Pulsos — Cybersecurity

Practical security awareness resources and checklists

This page collects the ready-to-use tools we reference across our guides — checklists you can run through before clicking a link, at your desk, or while setting up a new account. Everything here is written to be actionable in minutes, whether you're new to security or responsible for keeping a whole team safe. Use these alongside the full guides for context on why each step matters.

Suspicious email verification checklist

Account hardening checklist

Quick reference: key facts to remember

What should I do first if I think I clicked a phishing link?

Disconnect from the network to limit any download, then change the password of any account you may have entered on that page — starting with your email. Enable two-factor authentication if it isn't already on, run a malware scan, and report the incident to your IT or security team so they can watch for related activity.

Are password managers safe to trust with all my passwords?

Reputable password managers encrypt your vault so that even the provider cannot read it, and they let you generate and store unique passwords without memorising them. The main risk is a weak master password, so protect it with a long passphrase and turn on two-factor authentication for the manager itself.

Is SMS-based two-factor authentication good enough?

SMS 2FA is much better than no second factor, so keep it if that's your only option. However, codes can be intercepted or stolen through SIM-swap attacks, so where available switch to an authenticator app or a physical security key for stronger, phishing-resistant protection.

How can I tell a legitimate urgent message from a scam?

Genuine organisations rarely pressure you to act within minutes or threaten immediate account closure. Slow down, don't use the links or numbers in the message, and contact the company directly using details from their official website or the back of your card to confirm whether the request is real.

What extra precautions matter when working remotely?

Keep your devices and software updated, lock your screen when you step away, and avoid entering credentials on shared or public computers. Use your organisation's VPN for work systems, be cautious with personal devices handling company data, and follow the same email-verification habits you would use in the office.

How do I help colleagues who aren't very technical stay safe?

Focus on a few clear habits rather than overwhelming them: verify unexpected requests, use a password manager, and turn on two-factor authentication. Share these checklists, create a simple way for them to report suspicious messages without fear of blame, and lead by example so good practice becomes normal across the team. Learn more.

Learn more