
AI-Driven Phishing, Vishing and Deepfake Simulation for Human Risk Reduction
Founded in 2021 and headquartered in Paris, Arsen builds social engineering simulation and awareness tooling for organizations that treat their workforce as a live attack surface rather than a compliance checkbox. The company concentrates on sectors where pretexting and fraud carry immediate financial consequence, including financial services, insurance, crypto exchanges, retail and call centers, and states it has trained more than 500,000 employees across over a thousand organizations. Its founding premise is that theoretical awareness content rarely survives contact with a real manipulation attempt.
At the core sits a scenario engine that uses generative AI to produce unlimited unique simulations spanning email links, attachments, SMS, QR codes and business email compromise pretexts, with campaign difficulty adapting automatically to each employee's prior behavior. Voice phishing runs on generative models rather than scripted decision trees, combining voice cloning with real-time dialogue and scheduling logic that paces call delivery to avoid tripping internal alerts. Failures trigger micro-learning delivered through a portal, Microsoft Teams or Slack in under five minutes a month.
Depth on voice and multi-channel attacks is what separates the offering from conventional awareness vendors: vishing, smishing, deepfake and coordinated multi-step scenarios that mirror how help-desk and executive-impersonation fraud actually unfolds in practice. A threat monitoring layer watches for lookalike domains, typosquatting and leaked credentials, feeding genuine pretexts back into simulation design. Reporting exports to PDF, CSV and API, while course content maps to ISO 27001, SOC 2, HIPAA, PCI DSS and GDPR obligations alongside NIST and ANSSI guidance.



