SKILLS AWARENESS GOVERNANCE RISK TECHNICAL COMPLIANCE EXECUTIVE
Training & Development

BUILD YOUR
HUMAN FIREWALL

Technology alone does not stop breaches. From board-level briefings to hands-on technical labs, Paragon training programmes turn your biggest vulnerability into your strongest defence.

View All Courses
10+
Courses Available
4,000+
Delegates Trained
CPD
Certified Courses
4.9/5
Average Rating
Bespoke
Custom Programmes
► CYBER AWARENESSPhishing Simulation ► ISO 27001 TRAININGAI Security ► EXECUTIVE BRIEFINGSTable-Top Exercises ► DEVSECOPSGDPR Practitioner ► CLOUD SECURITYIncident Response Training ► CYBER AWARENESSPhishing Simulation ► ISO 27001 TRAININGAI Security ► EXECUTIVE BRIEFINGSTable-Top Exercises ► DEVSECOPSGDPR Practitioner ► CLOUD SECURITYIncident Response Training
Course Catalogue

TRAINING FOR EVERY LEVEL

Select your audience to see the right courses, from all-staff awareness through to technical deep-dives and boardroom briefings.

Foundation

Cyber Awareness Essentials

The essential course for every employee. No technical background required.

Half Day
Up to 30
On-site / Virtual
  • Recognise phishing, smishing, and social engineering
  • Safe password practices and MFA adoption
  • Handling sensitive data and clear desk policy
  • What to do if you think you have been compromised
Book This Course
Foundation

Phishing Simulation Programme

Real phishing simulations with instant training at the point of failure.

Ongoing
Entire Org
Cloud Platform
  • Monthly simulated phishing campaigns tailored to your org
  • Instant micro-training for clicked links
  • Management dashboard with click-rate reporting
  • Department-level benchmarking and trend analysis
Book This Course
Foundation

GDPR & Data Protection Awareness

Practical data protection training for staff handling personal data.

Half Day
Up to 25
On-site / Virtual
  • What personal data is and how to recognise it
  • Lawful basis, consent, and data subject rights
  • How to report a data breach and the 72-hour rule
  • Practical dos and don'ts for your role
Book This Course
Intermediate

Cyber Risk for Managers

Help line managers understand their security responsibilities and team risk exposure.

Full Day
Up to 20
On-site
  • Reading and interpreting a risk register
  • Security responsibilities within your team
  • How to report and escalate security incidents
  • Supplier and third-party risk fundamentals
Book This Course
Intermediate

Incident Response Table-Top

A simulated cyber incident to test your team decisions under pressure.

Half Day
Up to 15
On-site
  • Scenario-based ransomware or breach simulation
  • Tests communication, escalation, and decision-making
  • Facilitated debrief with gap analysis
  • Written report with improvement actions
Book This Course
Advanced

Secure Development (DevSecOps)

Embed security into your development pipeline from design to deployment.

2 Days
Up to 16
Hands-On Labs
  • OWASP Top 10 and secure coding practices
  • SAST/DAST tooling and CI/CD pipeline integration
  • Container and infrastructure-as-code security
  • Secrets management and dependency scanning
Book This Course
Advanced

AI Security & Governance

Security and governance for teams building, deploying, or procuring AI systems.

Full Day
Up to 20
On-site / Virtual
  • AI threat landscape: prompt injection, data poisoning, model theft
  • OWASP LLM Top 10 and MITRE ATLAS frameworks
  • EU AI Act obligations for developers and deployers
  • Safe and responsible AI usage policies
Book This Course
Intermediate

Cloud Security Fundamentals

AWS, Azure, and GCP security essentials for engineers and architects.

Full Day
Up to 16
Virtual / Labs
  • Shared responsibility model across major cloud providers
  • IAM, network security groups, and least-privilege design
  • Misconfiguration risks and detection tooling
  • Cloud-native logging, monitoring, and alerting
Book This Course
Strategic

Executive Cyber Briefing

A non-technical strategic briefing designed for C-suite and board members.

2-3 Hours
Up to 12
Boardroom
  • Current threat landscape explained in plain language
  • How to ask the right questions of your security team
  • Director liability and regulatory obligations
  • Benchmarking your investment against peer organisations
Book This Briefing
Strategic

Board Cyber Simulation

A facilitated crisis scenario. How would your board respond to a major breach?

Half Day
Up to 10
Boardroom
  • Realistic breach scenario with injects and media pressure
  • Tests crisis communications and decision-making
  • Regulatory notification obligations in practice
  • Debrief report with board-level recommendations
Book This Simulation
Practitioner

ISO 27001 Lead Implementer

Hands-on ISMS implementation training from scoping to certification readiness.

2 Days
Up to 12
CPD Certified
  • ISO/IEC 27001:2022 clause-by-clause walkthrough
  • Scoping, risk assessment, and SoA development
  • Building and documenting your ISMS
  • Preparing for Stage 1 and Stage 2 certification audits
Book This Course
Practitioner

GDPR & Data Protection Practitioner

In-depth UK GDPR training for DPOs, compliance officers, and legal teams.

Full Day
Up to 15
CPD Certified
  • UK GDPR and Data Protection Act 2018 obligations
  • DPIAs, legitimate interest assessments, and RoPA
  • International data transfers post-Brexit
  • ICO enforcement trends and case studies
Book This Course
How We Deliver

TRAINING THAT FITS YOUR WORLD

Every course is available in multiple formats. We come to you, or you attend us. Virtual or in-person. Half-day or multi-day. We adapt.

On-Site Instructor-Led

A Paragon trainer comes to your premises with tailored scenarios built around your actual environment.

Most Impactful

Virtual Live Session

Fully interactive live training over Teams or Zoom. Same curriculum, same Q&A, no travel required.

Most Flexible

E-Learning Modules

Self-paced online modules with completion tracking, quizzes, and certificates. Perfect for onboarding and annual refreshers.

Best for Scale

Bespoke Programme

Custom content built around your industry, threat profile, and team, delivered however works best.

Fully Tailored

CPD Certified Training

Our practitioner-level courses are CPD certified. Delegates receive a certificate of completion recognised by ISACA (CISM/CISA), (ISC)2 (CISSP), the BCS, and other professional bodies as qualifying CPD activity.

WE BUILD WHAT YOU NEED

Off-the-shelf courses cover common ground. For organisations with specific sectors, threat profiles, or compliance obligations, we design training programmes from scratch built around your actual risks, your actual people, and your actual environment.

From a 30-minute board briefing to a 12-month security culture programme, we scope, design, deliver, and measure it.

01

Discovery Call

We understand your audience, current knowledge level, compliance drivers, and what success looks like.

02

Programme Design

Custom curriculum, scenarios, and exercises designed for your organisation, reviewed and approved before delivery.

03

Delivery

In your preferred format and location. Sessions recorded if required. All materials owned by your organisation.

04

Measurement & Follow-Up

Post-training assessment, knowledge retention scores, and a 90-day follow-up to measure behavioural change.

Your Industry Your Risks Your Team Your Culture Your Sector Your Goals
Pricing Options

CLEAR, FIXED-FEE TRAINING

All pricing is per-session, not per-head, making group training significantly more cost-effective than sending individuals on public courses.

Awareness

STAFF SESSION

Half-day or full-day single-course session

  • Up to 30 delegates per session
  • On-site or virtual delivery
  • Presentation materials included
  • Delegate handout pack
  • Post-training quiz and completion report
  • Certificates of attendance
  • CPD certification
  • Custom content
Organisation

ANNUAL PROGRAMME

Year-round security culture programme

  • Unlimited staff awareness sessions
  • Phishing simulation platform included
  • Quarterly management briefings
  • Annual executive briefing
  • Bespoke content for your sector
  • Training completion dashboard
  • New starter onboarding materials
  • Annual programme review and refresh

COMMON QUESTIONS

Yes, and we strongly recommend it. Generic training produces generic results. We can incorporate your actual policies, your real threat landscape, and scenarios based on incidents affecting similar organisations. Custom content is included in our Annual Programme tier and available as an add-on for individual sessions.

Our practitioner-level courses are CPD certified and recognised by ISACA, (ISC)2 (CISSP), the BCS, and other professional bodies. Delegates receive a certificate of completion that counts as qualifying CPD activity. The number of CPD hours credited varies by body and we confirm the applicable hours at booking.

Awareness sessions accommodate up to 30 delegates. Practitioner and technical courses cap at 12 to 16 to allow hands-on exercises. For large organisations we run multiple cohorts and can train your internal trainers to cascade awareness content. Our phishing simulation platform scales to your entire organisation.

Yes. ISO 27001 Annex A.6.3 requires information security awareness, education, and training. Our awareness sessions directly satisfy this control and we provide completion records and certificates as audit evidence. Content is mapped to Cyber Essentials requirements so you get dual coverage from a single session.

Yes. Our e-learning modules are hosted on a cloud platform and assigned to any number of users regardless of location. Modules are mobile-responsive, take 15 to 30 minutes, include knowledge checks, and issue completion certificates automatically. Completion data is available in a management dashboard. E-learning is included in our Annual Programme and available on a per-module licence basis.

YOUR PEOPLE ARE
YOUR STRONGEST CONTROL.

Book a free training consultation and we will recommend the right programme for your organisation, audience, and budget.