Skip to content

Risk Radar: Dynamic Human Risk Scoring (HRS) & Department Heatmaps

Platform Feature: Risk Radar (Human Risk Intelligence)
UI Location: Main Navigation > Live Threat Watch > Risk Radar (/risk-radar)
Mathematical Model: 0–100 Weighted Multi-Factor Score
Risk Tiers: Critical Risk (75–100), High Risk (50–74), Medium Risk (25–49), Low Risk (0–24)


1. Executive Summary & Value Proposition

Quantifying "human cyber risk" has historically been subjective. Security teams could count how many employees clicked a phishing test, but they could not mathematically articulate to the Board whether organizational risk was rising or falling.

Risk Radar (/risk-radar) provides a sophisticated, data-driven Human Risk Score (HRS) mathematical model. By synthesizing simulation failure velocity, time-to-click, reporting diligence, course comprehension grades, and external dark web credential breaches, Risk Radar transforms human behavior into an objective financial and risk metric.


2. The Human Risk Scoring (HRS) Mathematical Model

The SimuPhish HRS algorithm assigns each employee a dynamic score between 0 (Most Secure / Security Champion) and 100 (Critical Risk), weighted across four objective behavioral pillars:

  1. Attack Simulation Susceptibility (40% Weight): Evaluates click velocity, mock credential submissions, and payload downloads across all vectors (Email, QR, SMS, Voice, WhatsApp).
  2. Threat Reporting Velocity (25% Weight): Actively rewards employees who report suspicious emails, offsetting negative susceptibility scores.
  3. Educational Mastery & Compliance (20% Weight): Measures on-time course completions, quiz pass grades, and policy digital acknowledgments.
  4. External Attack Surface Exposure (15% Weight): Evaluates whether the employee's corporate email and credentials have appeared in public breaches or dark web stealer logs.
graph TD
    SimData["Simulation Performance<br/>(Opens, Clicks, Credentials, Payloads)"] --> Model["SimuPhish HRS Engine"]
    ReportData["Reporting Vigilance<br/>(1-Click Add-in Reports)"] --> Model
    CourseData["Learning Intelligence<br/>(Completions & Quiz Grades)"] --> Model
    DarkWeb["External Exposure<br/>(Leaked Credentials & Breaches)"] --> Model

    Model --> Score["Calculated Human Risk Score (0–100)"]
    Score --> Tiers["Dynamic Risk Tiers<br/>(Critical, High, Medium, Champion)"]
    Score --> Heatmap["Department Vulnerability Heatmap (/risk-radar)"]

3. Core Visualizations & Capabilities

  • Departmental Vulnerability Heatmap: Instantly visualizes which business units represent the highest organizational exposure (e.g., Accounts Payable vs. DevOps).
  • Historical Trend Analysis: Track organizational HRS over 30, 90, 180, and 365 days to prove continuous security culture improvement.
  • Top Risky Employees & Champions: Identifies individuals requiring immediate executive intervention as well as resilient employees eligible for internal recognition.