+
Praxis Navigator + MetaCompliance: Measure What Compliance Records Can't Show
MetaCompliance delivers human risk management through automated security awareness, phishing simulations, and compliance tools across Europe. Praxis Navigator adds a different layer: independent, read-only evidence of whether employees are actually behaving more securely in Microsoft 365. This page shows what MetaCompliance's reporting can tell you, what it can't, and how the two combine to produce the behavioral evidence GDPR, NIS2 and DORA now ask for.
MetaCompliance: Human Risk Management Across Europe
MetaCompliance is a UK-founded human risk management platform backed by the private-equity firm Keensight Capital. It has grown through three acquisitions in three years — most recently acquiring the Nordic NanoLearning leader Junglemap in December 2025 — to build a comprehensive European human risk management platform.
Source: MetaCompliance / Keensight Capital announcement · Verified July 2026
If your organization runs Junglemap through that acquisition and your program is moving onto MetaCompliance's platform, see what the migration means for the evidence you've already built.
What MetaCompliance delivers:
-
Automated security awareness — Personalized, role-based training with monthly content releases, available in 44+ languages, including Junglemap's NanoLearning methodology for short-form, high-frequency learning
-
Advanced phishing simulation (MetaPhish) — Customizable, role-specific phishing campaigns with a library of templates and point-of-click learning when users interact with a simulated email
-
Risk Intelligence & Analytics — Risk scoring, engagement tracking, Exposure Monitoring that checks employee emails against verified breach data, and Power BI dashboard integration for executive reporting
-
Compliance management — Policy lifecycle management, audit-ready reporting, and regulatory frameworks support for GDPR, NIS2, DORA, and ISO 27001
-
Integrations — Connects with Microsoft Teams, Slack, Azure AD, Office 365, and ServiceNow
-
Gamification — Leaderboards, competitive elements, and Virtual Presenter for AI-enabled content delivery
MetaCompliance is particularly well-suited for mid-market and enterprise organizations across the UK and Europe that need a single platform combining security awareness, phishing testing, compliance management, and risk analytics in 44+ languages.
What MetaCompliance's reporting can't show
MetaCompliance's platform is one of the more comprehensive HRM suites in Europe, combining training, phishing, compliance, and analytics. But there's a structural gap between what the platform measures and what your board needs to see:
MetaCompliance's reporting shows:
- Who completed their training modules and at what engagement level
- Who clicked on simulated phishing and how click rates trend over time
- Individual risk scores based on training activity, phishing results, and breach exposure
- Compliance status against regulatory frameworks
- Which employees appear on leaderboards and who needs remedial training
MetaCompliance's reporting can't show:
- How employees handle file sharing across SharePoint and OneDrive day-to-day
- Whether collaboration behaviors in Teams are becoming more or less secure
- How MFA adoption and identity hygiene are trending across the organization
- Whether a specific training campaign or policy rollout produced measurable behavioral improvement in daily Microsoft 365 usage
- What your organization's security culture looks like as a quantified, trackable metric over time
MetaCompliance's Risk Intelligence tracks signals within its own platform: training completions, phishing test performance, breach exposure data, and compliance status. These are valuable inputs. But they measure what happens inside the HRM platform. They can't measure what happens when employees close the training module and go back to work in Microsoft 365.
That gap between "risk score improved" and "behavior actually changed" is exactly what Praxis Navigator was built to close. See the difference between activity metrics and behavioral evidence.
Peer-reviewed field research
29–55%
of the variation in phishing susceptibility is attributable to organizational-level factors, not individual ones.
Measured across 83,269 employees in 510 organizations, using their real responses to phishing campaigns.
Petrič, G., & Roer, K. (2022). The impact of formal and informal organizational norms on susceptibility to phishing. Telematics and Informatics, 67, 101766. Licensed under CC BY 4.0.
What MetaCompliance reports — and what GDPR still asks for
MetaCompliance's platform is compliance-workflow-led, which makes the gap sharper: policy attestation and training records are documentation that a measure exists, not evidence that it works. GDPR Art 32(1)(d) is the clause that says so directly.
| What your reports show | What the regulation asks for | What closes the gap |
|---|---|---|
| Policy attestations and training completion records | GDPR Art 32(1)(d) — a process for regularly testing, assessing and evaluating the effectiveness of security measures | Behavioral evidence that the human layer actually improved, not just documentation that a measure exists |
| Phishing-simulation results and Risk Intelligence scores | NIS2 CIR Annex §8.1.3 — awareness and training programs must be assessed for effectiveness, not simply delivered | An independent behavioral baseline and trend, read from Microsoft 365 |
| Compliance status against regulatory frameworks | NIS2 CIR Annex §7 — the effectiveness of risk-management measures, technical and organizational, must be evaluated | Before-and-after behavioral comparison across the workforce |
MetaCompliance's records document that the measures exist and that training happened. GDPR asks whether they work — a different measurement, taken from a different place.
See what GDPR asks you to evidenceHow Praxis Navigator measures it instead
Praxis Navigator connects to your Microsoft 365 environment via the Graph API and monitors actual employee security behaviors across five data sources: Exchange Online, SharePoint, OneDrive, Teams, and Entra ID.
Instead of measuring training engagement or simulated phishing results, Praxis Navigator measures what employees do — every day, in their normal work.
What Praxis Navigator shows you:
- Behavioral baselines — how your employees handle security before any intervention, calculated from historic Microsoft 365 data available from day one
- 20+ behavior indicators — real security behaviors across email, file sharing, collaboration, and identity management
- Intervention tagging — tag when you roll out a MetaCompliance campaign, update a compliance policy, or make any other change
- Before/after comparison — automatic behavioral comparison showing whether each intervention produced measurable change
- Security culture scoring — quantified culture maturity metrics based on the Security Culture Framework adopted by ENISA
- Stakeholder reports — board-ready evidence that your security investments are working. See how the platform works
Setup takes 15 minutes. No agents, no endpoint software, no data export. You see historic behavioral data from day one — no waiting months to build a baseline.
How MetaCompliance and Praxis Navigator work together
Baseline — Connect Praxis Navigator to Microsoft 365 and see your current behavioral baseline.
Train & Test — MetaCompliance delivers automated awareness training, phishing simulations, and compliance policies.
Tag — Tag MetaCompliance campaigns and policy rollouts as interventions in Praxis Navigator.
Compare — See automatic before/during/after behavioral comparison.
Prove — Generate stakeholder reports showing whether the program is producing measurable behavior change.
Need to justify the investment to your board? Calculate your security training ROI — free, no email required.
Feature comparison
| Capability | MetaCompliance | Praxis Navigator | Together |
|---|---|---|---|
| Automated security awareness training | Yes | — | MetaCompliance delivers training |
| NanoLearning (via Junglemap) | Yes | — | MetaCompliance delivers short-form training |
| Phishing simulation (MetaPhish) | Yes | — | MetaCompliance tests awareness |
| Compliance and policy management | Yes | — | MetaCompliance manages compliance |
| Risk scoring (platform-based) | Yes | — | MetaCompliance scores risk from platform signals |
| Training completion tracking | Yes | — | MetaCompliance tracks participation |
| Microsoft 365 behavior monitoring | — | Yes | Praxis measures real daily behavior |
| Behavioral baseline from historic data | — | Yes | Praxis provides an instant baseline |
| Intervention impact measurement | — | Yes | Praxis proves what worked |
| Published pricing, self-serve signup | — | Yes | Praxis is buyable without a sales call |
| Dedicated environment per customer | — | Yes — dedicated Azure | No pooled tenant data |
| Evidence independent of the training platform | No | Yes | Measurement that survives a vendor change |
| Setup time | Days (depending on scope) | 15 minutes | Praxis operational alongside existing MetaCompliance deployment |
MetaCompliance is a human risk management and compliance platform; Praxis Navigator is a behavior monitoring platform. They serve different functions in a security program.
Pricing you can see
Our prices are published. Use the calculator, see your number, start a trial — no sales call, no qualification, no quote request. Most platforms in this category will not tell you the price without a meeting first.
See the priceQuestions security leaders ask
Is Praxis Navigator a replacement for MetaCompliance?
Doesn't MetaCompliance's Risk Intelligence already measure behavior?
We use Junglemap through MetaCompliance. Does Praxis Navigator work with that?
MetaCompliance claims to "prove the impact" — how is Praxis Navigator different?
Do MetaCompliance's policy attestations satisfy GDPR's requirement to test security effectiveness?
How does Praxis Navigator get behavioral data?
How quickly can I see results?
Does Praxis Navigator work with other HRM platforms besides MetaCompliance?
Who built Praxis Navigator?
Already using MetaCompliance?
Connect Praxis Navigator to your Microsoft 365 in 15 minutes and see whether your MetaCompliance investment is actually changing how employees work.
Start your free 30-day trialNo credit card. No commitment. Results in 15 minutes, or don't continue.
See the price — published, no sales call required.
Read what GDPR requires — effectiveness must be tested and evaluated, not just documented.
Related comparisons
Praxis Navigator + KnowBe4
Measure the impact of the world's largest security awareness training platform.
Praxis Navigator + Proofpoint
Add behavioral measurement to enterprise email security and training.
Junglemap is now part of MetaCompliance
If your program is moving platforms, this is the moment to establish a behavioral baseline you keep.
Compare every platform category
See what each kind of platform measures, and what none of them measure, in one place.