Skip to main content
BREACH//NOIR
🔑 Login
INTEL CREDITS
100 / 100
Register free for higher daily limits
// FOR TEAMS & ORGANIZATIONS

A Security Awareness Training Game Your Employees Actually Finish

The hardest part of employee cybersecurity training isn't writing good content — it's getting people to actually engage with it. Annual compliance modules get clicked through, not absorbed. BREACH // NOIR takes a different approach: employees investigate a fictional target using the same reasoning a real attacker would, spend a limited budget of Intel Credits to uncover information, and reconstruct a password themselves. It's a genuine puzzle first, and a security lesson because of how it's built — which is why people finish it.

Try It Free With Your Team See Pricing for Teams

Why Gamified Security Awareness Beats Slide Decks

Traditional cybersecurity training for employees is built to be completed, not necessarily remembered — a video, a quiz, a certificate, done. A cybersecurity training game changes the incentive structure entirely: the case doesn't resolve until the employee actually reconstructs the password, so there's no passive-completion path. That single design difference is what turns a compliance checkbox into an experience people talk about at their desks afterward, which is exactly the kind of organic reinforcement a one-off training video never gets.

What Employees Actually Practice

Every case puts a fictional target's public footprint in front of the player — social posts, leaked fragments, public records — and asks them to unlock sources strategically, since each one costs Intel Credits and raises the target's Exposure score. That single mechanic teaches the exact judgment call you want employees making about their own footprint: not everything that's easy to find is safe to post, and small details combine faster than people expect. When an employee finally submits a correct password guess built from details they pieced together themselves, they've internalized password-hygiene risk from the attacker's side — a much stronger lesson than being told the risk exists.

New players start with The Streamer's Slip, a gentle onboarding case that teaches the full loop in one sitting — typically 10 to 20 minutes — before difficulty ramps up. Teams that want the awareness angle specifically, without the broader OSINT framing, often start their employees on our password security awareness game instead, which walks through the same mechanic with password hygiene as the explicit focus.

Rolling It Out to a Team

There's no special enterprise onboarding required — each employee creates their own free agent account, and progress (level, XP, achievements, and rank) is tracked individually. Many teams use it as a single live session — everyone works the same case at the same time, then compares notes on how they each approached it — while others let employees work through cases at their own pace as an ongoing awareness habit alongside standard training. Either way, a manager or security lead can track team engagement through the public leaderboard without needing any admin tooling.

Cost for Teams

The core game is free for every employee — daily Intel Credits refill automatically, which is enough for most people to complete cases at a normal pace indefinitely. For teams that want to move faster through a training session or unlock more content per sitting, optional credit packages are available per account. Full details, including how the credit system separates daily allowance from purchased credits, are on our pricing page.

Bring Your Team Into the Investigation

Free individual accounts, no procurement process required to try it.

Create a Free Account

Frequently Asked Questions

Is this suitable for non-technical employees?

Yes. The game is designed for a general audience — the skill involved is investigative reasoning, not technical or coding ability, and the onboarding case is built specifically to be approachable for first-time players.

How long does a training session take?

A single case typically runs 10 to 30 minutes depending on difficulty. Teams commonly run one case as a focused session, or let employees work through several at their own pace over time.

Do we need to buy credits for every employee?

No. Every account gets a free daily credit allowance sufficient to play at a normal pace indefinitely. Purchased credits are entirely optional, for players who want to move faster.

Is there a way to track employee progress?

Every player has a public profile showing their level, achievements, and solved cases, and the site-wide leaderboard shows relative standing — enough for a manager or security lead to see engagement without any special admin access.

Can this replace our compliance training?

It's designed as a hands-on complement to standard compliance training, reinforcing the same principles through practice rather than replacing formal policy or compliance requirements.