TSAT is a security awareness training platform by Threat cop. The dashboard provides a centralized view of your organization's cybersecurity awareness performance, simulated phishing results, training progress, and overall risk posture.
Step 1- From the T-Admin portal navigate to TSAT Application and the first option that will appear will be dashboard
Step 2- This is how your dashboard will look and now we will be understanding about each section of it
2.1:
As per the above screenshot:
Attacks
Refers to the total number of phishing, smishing, or vishing emails/SMS/calls simulated and delivered to users. Represents the volume of threat simulations executed in all campaigns
Clicks
Number of users who clicked on the phishing links in simulation messages. Indicates initial engagement or susceptibility to social engineering.
Hacks
Users who went beyond clicking — typically entered credentials or submitted sensitive data on the fake landing page.
Campaign
Total number of awareness and attack simulation campaigns conducted. Includes phishing, smishing, vishing, or combined campaigns.
Templates
Number of unique templates used or created for simulations and awareness. Includes phishing email templates, awareness content, and landing pages
License
The License section shows your subscription type, total and used user licenses, and expiry date.
2.2:
Here's a brief explanation of each point from the image:
1. Current Phish Risk Rate This is the present phishing vulnerability rate across all users.
2. Latest Campaign The phishing susceptibility rate observed in the most recent campaign.
3. First Campaign The initial phishing risk rate when the first campaign was conducted.
4. Industry Rate The average phishing risk rate in the industry for comparison.
5. Graph (Right Side) Displays a time-based comparison between Industry Risk (blue) and Current Risk (green) for trend analysis.
2.2
RECENT SIMULATION RISK
This section displays a timeline-based bar graph showing the risk activity from simulation campaigns over recent months.
Risk Indicators:
Two types of user risk behaviours are shown:
• Data Submitted (dark blue bar)
• Link Clicked (light blue bar – not present here)
2.3
Breach Time represents the average time it takes for your organization to get compromised during a simulated cyberattack — that is, the time between the start of a simulation and the moment when a user falls for the attack (e.g., clicking a link or submitting data).
2.4
The “Top Offenders” section on dashboard is a critical part of understanding which users in your organization are most vulnerable to simulated cyberattacks like phishing, vishing, or smishing.
This section lists individual users who have:
• Repeatedly failed simulations, and/or
These users are flagged because their behavior demonstrates higher susceptibility to cyber threats.
2.5
On the Dashboard, the "Most Vulnerable Employee" section highlights the individual user who is most susceptible to cyber threats based on their repeated risky behavior during security simulations. This feature identifies the employee who has failed the most simulations by actions such as:
• Clicking on malicious links
• Submitting sensitive data (e.g., passwords, credentials)
• Falling for vishing or smishing attacks
• Ignoring awareness training modules
This user is considered to be at the highest risk of causing a security breach if exposed to a real world cyberattack.
2.6 Recent Campaigns
The "Recent Campaign" section on the dashboard provides a quick overview of the latest simulation campaign conducted in your organization — whether it's Phishing, Vishing, Smishing, or another type.
This section helps administrators and security teams monitor the most recent activity, track user performance, and quickly assess the impact and results of the last simulation
2.7 Location Based Clicks
The "Location-based Clicks" section displays a geographical analysis of where users clicked on links during simulation campaigns (e.g., phishing, smishing).
Key Information Displayed:
• A map view or list view showing:
o Countries or regions from which users interacted with simulation content. o The number of clicks recorded from each location.
• This data is typically based on the IP address captured when a user clicks on a simulated link.
2.8 High Risk Category
In the Dashboard, the "High Risk" category is used to identify and monitor users who are most vulnerable to cyber threats based on their performance in simulations and training assessments.