Checklist

Employee Security Awareness Checklist

The habits every employee should be able to demonstrate, written as a self-check rather than a lecture.

Intended audience
Every employee and contractor
Difficulty
Beginner
Estimated time
10 minutes
Access
Free
NIST CSF
All industries

Version v1.0.0 · Last reviewed 2026-08-01 · Document owner: ComplianceAnvil Content Team

What you will be able to do

  • Self-check everyday habits like password management, MFA, and screen locking against a plain-language list.
  • Recognize how to report a suspicious message and verify payment changes by phone.
  • Identify which tools, including AI tools, are approved for handling company data.
  • Know the steps to take if a device is lost.

Use it as a team exercise

Hand this out after training and ask people to complete it honestly. Anything most of the team cannot check is a training topic, not a discipline problem.

Key takeaways

  • This checklist is designed as a self-check after training, not a lecture, so items should be answered honestly.
  • Verifying payment or bank-detail changes by phone using a known number is called out as a specific fraud defense.
  • Employees should know which tools, including AI tools, are approved for company data.
  • If most of the team cannot check an item, the checklist treats that as a training gap rather than a discipline problem.

Checklist

Progress0 of 10 (0%)

Progress is saved in this browser only. It is not a compliance record.

Sources

Written from these public, authoritative publications. ComplianceAnvil paraphrases and summarizes them; it does not reproduce copyrighted control text.

Earn a Certificate of Training Completion

Complete every section, acknowledge, and pass the knowledge check.

Sections opened0 of 1
Knowledge check

80% required to pass. Answers are graded on our servers.

1. How is this checklist meant to be used, per its instructions?

2. What does the checklist recommend for verifying a bank-detail change request?

3. What should employees know about approved tools, according to the checklist?

4. If most of the team cannot check an item, what does the checklist say that indicates?

This certificate recognizes completion of educational training material only. It is not a professional certification, accreditation, license, compliance assessment, audit result, or attestation of compliance with any law, regulation, or contract requirement. ComplianceAnvil is not a certification authority, accreditation body, assessor, or law firm.

How this was written and reviewed

Published
Author
ComplianceAnvil Editorial Team
Technical reviewer
ComplianceAnvil Technical Review Board
Jurisdiction
United States (federal)
First published
2026-08-01
Last reviewed
2026-08-01
Next review due
2027-08-01

Version v1.0.0 · Document owner: ComplianceAnvil Content Team

Important

This resource is educational readiness material. ComplianceAnvil is not a certification authority, assessor, or law firm, and this content is not legal advice or a compliance assessment.

Matched on shared frameworks, topics, and program packs.

Template

Security Awareness Log

A single record proving who trained, when, on what version, and with what result.

Beginner
15 min
Free
NIST SP 800-171
NIST CSF

Published · v1.0.0 · 2026-08-01

Template

Acceptable Use Policy

What employees may and may not do with company systems, data, devices, and AI tools.

Beginner
25 min
Free
NIST CSF

Published · v1.0.0 · 2026-08-01

Template

Annual Review Checklist

The once-a-year pass that keeps a program from quietly going stale.

Beginner
30 min
Free
NIST CSF
ISO 27001

Published · v1.0.0 · 2026-08-01

Template

Backup Verification Log

Proof that backups exist, run, and have actually been restored at least once.

Beginner
15 min
Free
NIST CSF
CIS Controls

Published · v1.0.0 · 2026-08-01

Guide

Building a Security Program from Scratch

A ninety-day sequence for a business with nothing written down yet — cheapest, highest-impact work first.

Beginner
14 min
Free
NIST CSF
CIS Controls

Published · v1.0.0 · 2026-08-01

Guide

Common Compliance Mistakes

The recurring, expensive errors we see small businesses make — and the cheap correction for each.

Beginner
9 min
Free
NIST CSF
NIST SP 800-171

Published · v1.0.0 · 2026-08-01

Put this into practice

Resources tell you what good looks like. A Program Pack does the work with you — generated documentation, tracked controls, training, and evidence in one workspace.