Skip to main content

Honey Badger Learning

Phishing, Smishing & BEC Defence for Finance Professionals

Phishing has evolved beyond “dodgy emails.” Finance, trading and banking teams are targeted with realistic brand impersonation, fake document-signing requests, ... Show more
0
0 reviews
Share
Certificate included
HoneyBadger Phishing Smishing Course Image.png
Course details
Duration : 2.5 - 3.5 hours (self-paced)
Lectures : 15
Quizzes : 15
Level : Intermediate
Yes (pass mark required)
  • Description
  • Curriculum
  • Reviews
  • Grade

This course is designed for organisations operating in finance, trading and banking where a single mistaken click can become a material financial event. You’ll learn how modern phishing works across email, SMS (smishing), WhatsApp, voice calls (vishing), and document workflows. We focus on the threats that reliably hit finance teams: invoice and beneficiary change requests, “safe account” pressure tactics, brand impersonation, look‑alike domains, and spoofed communication that appears legitimate.

You’ll leave with:

  • A finance-safe verification playbook (call-back scripts, two-person controls, channel switching)
  • A red-flag radar for email, SMS/WhatsApp and document-signing traps (including legitimate platforms abused for phishing)
  • A clear “what to do in the first 10 minutes” incident checklist aligned with major institutions’ guidance (verify out-of-band, don’t reuse contact details from suspicious messages, report quickly).
  • Practical knowledge checks, scenario labs, and a final assessment to support compliance reporting and audit readiness.
SECTION 4 — Payment Diversion & Beneficiary Change Fraud (Finance Core)
Grade details
Course:
Student:
Enrollment date:
Course completion date:
Grade:
Grade Points
Grade Range
Exams:
Sign in to account to see your Grade
Basic info

By the end, learners will be able to:

  1. Identify phishing, smishing and BEC attempts with high accuracy in finance contexts.
  2. Apply a repeatable verification protocol before releasing payments or approving changes.
  3. Detect the most common attacker tactics: urgency, authority, secrecy, fear, reward, and “process hijack.”
  4. Respond correctly if they clicked, replied, entered credentials, or approved an MFA prompt.
  5. Report incidents fast using safe channels and preserve evidence for investigation.
Course requirements
  • Basic email and mobile-phone literacy
  • Access to your organisation’s payment/approval process documentation (if available)
  • Willingness to follow a short verification habit every time
Intended audience
  • Finance teams (AP/AR), treasury, payroll, trading ops, client services
  • Managers approving payments and beneficiary changes
  • Anyone with access to corporate email, banking portals, and payment workflows