WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts Four Practices for Enhancing Email Security
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

Four Practices for Enhancing Email Security

Author: Alec Davison

Created: Thursday, May 19, 2022 - 18:21

Categories: Cybersecurity

Just as businesses depend on email for work, threat actors count on it for conducting malicious activity. According to Cofense, the three most prevalent types of attacks against email systems in 2021 were credential phishing, business email compromise (BEC), and malware delivery. Specifically, the data revealed that 70 percent of all email attacks were credential phishing.

Regardless of the type of attack, there are a few email fundamentals that organizations can implement to increase overall cybersecurity and resilience. First, user awareness training is critical for fostering a disciplined and informed workforce that can carefully discern legitimate email communications from phishing scams. Second, employees should know how to report a suspicious email as soon as they detect one. Third, security personnel should be able to conduct a rapid response to remediate potential threats after employees have identified one, that means ensuring a phishing email identified by one employee is scrubbed from across the company’s email system. Finally, companies should have some type of post-delivery analysis capability that can proactively detect threats in an email server. Typically, secure email gateways (SEGs) are used for this, and entities often stack SEGs to increase the chances of catching a threat. For additional information on increasing your organization’s email security read more at SecurityWeek.

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated June 25, 2026)

Jun 25, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

Tip of the Week – June 25, 2026

Jun 25, 2026 in Cybersecurity, Security Preparedness

(TLP:CLEAR) CISA Guidance Helps Organizations Modernize Network Security with Zero Trust and SASE

Jun 25, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident
Traffic Light Protocol (TLP)

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar