Breach Secure Now! (BSN) is a white-labeled service built for MSPs. BSN focuses on a client's weakest security link - their employees. Employee mistakes result in a majority of data breaches. The BSN Unlimited Clients Subscriptions provides clients with employee security awareness training and Dark Web Breach Assessments.
The Breach Prevention Platform (BPP) Subscription is a per client upgrade that provides continuous weekly micro training, simulated phishing attacks, security policies, a…
N/A
Cofense PhishMe
Score 9.6 out of 10
Enterprise companies (1,001+ employees)
Cofense PhishMe is a cyber threat and phishing simulator meant to be of use in training employees to be wary against threats and also to gain information about general employee threat knowledge and preparedness. A free trial is available for small business.
N/A
Pricing
Breach Secure Now
Cofense PhishMe
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Breach Secure Now
Cofense PhishMe
Free Trial
No
Yes
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Breach Secure Now
Cofense PhishMe
Features
Breach Secure Now
Cofense PhishMe
Security
Comparison of Security features of Product A and Product B
Breach Secure Now
10.0
Ratings
16% above category average
Cofense PhishMe
7.8
Ratings
9% below category average
Role-based user permissions
10.00 Ratings
8.20 Ratings
Single sign-on capability
00 Ratings
7.40 Ratings
Security Awareness Training
Comparison of Security Awareness Training features of Product A and Product B
We are happy with it. It can schedule phishing tests out for months, You can run a report of what passwords are on the dark web. You can schedule when you want the trainings to be released, they continue to add new phishing campaigns and new training periodically. It is also very easy to use.
It's a very apt tool for the scenario where there are multiple users and verticals in an organisation. Phishing Campaigns and recording their response actions is quite easier through this tool. Not suitable for a small organization (less than 500) that can maybe use some open tools or self-made emails for campaigns.
Many of the URLs come in with an unknown reputation and although it may be challenging from threat intel feeds, somehow allowing a more in-depth analysis of the URL can provide better/quicker decision making or validation.
Adjustable widgets for reporting, although the provided are already built very well.
Provide in-house templates or summaries of actionable items, such as a single brief on a major phish.
Most features are very easy to setup. We have Azure sync so we sync accounts from a group in Azure, we have monthly phishing emails scheduled for up to a year out. We also have automations for when to release new trainings and what trainings show as available for each client
Its built with UX in mind and is aimed at non-tech people, to ensure that almost everyone can run the campaign. But if we go deeper - sometimes you will need an HTML editor or support in order to figure out some advanced edits you might want to add in your scenarios.
I have not had to use their support for pretty much anything. The software works well, and is very intuitive. I would imagine their support would be rather basic as there is not too much that can go wrong with a report phishing button, and if it were I would probably consider a different software.
PhishMe is a market leader in terms of phishing simulation solutions. The customization appears unmatched when compared with competitors and the support we have experienced from Cofense has been excellent. Phish me offers lots of realistic templates which are updated regularly which is far ahead of other solutions. Phish me also provides lots of detailed statistics as well as high-level numbers which are really useful for some clients who want details, and others who only want high-level overviews.
From a normal user's perspective, it's an easy and fast, very very user-friendly phishing email reporting structure. No need to remember any email address, no need for sophisticated handling of malicious emails while sending/ reporting. Just a click and it is done.
From the admin and analyst point of view: Easy and clutter-free triaging pane, IOC reputation check facility, Rules and Recipes section for automation and focused triaging, Notification to the reporter based on the triaging done is really a helpful feedback loop.
Overall: Simple to handle, less learning curve, well managed, less administration time, fewer issues, less maintenance time.