MX-Only customers on Secure Email Gateway. Not affected: API-Based or non-SEG customers (DMARC-only, Incydr-only, etc.)
This article explains the Social Graphing rollout: what it does, how it differs from CyberGraph, why no action is needed from users or admins, and what comes next for Multi-Vector Threat Protection.
| Q: | Why is Mimecast enabling Social Graphing? |
| A: | Our data shows that 85% of all malicious email attacks originate from unknown senders, individuals, or entities with no established communication history within your organization. This represents a significant and growing attack vector that traditional detection methods alone cannot fully address. Social Graphing maps the communication relationships across your organization, building contextual awareness of who your people regularly interact with. By understanding these patterns, Mimecast can more effectively identify messages from senders outside your established communication network and apply enhanced scrutiny where it matters most. This is a proactive step by Mimecast to strengthen the baseline security of every customer account and improve detection efficacy against unknown sender threats. |
| Q: | What's the difference between Social Graphing and CyberGraph? |
| A: |
Mimecast's broader platform includes both Social Graph and CyberGraph capabilities. However, this rollout focuses solely on enabling the Social Graph component. No banner changes: Your end-users will not see any new warnings, banners, or visual changes in their email experience, while improved efficacy from Social Graphing adds a contextual layer to detection, enhancing Mimecast's ability to identify threats from unfamiliar senders. |
| Q: | When will my organization receive Social Graphing? |
| A: |
Mimecast will be rolling out Social Graphing as a base contextual trigger across all eligible customer accounts over the next two months. If you have concerns about this update or wish to discuss opting out of Social Graphing, please contact your Account Management team. Customers who have previously opted out will not receive this update, and Mimecast will continue to honor your existing configuration preferences. |
| Q: | Is any action required? |
| A: |
No. Social Graphing will be automatically enabled on your account with no action required from administrators or end users. A new policy will be created in the CyberGraph Policies Menu with the following settings: Default Policy Configuration Default Policy Set Up (Learning Mode) for CyberGraph
This policy uses email metadata to power Social Graphing technology. Social Graphing data is retained for 12 months within the CyberGraph system. |
| Q: | What comes next with Multi-Vector Threat Protection? |
| A: |
Social Graphing is a foundational step toward the full rollout of Multi-Vector Threat Protection (MVTP). Mimecast’s advanced email security feature is built to stop sophisticated threats that bypass traditional, single-layer defenses. Unlike legacy solutions that analyze threats in isolation, MVTP aggregates signals from multiple detection engines, including Social Graph analysis, anti-spam, and URL protection. By correlating indicators like unknown senders, domain spikes, freemail usage, and human verification traps, MVTP identifies and blocks malicious emails before they reach your users. Social Graphing ensures your MVTP policy is powered by your Social Graph from day one. Shortly after Social Graphing is enabled, Mimecast will enable MVTP in Monitor Mode leveraging your social graph to begin improving detections and building accuracy, with no impact to mail flow or end users during this period, allowing administrators to review detections prior to updating from Monitor Mode to Hold Mode. Default Policy Configuration Default Policy Set Up (Monitoring Mode) for MVTP
|
| Q: | What type of Audit Logs are generated? |
| A: |
The visibility of audit log entries depends on when your organization receives the Social Graphing update:
If you have any questions, contact your Mimecast Customer Success Manager (CSM) or our support team. |
Comments
Please sign in to leave a comment.