Choose your language
Social Engineering Course
More than 2 million students worldwide

Social Engineering Course

Master the full spectrum of social engineering — from psychological manipulation and OSINT reconnaissance to phishing, vishing, and physical intrusion. This course gives security professionals the offensive skills and defensive insight needed to think like an attacker and protect organisations at the human layer.

Dedika for businesses

What you'll learn:

You will learn how attackers exploit cognitive biases, build convincing personas, and run coordinated multi-vector campaigns across email, phone, and physical environments. The course covers OSINT collection, phishing infrastructure, vishing call techniques, and in-person impersonation. You will also design influence operations, execute integrated red team engagements, and write professional assessment reports. Defensive topics include security awareness programme design, AI-generated threat detection, and insider risk mitigation. Every module connects offensive techniques directly to practical defensive countermeasures.

How you study in practice Social Engineering Course

How you practise Social Engineering Course

For businesses looking to train their team

With Dedika for businesses, the course includes exercises and examples tailored to your own business and the way your company needs.

Click here

Course content

8 Chapters • 41 LessonsDuration between 4 and 360 hours (you decide)

Chapter 1See details

Foundations of Social Engineering

  • Lesson 1 • Attack Taxonomy and Classification

    Maps the full landscape of social engineering attack types by channel and method. Gives students a reference model for categorising any new attack encountered.

  • Lesson 2 • Defining Social Engineering

    Covers the formal definition, scope, and distinction from technical hacking. Anchors all subsequent techniques in a shared conceptual framework.

  • Lesson 3 • Ethical and Legal Boundaries

    Defines authorised testing scope, consent requirements, and professional responsibility. Ensures all practical exercises remain within lawful and ethical limits.

  • Lesson 4 • Attacker Mindset and Motivation

    Profiles threat actor categories by motivation, skill level, and target selection. Enables students to anticipate attacker behaviour in later simulation exercises.

  • Lesson 5 • Psychology of Human Vulnerability

    Examines cognitive biases and emotional triggers exploited by attackers. Provides the psychological lens applied throughout every technique chapter.

Chapter 2See details

Open Source Intelligence Gathering

  • Lesson 1 • OSINT Principles and Methodology

    Introduces the intelligence cycle adapted for social engineering reconnaissance. Establishes a repeatable process applied in every later reconnaissance exercise.

  • Lesson 2 • Organisational Reconnaissance

    Techniques for mapping corporate structure, technology stack, and key personnel. Feeds directly into pretexting and phishing campaign design.

  • Lesson 3 • Individual Target Profiling

    Methods for aggregating personal data from social media, forums, and public records. Profiles built here are used in spear-phishing and vishing exercises.

  • Lesson 4 • Synthesising Intelligence into Attack Plans

    Converts raw collected data into structured target profiles and attack hypotheses. Bridges reconnaissance output to the pretexting and campaign chapters ahead.

  • Lesson 5 • Technical OSINT Tools and Automation

    Hands-on use of search operators, metadata tools, and aggregation platforms. Students automate repetitive collection tasks to scale reconnaissance efficiently.

Chapter 3See details

Pretexting and Identity Construction

  • Lesson 1 • Stress-Testing and Iteration

    Structured adversarial review process to expose pretext weaknesses before deployment. Produces hardened, field-ready scenarios through iterative critique cycles.

  • Lesson 2 • Adapting Pretexts Across Channels

    Applies persona and scenario design to phone, email, in-person, and digital channels. Highlights channel-specific adjustments needed for each medium.

  • Lesson 3 • Building a Believable Persona

    Covers identity construction including backstory, credentials, and digital footprint. Students create fully documented personas ready for deployment in exercises.

  • Lesson 4 • Pretext Design Fundamentals

    Defines what makes a pretext credible and how OSINT data shapes scenario selection. Establishes design criteria applied to every pretext built in this chapter.

  • Lesson 5 • Scenario Scripting and Dialogue

    Teaches structured scripting of opening lines, objection handling, and exit strategies. Scripts are rehearsed and refined through peer role-play sessions.

Chapter 4See details

Phishing and Electronic Deception

  • Lesson 1 • Phishing Attack Anatomy

    Breaks down every structural element of a phishing message and its psychological function. Provides the analytical framework used to build and evaluate all campaign exercises.

  • Lesson 2 • Campaign Analysis and Metrics

    Defines key performance indicators for phishing campaigns and interprets result data. Connects campaign outcomes to organisational vulnerability reporting.

  • Lesson 3 • Phishing Infrastructure Setup

    Covers domain registration, email server configuration, and credential-capture pages. Students build a controlled lab environment for safe campaign testing.

  • Lesson 4 • SMS, Messaging, and Social Media Lures

    Extends phishing principles to SMS, instant messaging, and social platforms. Covers platform-specific trust signals and character-limit constraints.

  • Lesson 5 • Spear Phishing and Whaling

    Applies OSINT profiles to craft highly personalised targeted messages. Demonstrates how specificity dramatically increases click and compliance rates.

Chapter 5See details

Vishing and Voice-Based Attacks

  • Lesson 1 • Call Scripting and Live Adaptation

    Applies pretexting scripts to voice calls with real-time improvisation techniques. Students practise branching dialogue trees under simulated pressure.

  • Lesson 2 • Call Debrief and Performance Analysis

    Structured review of recorded calls against success criteria and psychological principles. Iterative feedback loops accelerate skill development between exercises.

  • Lesson 3 • Voice Channel Attack Landscape

    Surveys vishing, robocall fraud, and voice deepfake threats across industries. Contextualises voice attacks within the broader social engineering taxonomy.

  • Lesson 4 • Vocal Delivery and Paralinguistics

    Trains tone, pacing, confidence, and emotional modulation for phone-based deception. These skills directly determine success rates in live call exercises.

  • Lesson 5 • Caller ID Spoofing and Technical Setup

    Covers voice-over-IP tools, caller ID manipulation, and call recording for analysis. Establishes the technical environment for all vishing lab exercises.

Chapter 6See details

Physical Intrusion and Impersonation

  • Lesson 1 • Elicitation in Face-to-Face Settings

    Conversational techniques to extract sensitive information without direct questioning. Applied in reception, break room, and conference scenarios.

  • Lesson 2 • Physical Engagement Debrief

    Post-exercise analysis framework covering what succeeded, failed, and why. Produces documented findings used in organisational vulnerability reports.

  • Lesson 3 • Tailgating and Piggybacking

    Techniques for bypassing physical barriers by exploiting courtesy and distraction. Students practise entry scenarios in controlled mock-facility environments.

  • Lesson 4 • Impersonation in Physical Contexts

    Covers vendor, maintenance, and authority impersonation for facility access. Connects persona construction skills to physical deployment scenarios.

  • Lesson 5 • Physical Security Attack Surface

    Maps physical controls, human checkpoints, and environmental vulnerabilities in facilities. Establishes the threat model for all physical intrusion exercises.

Chapter 7See details

Influence Operations and Manipulation Campaigns

  • Lesson 1 • Campaign Evaluation and Adaptation

    Metrics and feedback loops for measuring influence campaign effectiveness mid-operation. Students adjust live campaign plans based on simulated target response data.

  • Lesson 2 • Multi-Persona Network Operations

    Techniques for deploying coordinated fake identity networks to amplify influence. Covers persona differentiation, interaction scripting, and network coherence.

  • Lesson 3 • Long-Term Relationship Exploitation

    Covers slow-burn trust-building attacks such as romance fraud and insider cultivation. Examines the psychological stages from initial contact to full exploitation.

  • Lesson 4 • Influence Campaign Architecture

    Defines the structural components of a coordinated multi-vector influence operation. Provides the planning framework used throughout this chapter's exercises.

  • Lesson 5 • Disinformation and Narrative Construction

    Builds false or misleading narratives designed to alter target beliefs and decisions. Analyses real-world disinformation structures for defensive insight.

Chapter 8See details

Red Team Operations and Reporting

  • Lesson 1 • Integrated Attack Chain Execution

    Sequences OSINT, pretexting, phishing, vishing, and physical vectors into a unified kill chain. Students execute a coordinated multi-vector simulation against a target environment.

  • Lesson 2 • Engagement Planning and Scoping

    Defines rules of engagement, success criteria, and legal authorisation for assessments. Produces the planning documents required before any red team exercise begins.

  • Lesson 3 • Post-Engagement Remediation Support

    Guides clients through prioritising and implementing recommended controls after delivery. Covers follow-up testing to verify remediation effectiveness.

  • Lesson 4 • Vulnerability Assessment and Risk Scoring

    Translates engagement findings into structured vulnerability statements with risk ratings. Applies a consistent scoring methodology across all identified weaknesses.

  • Lesson 5 • Evidence Collection and Chain of Custody

    Covers screenshot, recording, and artifact collection standards during live engagements. Ensures all evidence is admissible and defensible in client reporting.

  • Lesson 6 • Professional Report Writing

    Structures executive summaries, technical findings, and remediation roadmaps for clients. Students produce a complete assessment report reviewed against professional standards.

Certification

Your valid completion certificate

This course is for you:

  • Penetration tester: ready to add human-layer attack techniques to existing technical skills.

  • IT security analyst: seeking to understand how employees become organisational vulnerabilities.

  • Corporate trainer: wanting to build evidence-based security awareness programmes for staff.

  • Career changer: moving into cybersecurity from law enforcement, psychology, or communications.

  • Compliance officer: responsible for reducing human-risk exposure across regulated environments.

  • Threat intelligence analyst: looking to connect adversary behaviour research to real-world simulations.

What our students say

Your lessons are perfect. I purchased the one-year package and finally have the opportunity to follow various topics of interest without needing to change platforms... I'm grateful for everything you do, I've already recommended you to other people...
Giulio Carlo
Giulio CarloDigital Marketing Student
I like how the lessons are straight to the point and how I can change chapters and skip content I don't need.
Mariana Ferres
Mariana FerresPhotography Student
I like the content and the way videos are presented and transcribed, which speeds up the process!
Luciana Alvarenga
Luciana AlvarengaNail Design Student
The platform is fast and simple to use. The diversity of content and complementary videos really help with learning.
André Felipe
André FelipePrompt Engineering Student

Top upskilling courses

FAQ

Who is Dedika?

Is the certificate valid in Australia?

Are the courses free?

What is the course workload?

What are the courses like?

How do the courses work?

What is the duration of the courses?

What is the cost or price of the courses?

What is an EAD or online course and how does it work?

PDF Course