惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

G
Google Developers Blog
F
Fortinet All Blogs
Microsoft Azure Blog
Microsoft Azure Blog
腾讯CDC
Vercel News
Vercel News
Recent Announcements
Recent Announcements
博客园 - Franky
小众软件
小众软件
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
The Cloudflare Blog
宝玉的分享
宝玉的分享
I
InfoQ
博客园 - 聂微东
Jina AI
Jina AI
J
Java Code Geeks
V
V2EX
U
Unit 42
Stack Overflow Blog
Stack Overflow Blog
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
阮一峰的网络日志
阮一峰的网络日志
L
LangChain Blog
T
The Blog of Author Tim Ferriss
量子位

Human Risk Management Blog

Future-Proofing Organizations in the Face of AI What Security Can Learn From Dinosaurs Inside the OS-Aware Phishing Kit Profiling Your Device CyberheistNews Vol 16 #30 [Protect Your Users] AI Hallucinations Are Fueling Phishing Attacks Majority of Organizations Hit by Targeted Impersonation Attacks The Open-Source Paradox: Navigating the New Frontier of AI Supply Chain Risk Elevating the SOC Experience: Smarter Automation, Richer Threat Intelligence, and AI-Native Investigation New Phishing Tools Enable Attackers to Easily Bypass Multifactor Authentication From Inbox to Encryption: How Ransomware Delivery Has Evolved Attackers Exploit AI Hallucinations to Send Users to Phishing Sites Warning: ARToken Phishing Kit Automates BEC Attacks The New Face of AI Risk Trust Nothing: Tips to Secure AI Tools and Agents CyberheistNews Vol 16 #29 ClickFix Social Engineering is Now the Leading Malware Delivery Method Beyond the Checkbox: How a Proactive Partnership Led to Turnkey Hazing Compliance Trust, Verify, Protect: Modernizing Email Security for the Cloud Report: Social Engineering Remains a Central Part of AI-assisted Attacks ClickFix Social Engineering is Now the Leading Malware Delivery Method CyberheistNews Vol 16 #28 Your 2026 Phishing by Industry Benchmarks: The Findings on Human Risk Scammers Can Use AI Tools to Pinpoint Your Location Based on a Photo Report: Attackers Are Using AI to Automate Social Engineering Your KnowBe4 Fresh Compliance Plus Content Updates from June 2026 From Awareness to Digital Workforce Security Your KnowBe4 Fresh Content Updates from June 2026 Threat Actor Uses Phishing to Breach Orgs for Ransomware Gangs Invoice Phishing Attacks Are Abusing the Shop App Phishing Campaign Impersonates Interpol to Deliver Ransomware Prompt Injection and the Rise of Agentic Risk Hyper-Targeted Social Engineering Needs Real-Time Video Response Your Email is Protected. Is Your Teams Chat?
Introducing The Hybrid Nudge Experience: Outbound Email S...
Haylea Reiner, MBA · 2026-07-24 · via Human Risk Management Blog

When it comes to outbound email security, every organization operates under different operational constraints and security requirements. Some security teams prioritize in-app nudges and coaching to catch risky behavior the moment an email is drafted. Others want to avoid friction, particularly for executives, sales teams or mobile-first employees who rarely interact with desktop add-ins.

Historically, security admins were forced into a binary choice: enforce real-time nudges for everyone, or forego compose-time protection altogether.

KnowBe4 Prevent eliminates that trade-off with Hybrid Mode: a flexible delivery configuration designed to give security teams complete control over their outbound email security posture.

The Challenge: Why One-Size-Fits-All Email Security Fails

No two organizations share the exact same workflow or risk tolerance. Applying blanket outbound email controls often leads to friction points:

  • Send-Time Friction for High-Priority Users: Executives, colleagues in low-network scenarios and time-sensitive teams cannot afford processing delays or send-time interruptions.
  • Mobile Coverage Blind Spots: Standard desktop add-ins offer zero coverage on mobile devices, leaving phone-based email sends unguided.
  • Rigid Vendor Pricing: Competing solutions frequently lock configuration flexibility behind separate license tiers, specialized SKUs, or costly professional services engagements.

Security teams shouldn't have to compromise protection or pay extra fees just to tailor security controls to different user groups.

What is Hybrid Mode?

Hybrid Mode natively blends Prevent’s two primary delivery states into a single, cohesive experience inside the existing Outlook add-in:

  1. Compose-Time Side-Panel Advice: Real-time recipient, attachment and content risk checks remain visible in the add-in side panel as the user drafts an email.
  2. Post-Send Teachable Moments: If a risky email is sent, Hybrid Mode delivers a redesigned, actionable email notification to the sender.

This configurable approach lets admins balance real-time user coaching with the needs of their organization.

Core Capabilities of Hybrid Mode

Feature Description Admin Benefit
Org-Wide Mode Selector Switch between In-app and Hybrid modes at the tenant level directly inside the KnowBe4 Security Console. Full control over default delivery posture without forced migrations.
Per-User Overrides Assign custom delivery modes to specific individuals, executive lanes or departments. Granular flexibility for edge cases without changing global settings.
Server-Side Switching Mode changes are processed server-side through the existing add-in. Zero redeployment needed. No new manifests, license pushes or IT tickets.
Redesigned Teachable Moments Rebuilt post-send email nudges feature a mobile-responsive layout and risk breakdowns. Extends actionable coaching to the inbox for users who prefer that mode of delivery.

In-App Mode vs. Hybrid Mode: At a Glance

Admins can evaluate both delivery modes to align with their organization's workflow needs:

In-App Prompting: Catch risky behavior directly in the moment before the email leaves the draft stage. Best for teams requiring immediate intervention on desktop clients.

Hybrid Mode (Post-Send & Side-Panel Coaching): Surfaces real-time side-panel guidance and post-send teachable moment emails. Promotes primary actions like "Edit email before sending", "Cancel" and "Release" alongside explicit explanations of policy triggers.

Included in Prevent Standard: No Upsells, No Extra Fees

Flexibility shouldn't come with a price tag. Like DLP Rule Builder and Misdirected Content Analysis, Hybrid Mode is built directly into the Prevent Standard offering.

Getting Started

Admins can enable Hybrid Mode today directly within the KnowBe4 Security Console under Prevent configuration settings. Existing tenant settings remain unchanged until an admin chooses to update them.