One Console, Many Clients: The empowsec MSP Portal

Rachel Andersen··5 min read
An MSP managing multiple client companies

The Challenge of Managing Security Awareness Across Many Clients

For a managed services provider or reseller, delivering security awareness training to a portfolio of clients introduces a coordination problem that does not exist when you work with a single organization. Each client has its own employees, its own departments, its own risk profile, and its own compliance obligations. Without a centralized management layer, administering training and phishing simulation for even a handful of clients means logging into separate portals, managing separate seat counts, and assembling reports from separate data sources. As the client list grows, that approach stops working.

empowsec is built with this reality in mind. The reseller console is a dedicated multi-company management layer that sits above individual company portals. From one place, a reseller team can see every client, manage provisioning, control which capabilities each client can access, and pull reporting that spans the entire managed portfolio. It is the difference between managing clients one at a time and managing them as a coherent operation.

Provisioning Companies and Allocating Seats

Adding a new client company to empowsec is a provisioning action in the reseller console. The reseller sets up the company, assigns it a seat allocation drawn from a shared pool, and decides which capabilities to turn on - training, phishing simulation, interactive lessons, API access, and white-label branding can each be toggled per client. This granularity means a reseller can offer tiered service packages: a base tier with training only, a mid-tier with training and phishing, a premium tier with the full feature set.

Seat management uses a shared pool model. The reseller holds a total seat entitlement and distributes capacity across clients as needed. When a client grows and needs more seats, the reseller can reallocate from the pool without waiting for a separate procurement process. Seat usage is visible in real time in the reseller console, so it is straightforward to spot which clients are approaching their allocation and proactively start a conversation about growth.

app.empowsec.com / reseller / companies
Clients
24
active companies
Seats in use
1,847
of 2,500 allocated
At-risk users
63
across 8 clients
Phishing active
11
clients running campaigns
CompanySeats usedCapabilitiesStatus
Acme Corp320 / 350TrainingPhishingActive
Beta Industries88 / 100TrainingActive
Gamma Financial195 / 200TrainingPhishingAPINear limit
The reseller console showing client companies, seat usage, active capabilities, and status.

Role-Based Permissions for Reseller Teams

A reseller is rarely a single person. Account managers, technical administrators, compliance reviewers, and support staff all need different levels of access to the console. empowsec handles this through role-based permissions within the reseller team. Each team member gets the access that matches their function - a support analyst might be able to view client data but not modify seat allocations, while a senior administrator has full provisioning rights.

The impersonation capability is particularly useful for support workflows. When a client administrator reports a problem - an employee is not seeing their assignment, a campaign result looks wrong, a login is failing - a reseller team member can impersonate the relevant user to see exactly what they see and diagnose the issue without asking the client to describe every step. Every impersonation session is logged, so there is a clear audit record of support activity alongside normal user activity. This keeps support efficient and keeps accountability intact.

Shared Training Library and Custom Phishing Templates

One of the operational advantages of the reseller model in empowsec is the ability to maintain shared resources that apply across all managed companies. Resellers have access to a shared training library, which means training modules curated or approved by the reseller are available to every client company without needing to be copied or re-created individually. This is particularly valuable for MSPs that serve clients in the same industry vertical and want to ensure consistent baseline training.

Custom phishing templates work the same way. A reseller can build a library of phishing templates that reflect the kind of attacks their clients' industries are actually facing - lures that mimic common SaaS tools, financial notifications, or IT helpdesk communications - and make those templates available across the portfolio. Clients benefit from well-crafted, realistic simulations; the reseller builds a differentiating capability that is part of their service value.

Cross-Company Reporting and Risk Visibility

Reporting in empowsec extends naturally from the individual company level to the reseller level. A reseller can pull training completion rates, phishing simulation results, and risk scores not just for one client but aggregated or filtered across the entire managed portfolio. This cross-company visibility is the foundation of the kind of risk reporting that MSPs can use in client business reviews - presenting trend data that shows how a client's security posture has changed over time, which departments need attention, and how they compare to progress across the portfolio.

For compliance-focused clients, this reporting also supports audit evidence gathering. NIS2 and similar frameworks expect organizations to demonstrate ongoing security awareness efforts with measurable results. An MSP that can present structured training completion and phishing simulation data for a client is providing genuine value beyond the training itself.

Key Takeaways

  • empowsec's reseller console provides a single management layer for provisioning companies, allocating seats from a shared pool, and toggling capabilities per client.
  • Role-based permissions within the reseller team let account managers, administrators, and support staff operate at their appropriate access level.
  • User impersonation makes support fast and precise - and every session is audit-logged.
  • A shared training library and custom phishing templates let resellers maintain consistent, high-quality content across all managed clients.
  • Cross-company reporting gives MSPs the data they need for client business reviews and compliance evidence.
Share: