The Problem

Higher education institutions are frequent targets of cyberattacks because employees regularly handle sensitive student, financial, and research data. While faculty and staff often complete mandatory cybersecurity training, many programs rely on passive content that emphasizes information recall instead of real-world decision making. As a result, employees may recognize cybersecurity terminology but still struggle to identify phishing attempts, create secure passwords, or respond appropriately when a security incident occurs.

This training was designed to address that gap by creating an engaging cybersecurity awareness course that develops practical skills through authentic workplace scenarios. The target audience includes faculty, staff, and part-time employees across a higher education institution with varying levels of technical knowledge.

The Solution

I designed a scenario-based training that allows learners to practice identifying cyber threats, applying cybersecurity best practices, and responding appropriately to potential security incidents in a safe learning environment.

Drawing on Experiential Learning Theory, learners actively engage with simulations, branching scenarios, and case studies where they make decisions, receive immediate feedback, and reflect on the outcomes before applying what they have learned to new situations. This cycle of experience, reflection, and application encourages deeper learning and skill development.

The training also incorporates Scenario-Based Learning and Constructivist principles by placing learners in authentic cybersecurity situations. Through realistic phishing emails, suspicious phone calls, and security breach scenarios, learners construct knowledge by analyzing information, evaluating risks, and making decisions rather than passively consuming content.

To support retention and reduce unnecessary cognitive effort, the course applies Cognitive Load Theory by organizing content into three focused modules, presenting information in manageable chunks, and using interactive activities to reinforce key concepts. Frequent knowledge checks and explanatory feedback incorporate Retrieval Practice, helping learners strengthen long-term memory while correcting misconceptions at the moment of learning.

Key Features

Why This Project Stands Out

What sets this project apart is its focus on authentic decision-making rather than passive content delivery. The course immerses learners in realistic workplace scenarios where they must identify phishing attempts, evaluate cybersecurity risks, and choose appropriate responses. Interactive elements, such as branching scenarios and a case-based incident response activity, provide opportunities to practice skills in a safe environment while receiving immediate feedback. Grounded in adult learning principles and scenario-based learning, the design prioritizes real-world application, helping employees build confidence and develop behaviors they can transfer directly to their daily work. This project showcases engaging, learner-centered eLearning experiences that combine instructional design theory with interactive learning strategies to improve performance beyond basic compliance requirements.

Tools Used

Articulate Storyline 360, Microsoft PowerPoint, ElevenLabs, Pixabay

Target Audience: 

Project Status

This project is currently in the development phase. The design document, learning objectives, content structure, and interaction strategy have been completed, and the course is now being developed into a fully interactive eLearning experience. As development progresses, this portfolio will be updated with additional screenshots, and an interactive prototype.

Here are the needs analysis report and design document for the training: