Skip to main content

Email & Collaboration Threat Protection

Tier 1 Checks

#CheckLicense
E01SPF records are published for all accepted domains
E02DKIM signing is enabled for all custom domains
E03DMARC is published and set to enforce (p=quarantine or p=reject)
E04Inbound and outbound TLS is enforced for mail transport
E05Safe Attachments protection is applied to all recipientsMDO P1
E06Anti-malware common attachments filter blocks dangerous file types
E07Safe Links protection is applied to email, Teams, and Office appsMDO P1
E08Anti-phishing spoof and impersonation protection is configuredMDO P1
E09External sender tagging is enabled
E10POP and IMAP are disabled at the organization and per mailbox
E11A transport rule blocks executable attachments
E12A transport rule blocks oversized attachments

Tier 2 / Tier 3 coverage

Tier 1 covers the highest-impact email-authentication and Defender for Office 365 controls. Tier 2 and Tier 3 add depth on Strict-preset tuning, custom anti-phishing impersonation lists and trusted senders, quarantine policies and end-user release, Safe Attachments for SharePoint/OneDrive/Teams, Zero-hour Auto Purge configuration, Attack Simulation Training, mailbox audit baselines, and Defender for Office 365 Plan 2 investigation/automation (Threat Explorer, Automated Investigation and Response).

📩 Don't Miss the Next Solution

Join the list to see the real-time solutions I'm delivering to my GCC High clients.