This article gives an overview of Mimecast Awareness Training SAFE Phish functionality, and is intended for End Users and Administrators.
This functionality is available for Email Security Cloud Gateway only, where Targeted Threat Protection – URL Protect enabled.
Also see:
Introduction
Mimecast SAFE Phish turns real-time, de-weaponized phishing attacks into training exercises for your organization to utilize and incorporate into their habits/behavior. This means your users are exposed to real threats in a safe environment, where they can challenge, analyze, and investigate a scenario and why it is deemed a threat.
Benefits
SAFE Phish benefits include:
- Capturing real-life phishing attacks and transforming them into productive training exercises that:
- Demonstrate the specific attacks your organization experiences.
- Trains your users to be proactive in their approach to them.
- Ensuring your most targeted and at risk users are supported and well-equipped to deal with future potential attacks.
- Allowing your organization to transform the way user and organization risk is measured.
Understanding SAFE Phish
If you have Targeted Threat Protection - URL Protect configured, URLs are rewritten at the gateway by Mimecast before they reach a user’s inbox and this negates the threat.
When a user opens a phishing email and clicks on the rewritten URL:
- The TTP block page displays a warning message alerting the user of a potential risk.
- The user’s poor URL click is reflected in the Mimecast SAFE Score User Risk. User Risk is visible in Program Overview.
- Simultaneously, the SAFE Score is updated and the original email is added to Mimecast Awareness Training, so that the Real Phishing Attack templates can be converted into a custom Phishing Templates. See Creating Templates From URL Protection Clicks for information on how to easily turn de-weaponized phishing attacks that specifically targeted your organization, into custom Mimecast Awareness Training phishing templates to send as phishing simulations.
The criteria for creating a SAFE Phish template is when a URL that is considered as phishing is clicked by the user. SAFE Phish templates last for 30 days once they have been created.
Comments
Please sign in to leave a comment.