Cyber Security for Finance Teams
Your finance, payments and treasury staff recognise business email compromise, invoice fraud and payment diversion before the money moves. In 45 minutes and four assessed units, they learn how payment fraud actually works, the verification controls that stop it, and exactly what to do in the critical hours after a fraudulent payment to give the organisation the best chance of recovery.
- Easy-to-follow course
- 4 quizzes at 80% in every course
- Narration and captions on every screen
- Written and fact-checked in 2026
Watch the introduction, then see the interactions your learners will use.
One licence for your LMS, 12 months, for the learners you buy for, delivered as one SCORM package. Priced per learner, with volume discounts.
What your team will learn
Upon course completion, employees will gain a full and clear understanding of:
- Why finance functions are targeted and how to distinguish business email compromise, invoice fraud and payment diversion
- The real mechanics of vendor email compromise and executive impersonation fraud, from named, dated cases
- How to apply verification controls including out-of-band checks, dual authorisation and Confirmation of Payee
- How to spot the red flags in a bank-detail change or urgent payment request before acting on it
- The right first steps to take within the critical window after a suspected fraudulent payment
- What UK reimbursement protections do, and don't, cover for your organisation
Who it is for
Written for finance. No technical background is needed, and nothing in it assumes a previous course.
This course from Blocknorth gives finance, accounts payable, treasury and payments staff a clear, practical understanding of how payment fraud actually works and how to stop it. You will learn how business email compromise, invoice fraud and payment diversion really happen, the verification controls that stop them, and exactly what to do in the critical hours after a fraudulent payment to give your organisation the best chance of getting the money back.
Course contents
4 units. Each ends with a 10-question quiz; 8 correct unlocks the next unit.
Why Finance Teams Are the Target
- Why finance functions hold the authority that makes them the top target for cyber-enabled fraud
- Business email compromise, invoice fraud and payment diversion, defined and distinguished
- Vendor email compromise, the sharper and more dangerous variant
- Current US and UK figures on the scale of the problem, and what a successful attack really costs
How Payment Fraud Actually Works
- Two families of attack: inventing a fake vendor versus hijacking a real one
- A fake-vendor invoice scam that cost two major technology companies over $120 million
- Executive impersonation fraud and the exact red flags in the request itself
- Vendor email compromise and invoice thread hijacking, mechanically, through a real, documented case
Verification and Controls That Stop It
- Out-of-band verification, precisely defined, with a real callback script
- Exactly when verification is mandatory, without exception
- Dual authorisation ("maker-checker"), positive pay and the UK's Confirmation of Payee
- Vendor onboarding done properly, and trusting a "something's slightly off" instinct
Responding Fast and Recovering the Money
- The golden window: why speed decides whether a fraudulent payment can be recovered
- Your first move, and exactly what to say when you call your bank's fraud team
- What UK reimbursement rules actually cover for a business, and what they don't
- Reporting fast, preserving evidence, and a finance-team checklist that ties it all together
Details
| Length | About 45 minutes, self-paced, resumes where the learner left off |
|---|---|
| Format | SCORM 1.2 package. Runs in any conformant LMS (Moodle, Cornerstone, Docebo, SAP SuccessFactors, TalentLMS and others) |
| Assessment | 4 unit quizzes, 10 questions each, 80% to pass. Score and completion reported to your LMS |
| Accessibility | Optional narration and captions on every screen, keyboard navigation, responsive on PC and tablet |
| Language | UK English |
| Publisher | Blocknorth |
| Written and fact-checked | In 2026, reviewed each quarter |
What a licence includes
One licence for your LMS, 12 months, for the learners you buy for, delivered as one SCORM package. Priced per learner, with volume discounts.
See pricing →Questions buyers ask
Will it run in our LMS?
Yes, if your LMS supports SCORM 1.2, which almost every LMS does. You upload one zip file, assign it, and completions and scores report back automatically. We confirm compatibility for your platform before you buy, and the free sample package lets you test it in place.
Can we try it before we buy?
Yes. Ask for the free sample package and you will have Unit 1 of a foundation course as a real SCORM 1.2 file, so you can check it runs in your own LMS. Request it with the form below and you will have it within 1 working day.
What do we receive?
The SCORM package, a one-page quick-start for your LMS administrator, the course listing sheet for your catalogue, and preview images. Updates to the course during your licence are supplied at no charge.
How does a licence work?
You licence the course for the learners you buy for, for 12 months, on your own LMS, and you receive one SCORM package. Pricing is per learner with volume discounts as your numbers grow, and we licence from ten learners upwards.
Where teams go next
Cyber Security for Business 101
Cyber Security for Executives & Board
Cyber Security for HR & Recruitment
Cyber Security for Managers & Team Leaders
Read: Cyber Security Awareness Training That People Finish 5 minute read
Request a quote or the sample package
Tell us the course and roughly how many learners. You will have a quote, or your sample package, within 1 working day.
Prefer email? sales@businesstechnologytraining.com