practice propositional, predicate, higher-order, modal, fuzzy, and temporal reasoning, then solve a constraint game.
Digital Logic Lab: Binary & Ternary Gates
Trace binary circuits, half-adders, universal gates, and a clearly defined three-valued gate algebra.
DNA Lab: Sequence Alignment & Mapping
Read strand direction, compute reverse complements, inspect alignments, and interpret mapping evidence without overclaiming.
Neuroscience Lab: Synaptic Gating & Signal Integration
Trace chemical transmission and explore how release, inhibition, timing, conductance, and network state regulate signal flow.
Evidence Before Conclusions: Critical Analysis at Work
Separate observation from interpretation, test causal claims, evaluate sources, and update conclusions when evidence changes.
Problem Framing & Root-Cause Analysis
Turn vague complaints into testable problem statements, distinguish symptoms from causes, and verify root causes before acting.
Hypothesis-Driven Troubleshooting Under Pressure
Use a repeatable diagnostic loop to reproduce, isolate, test, recover, and escalate problems without random changes.
Decision Quality Under Uncertainty
Calibrate confidence, use base rates and expected outcomes, design reversible decisions, and recognize when new evidence should change the plan.
Systems Thinking & Complex Problem Solving
Map feedback loops, constraints, delays, and second-order effects so local fixes improve the whole system rather than move the problem.
Why this content is built differently.
Each lesson starts with a recognizable workplace situation, then ties the decision back to the signal employees should remember.
Results explain why a response works, what to avoid, and how to apply the same habit in email, chat, meetings, mobile work, and AI tools.
Best-score XP, levels, and achievements create a reason to improve while keeping the experience grounded in business risk.