The Experience Behind CFISA

Cybersecurity experience earned in the real world.

Michael Levin spent more than 30 years in public service and law enforcement, including decades focused on cybercrime, investigations, and cybersecurity leadership. That experience is the foundation of CFISA.

Michael Levin's career in law enforcement, cybersecurity, and security awareness education
Michael Levin CEO & Founder, CFISA Former U.S. Secret Service Agent and federal cybersecurity leader
A Career Built Around Cybercrime

Experience before education.

Long before cybersecurity awareness became an industry, Michael was working where cybercrime, investigations, technology, and human behavior intersected. Those career chapters continue to shape how CFISA approaches security awareness training today.

01
United States Secret Service
U.S. Secret Service · 22 Years

Investigating cybercrime in the real world.

Michael spent 22 years with the U.S. Secret Service during a career that included cybercrime investigations, computer forensics, intelligence, and the evolving threat posed by hackers and electronic crime.

Electronic Crimes Task Force

Building collaboration against electronic crime.

Michael managed the Secret Service Electronic Crimes Task Force program, bringing law enforcement, private industry, and other organizations together to address increasingly sophisticated electronic crime.

02
United States Department of Homeland Security
Department of Homeland Security

National cybersecurity leadership.

Michael completed his federal government career as Deputy Director of the National Cyber Security Division at the U.S. Department of Homeland Security.

03
CFISA Founded

Turning investigative experience into prevention.

After completing his government career, Michael founded the Center for Information Security Awareness in 2007 to help organizations prepare employees for the behaviors and decisions cybercriminals exploit.

04
Microsoft
Microsoft Global Security · 9 Years

Investigations at global scale.

Michael later spent nine years as Senior Investigations Manager for Microsoft Global Security, supporting investigative and security work across North and South America.

05
CFISA Today

Keeping security awareness connected to current threats.

Michael remains directly involved in CFISA training and continues to speak about AI-enabled cybercrime, phishing, social engineering, identity attacks, deepfakes, and the human decisions attackers target.

Institutional names and marks shown above represent Michael Levin’s career history. They do not imply current endorsement of CFISA.

2007

From investigating attacks to helping prevent them.

Why Michael Built CFISA

Cybersecurity ultimately comes down to decisions people make.

After decades working around cybercrime and investigations, Michael had seen what happens when a convincing message, stolen credential, misplaced trust, or simple mistake becomes a security incident.

He founded CFISA to move that experience upstream. The goal was straightforward: help employees recognize the situations attackers exploit before those situations become incidents.

Serious security awareness training does not need unnecessary complexity. People need to understand the risk, recognize the moment that matters, and know what to do next.

Experience Applied

What real cybercrime experience changes.

CFISA training is shaped by what attackers actually do, where people become vulnerable, and what employees can realistically do to reduce risk.

01

Real Attacks

Training begins with how cybercriminals actually operate, not abstract security theory.

02

Human Decisions

Employees learn to recognize the ordinary moments when clicks, credentials, messages, and trust become security decisions.

03

Practical Response

Awareness should tell people what to do next, not simply frighten them with threats and statistics.

04

Current Threats

AI-enabled scams, phishing, business email compromise, identity attacks, QR threats, social engineering, and emerging risks continually shape the curriculum.

Michael Today

Still focused on what comes next.

Michael continues to speak with business, healthcare, technology, and cybersecurity audiences about AI-driven cybercrime, social engineering, employee risk, and the human side of security.

Michael Levin delivering a cybersecurity keynote at LiGHTX 2025
LiGHTX 2025 · Orlando Cyber Smarts for Smart Leaders: Protecting People, Data, and Trust
Keynote
2026 From the Conversation
Recorded at the TribalHub Cybersecurity Summit

AI, Cybercrime, and the Human Factor

After delivering the opening keynote, Michael joined TribalHub to continue the conversation about AI-powered phishing, social engineering, deepfake fraud, and why attackers continue to focus on people.

Listen to the Interview 23 minute conversation
Recent Speaking

Keynotes, conferences, and industry conversations.

Speaking & Media Bring real-world cybersecurity experience to your audience.

Michael is available for select keynotes, executive sessions, podcasts, panels, webinars, interviews, and media appearances.

Request Michael
CFISA Today

Real-world experience. Modern delivery.

The mission has stayed consistent since 2007, while the ways organizations deploy and manage cybersecurity awareness training have continued to evolve.

01 Modern eLearning

Current cybersecurity awareness training designed around practical employee understanding, retention, and response.

02 Enterprise Delivery

Training can support enterprise learning environments, including LMS and SCORM-based deployments.

03 Live Training

Michael continues to lead engaging onsite and live webinar sessions for organizations that want a direct, interactive experience.

04 Flexible Procurement

CFISA supports organizations through direct purchasing and modern enterprise procurement options, including AWS Marketplace.

Certified Training Texas DIR-certified cybersecurity awareness training CFISA’s Security Awareness Training Level II has been certified for Texas state and local government employee training since 2020.
Explore Training →
About CFISA

A little more about who’s behind the training.

Put the Experience to Work

Help your employees recognize what attackers hope they miss.

Explore practical cybersecurity awareness training built from decades of real-world cybercrime experience.

Scroll to Top