Course track
Cyber Threat Update - Q4 2026
A short quarterly refresher on the newest threats and rule changes: the quishing surge, new CBN BVN and NDPA GAID enforcement, and a new AI voice-clone vendor-call scam script.
Who takes this: All staff, as a recurring quarterly refresher
ISONDPACBNPCIFTC
| Module | Length | What staff learn | Maps to |
|---|---|---|---|
| This Quarter's Top Threat: The Quishing Surge | 3 min | Reconnect this quarter's QR-phishing volume data to existing guidance. | ISO |
| Regulation Watch: New CBN BVN Rules and NDPA GAID Enforcement | 3 min | Reconnect to the CBN BVN rules and GAID training-duty modules. | NDPA, CBN |
| New Scam Script Spotted: AI Voice Clone Vendor Calls | 3 min | Apply the callback rule strictly to a new inbound-call voice-clone variation. | PCI, FTC, CBN |
Compliance codes show which frameworks each module supports; they describe what the training content covers, not a guarantee of legal compliance. Confirm specific clause wording with your own compliance advisor before citing it to a regulator or auditor.