RansomLeak
RansomLeak Security Training
RansomLeak builds security awareness training that employees actually engage with. The platform replaces passive video courses and slide decks with interactive 3D simulations where people face realistic cyberattack scenarios and make decisions that affect the outcome.
The company was founded by the team behind Kontra Application Security Training after years of watching the same problem repeat: organizations invest in compliance training, employees click through it on autopilot, and phishing emails keep landing. The training wasn't failing because people didn't care. It was failing because the format didn't work.
RansomLeak's simulations are modeled on documented attack patterns. Employees don't watch a video about business email compromise. They open a suspicious email, decide what to do, and see what happens next. That kind of active decision-making under pressure produces better retention than any slide deck.
What the training covers:
- Phishing and spear-phishing recognition
- Social engineering (phone, chat, in-person)
- Sensitive data handling and classification
- Password hygiene and credential security
- Physical security (tailgating, device theft, removable media)
- Incident reporting procedures
- And more
Gamification drives completion across large workforces. Points, badges, leaderboards, and achievements give employees a reason to come back, and give security teams clear visibility into progress and performance.
Delivery options:
- SCORM packages (1.2 and 2004) that integrate directly with existing learning management systems. Tested with Cornerstone, Workday, SAP SuccessFactors, Docebo, 360Learning, Moodle, Canvas, Blackboard, and others. Tracks completion, scores, time spent, and simulation performance.
- Standalone cloud-based LMS for organizations that want a dedicated security training environment. Includes user management, real-time analytics, campaign scheduling, department-based permissions, SSO/MFA authentication, and tenant whitelabeling.
Who we work with:
Mid-market and enterprise organizations in finance, healthcare, technology, and government where security compliance is an operational requirement and a single incident can trigger regulatory consequences. Our typical buyers are CISOs, IT security directors, HR/L&D leaders, and compliance officers who need training that changes behavior, not just checks a box.
Industry Focus
- E-commerce - 6%
- Neo-banks - 6%
- Defense & Aerospace - 6%
- Industrial - 6%
- Insurance - 6%
- Banking - 6%
- Enterprise - 6%
- Startups - 6%
- Business Services - 6%
- Telecommunication - 6%
- Information Technology - 6%
- Healthcare & Medical - 6%
- Government - 6%
- Financial & Payments - 6%
- Education - 6%
- Other Industries - 5%
- Oil & Energy - 5%