We make security training people actually want to play.
Aqoon (Somali for “knowledge”) turns security awareness and compliance training into games, challenges and leaderboards, built by security and GRC practitioners who were tired of training nobody remembered.
Built by people who run security programmes.
We’ve sat on both sides of the audit table: writing policies, running awareness campaigns, and fixing the vulnerabilities that training was meant to prevent.
- 1
The problem
Security awareness training was something people clicked through to make a compliance report go green. Nobody remembered it, and phishing still worked.
- 2
The idea
We run security and GRC programmes ourselves. We asked: what if training felt like a game people wanted to finish, and still produced the evidence auditors need?
- 3
Today
Aqoon lets any organization sign up, invite their team and launch challenges that mix phishing spotting, word puzzles, policy games, secure coding and custom quizzes, each with its own leaderboard.
Four principles behind everything we build.
Play beats policing
People learn more from a game they chose to play than a slide deck they were forced to click through.
Local first, global ready
Scenarios built on the scams, regulations and workplaces our customers actually know, starting with Nigeria and Africa.
Evidence, not just effort
Every game maps to a standard, so training time becomes proof auditors accept.
Practise what we preach
We hold ourselves to the standards we teach: privacy by design, least privilege, and honest security.
Training mapped to the frameworks auditors ask about.
- NDPA
- GDPR
- ISO/IEC 27001
- PCI DSS
- CBN Cybersecurity
- OWASP Top 10
- SOC 2
- NIST CSF
Want to see it with your team?
Create a free workspace, or talk to us about a demo.