CIOPages
DirectoryCybersecuritySecurity Awareness & Human RiskHoxhunt

Hoxhunt

About Hoxhunt

Hoxhunt is a human risk management platform that provides security awareness and phishing training for employees using personalized, gamified training methods.

How to evaluate Security Awareness & Human Risk

CIOPages Research Team evaluation framework for this category — not an assessment of Hoxhunt. From our Security Awareness Training buyer guide.

25%
Risk Measurement & Behavior Change
Per-user and per-group risk scoring with a transparent, explainable model; ability to track repeat clickers and high-risk roles; reporting rate and time-to-report as first-class metrics, not just completion and click rate; evidence the score reflects real exposure, not simulation history alone
20%
Phishing Simulation Realism & AI
AI-personalized and AI-generated lures that mirror current threats; difficulty that adapts per user; coverage beyond email (Teams, Slack, SMS/smishing, QR/quishing, callback); localized templates; ability to mirror attacks your email gateway actually blocked
18%
Content Library & Localization
Breadth and freshness of modules (phishing, AI threats, deepfakes, privacy, role-specific); engagement quality and micro-learning length; number of languages and true localization vs. machine translation; just-in-time / point-of-failure nudges vs. annual modules; SCORM/AICC export for your LMS
17%
Telemetry & Ecosystem Integration
Signal ingestion from email security (Microsoft, Proofpoint, Mimecast, Abnormal) and IdP (Entra ID, Okta) to inform risk; reported-phish routing into SIEM/SOAR and incident response; HRIS/AD sync for accurate org and role mapping; outbound API and webhooks for your data warehouse
12%
Program Administration & Reporting
Automation of campaign scheduling and targeting (set-and-forget vs. manual build); board- and audit-ready reporting; multi-tenant and delegated admin for global or MSP rollouts; admin effort to run the program day to day
8%
Security, Privacy & Compliance
SOC 2 Type II / ISO 27001; data residency and GDPR posture for employee PII and behavioral data; works-council and privacy constraints on per-user scoring; coverage of mandated training frameworks (HIPAA, PCI DSS, NIST, ISO) for audit

Other Security Awareness & Human Risk Vendors

View all

Related Buyer Guides

Independent evaluation frameworks for this category.

API Security Platforms
The API is now the primary attack surface, and a WAF pointed at it isn't API security. Evaluate Salt, Akamai (Noname), Imperva, F5, Traceable, Wallarm, Cequence, and Data Theorem on whether they actually discover your shadow APIs and catch BOLA and business-logic abuse at runtime — not just sign endpoints off as “protected.”
Attack Surface Management (ASM / CTEM)
Evaluate Wiz, CrowdStrike Falcon Surface, Microsoft Defender EASM, Cortex Xpanse, Censys, CyCognito, Tenable, and runZero across EASM, CAASM, and platform-embedded camps — judged on discovery accuracy and how cleanly the surface feeds prioritization, not how many assets it claims to find.
Cloud Access Security Broker (CASB)
Evaluate Netskope, Microsoft Defender for Cloud Apps, Zscaler, and Palo Alto for SaaS security, shadow IT discovery, and data protection.

This profile was compiled by CIOPages from public sources with AI assistance, and may be incomplete or out of date. It is informational only and not an endorsement. Represent this vendor? Claim this listing or .

Quick Facts

hoxhunt.com
CategoryCybersecurity
SubcategorySecurity Awareness & Human Risk
PricingSubscription
DeploymentSaaS
Target SizeMid-Market, Enterprise