the wire · #gadgets · 2026-09-22
Apple @ Work Podcast: Phishing simulations for the AI era
Cech Tech Reviews

The landscape of corporate security is shifting beneath our feet, and a recent episode of the Apple @ Work podcast highlights just how precarious that ground has become. Sponsored by Mosyle, the show brought together Samantha Schwartz and Jack Hirsch from Sublime Security to discuss a critical evolution in cybersecurity training. They are moving beyond generic spam filters to tackle the nuanced threat of AI-generated phishing campaigns. This conversation underscores a broader industry realization that traditional security awareness programs are no longer sufficient in an age of generative AI.
According to the reporting, the core of their discussion revolves around tailored phishing simulations. These are not the blunt instruments of the past where every employee receives the same generic alert. Instead, these simulations are crafted to mirror the specific communication styles, jargon, and urgency levels found within a particular organization. The goal is to create a realistic training environment that forces employees to engage with threats that look and feel authentically dangerous. This approach aims to build muscle memory for spotting subtle red flags rather than just memorizing static rules.
The integration of AI into these simulations represents a significant leap forward in defensive strategy. Hackers are already using large language models to craft highly persuasive, grammatically perfect, and context-aware phishing emails. In response, security teams must adopt similar technology to test their workforce effectively. By using AI to generate these tailored attacks, organizations can simulate the exact types of social engineering tactics that modern threat actors are deploying. This creates a dynamic feedback loop where defenses evolve as quickly as the offensive tools available to bad actors.
Mosyle’s involvement in this episode highlights the growing intersection between device management and security culture. With over 45,000 organizations relying on their platform, the emphasis is on seamless protection that does not hinder productivity. The podcast suggests that security cannot be an afterthought or a separate silo within IT. It must be woven into the daily workflow of Apple device users. This holistic view is essential for maintaining a robust security posture in hybrid work environments where devices are constantly connecting to various networks.
The implications for business leaders are clear. Investing in sophisticated phishing simulations is no longer a nice-to-have but a necessity. Generic training modules often lead to alert fatigue, where employees ignore warnings because they feel irrelevant. Tailored simulations, however, demand attention because they reflect the employee’s actual work context. This personalized approach increases engagement and improves retention of security best practices. Companies that fail to adapt their training methods risk leaving their human firewall wide open to AI-enhanced attacks.
As we look toward the future of workplace security, the partnership between advanced device management and intelligent security training will be crucial. The tools we use to manage our devices must also support the continuous education of our users. This means integrating security awareness directly into the platforms employees use every day. By making security a natural part of the digital workflow, organizations can reduce friction while increasing resilience against sophisticated threats.
What this means for you: If you manage a team using Apple devices, consider upgrading your security training from static videos to dynamic, AI-driven simulations. You can start by auditing your current phishing response rates and identifying common vulnerabilities. Then, use an AI assistant to help draft a policy for implementing tailored simulations that reflect your company’s specific communication style. Try this prompt with your AI tool to get started: "Act as a cybersecurity consultant. Outline a three-step plan for implementing AI-driven phishing simulations for a mid-sized tech company, focusing on reducing false positives and increasing employee engagement." This practical step can significantly enhance your organization's defense against modern social engineering attacks.
Reporting basis: original story
← back to The Wire






