
Gamified Security Awareness Training and Phishing Simulation for Employee Risk
Founded in 2018 and based in Kanata, Ontario, Click Armor built a security awareness training platform for organizations that struggle to get employees to actually participate in mandatory security education. Co-founded by veteran Canadian consultant Scott Wright of Security Perspectives Inc., it targeted CISOs, IT directors and business owners across healthcare, financial services and the public sector, and was sold to buyers of every size, from small businesses through government and enterprise programs.
The approach replaced lecture-style modules with game-based learning: interactive challenges built as graphic-novel scenarios, quizzes and word puzzles introduced a concept, and immediate feedback after each assessment reinforced it. Immersive phishing inbox simulations ran as baseline and final assessments, so susceptibility was measured rather than assumed. A built-in learning management system handled employee onboarding, notifications and reminders, automated course scheduling and reporting, with delivery over web, Android and iOS.
Course libraries covered security basics, phishing recognition, social engineering, passwords and authentication, remote work, operational security, privacy and HIPAA, with variants mapped to SOC 2, ISO 27001, CMMC and PCI obligations. A free public phishing self-test at canibephished.com acted as a lead-in. Against compliance-checkbox training, the stated differentiator was engagement psychology: competition, enjoyment and interactivity driving completion and retention. Since 2025, that content has been delivered and supported by Beauceron Security.



