Goldfish don't forget on purpose. Neither do your employees.

"Everyone should remember what they learn." That's the Junglemap vision. Easy to understand, but maybe harder to figure out how it's done. The secret is quite simple. We don't do micro-learning. We do NanoLearning. And there's a big difference. Arno van den Hof, Junglemap Country Manager, explains how it's done leading up to the annual Cybersec Netherlands conference.

September 7, 2026

You've probably heard that goldfish forget everything after a few seconds. It's actually a myth, but it's a pretty good metaphor for how most of us treat information today. In a TikTok-fied world with content producers that treat us like goldfish and just wants us to keep scrolling, less is more. Especially when the topic is something like information security, a subject no one ever wakes up thinking they want to spend their time on.

This is how we do it

1. A strict 3-minute max. Our customers love it. They know their employees take the time to complete their lessons, and have the patience to pay attention all the way through.

2. One lesson, one topic. We talk about one thing at a time. This makes the learning more focused and easier for anyone to follow.

3. Repetition, reflection, reinforcement. These three scientifically proven techniques are the (not-so) secret sauce, and the most important part of the recipe for beating the forgetting curve.

To put it simply: this is what Junglemap offers to help organisations build awareness and strengthen the right security behaviours and security cultures.

Knowledge is not enough

But knowledge and awareness alone aren't enough. "123456" is still the world's most used password and has held that position for six of the past seven years. It's not because people don't know it's unsafe.

It's because it's too hard to do what's right.

Effective behaviour change comes down to a golden triangle: Knowledge, Attitude, Ability.

·      Knowledge — people need toknow what to do.

·      Attitude — they need to believe it matters.

·      Ability — they need to be equipped, in practice, to do the secure thing. Not just told to.

For NanoLearning to work in any organisation, management needs to show that this is important: that it's okay to speak up, okay to make mistakes, and that questions are always welcome.

We also need good guardrails and systems that support the right behaviours. As soon as security procedures become too hard to follow, or get in the way of everyday work, people tend to invent workarounds and ways to bypass the rules. Regardless of what the policy documents say.

A NanoLearning lesson is short. 3 minutes max. But a NanoLearning course basically never ends, simply because learning isn't an event, it's a process. For awareness training to really nudge behaviour in the right direction, it's all about repetition, reflection and reinforcement.

And it works. Even if you're a goldfish.

Learn more about NanoLearning here