View the organization's overall risk score at a glance
Identify which departments and groups concentrate the highest risk
Track risk evolution over time through the history chart
Detect phishing behavior trends with the Historical PAS
Filter the view by department or group for operational focus
Access the risk detail of a specific segment with one click
At the start of each week: to get a quick snapshot of the overall risk status before making operational decisions
After launching a campaign: to see if risk moved and in which segments
When there is an incident alert: to cross-reference human risk with the current threat context
Navigation: Overview
View the company's Risk Score
At the top left, a gauge shows the organization's total Risk Score, and below it the Highest-risk groups, listing the groups with the highest risk values.
View distribution by Department and Group
To the right of the gauge, two blocks are shown:
Risk score by Department: lists all departments with their risk % and a status icon
Risk score by Group: lists all groups with their risk % and a status icon
Hovering over a row shows a tooltip with the exact score and the label "Click to view detail".
Access the Risk Detail of a segment
Click on any department or group in the list. This navigates to the Risk Detail of the selected segment, which shows:
Gauge with the segment's risk score
Segment's own risk history with a timeline chart
Reset button to restore the chart view
View the Historical PAS
At the bottom left, the Historical PAS (Phishing Awareness Score) is shown. It includes an ℹ️ icon that when clicked displays an explanation of the calculation:
The PAS is calculated by subtracting the number of successful phishing attempts from the total emails sent, then dividing that result by the total emails sent. For example: 100 emails sent, 10 people fell for it → PAS = 90%.
The block also shows:
Donut chart with the total. Emails sent and emails clicked
View the Risk History
At the bottom right, the company's Risk History is shown: a line chart with the score evolution over time, with value labels on each point. Allows identifying trends and the impact of actions taken. Includes icons to expand and download the chart.
Apply filters
Click the Filters icon (top right of the section). A side panel opens with:
Department: selector with search, allows selecting one or more departments
Groups: selector to filter by group
You must click Save to apply. The entire view updates with the selected segment's data.
Download the dashboard
Click the download icon (↓) at the top right to export the current view.
High risk score (close to 100%) → the organization has high exposure. There are employees with frequent risky behaviors that need intervention.
Low risk score (close to 0%) → good sign. Employees are responding well to simulations and completing training.
A department with much higher risk than the rest → that segment requires priority attention. It may indicate lack of training, insufficient simulations, or a more vulnerable user profile.
History shows an upward trend → risk is increasing. Check whether there are active campaigns and whether assigned courses are being completed.
History shows a downward trend → the program is working. This is a good data point to show the client as evidence of impact.
Low Historical PAS → many employees are falling for simulations. Increase the frequency or variety of campaigns.
Risk trending up → check whether there are active campaigns, whether assigned courses have low completion rates, and adjust the strategy.
Low Historical PAS → launch a phishing campaign targeting the groups with the highest click rate.
Department with high risk → if you spot a department with high risk, identify the users in that segment and take action through the simulation and academy tools.
🔜 Coming soon: the ability to assign courses or include users in campaigns directly from this view. If this is a priority for your organization, vote for the request here
All green → keep the pace
What is the Historical PAS?
It's the Phishing Awareness Score. It measures how effective the organization is at resisting phishing attempts. The higher the better: it means fewer employees fell for simulations.
Is the dashboard score the same as the Cyber Risk Score in Benchmark?
Yes, it's the same indicator. In Benchmark, it's shown with comparative context against the industry.
Can I view the history of a single department?
Yes. Clicking on a department in the list opens the Risk Detail for that segment, which includes its own history.
How often is the score updated?
The score is updated automatically every day.
💬 Have feedback about this feature or want to request improvements? Let us know at roadmap.whalemate.com/roadmap