Authorised email simulations
Plan controlled, authorised email-based phishing simulations scoped to recipients your organisation is permitted to include.
Authorised email-based simulations
Authorised email-based phishing simulations that help teams recognise and respond to suspicious email. ASPE is a controlled awareness capability, not penetration testing, and it does not guarantee improved security outcomes.
Capability
Plan controlled, authorised email-based phishing simulations scoped to recipients your organisation is permitted to include.
Provide organisation context such as industry, tools, and culture so campaign email variations can reflect realistic internal communication styles.
Set launch windows, deadlines, and per-recipient email limits so delivery can be paced within a daily email capacity.
Review delivery and click engagement in your workspace, and send participants to a safe education page that explains missed warning signs.
Campaign path
Upload a CSV containing name, email, role, and department for authorised recipients. You can optionally upload a custom senders CSV to support realistic vendor-style email scenarios.
Define how many emails each recipient may receive and set launch and deadline dates. Campaign planning helps keep delivery within a paced daily email capacity.
Provide organisation context such as industry, software stacks, and internal culture so the campaign can generate context-aware email variations.
Review the Acceptable Use Policy, confirm authorisation, and launch the campaign. You can monitor de-duplicated engagement metrics from your workspace dashboard.
Start in a tenant-scoped workspace and confirm permission before launch.