Frequently Asked Questions
How is Mimecast’s anti-phishing approach different from standard email filtering?
Traditional filters rely on known threat signatures and static content rules. Mimecast uses AI, NLP, and computer vision to detect novel attacks, including malware-less BEC, lookalike domain impersonation, and URLs that turn malicious after delivery. Time-of-click URL rewriting means protection continues even after an email lands in the inbox.
Can Mimecast protect against phishing attacks that don’t contain links or attachments?
Yes. Mimecast’s detection is specifically designed for text-only BEC attacks. It analyzes email headers, sender domain similarity, and message sentiment to flag social engineering attempts, even when there is no malicious payload to scan.
What happens if a phishing email is delivered before it is identified as malicious?
Mimecast’s automated remediation capability allows the platform to search for and purge a malicious email from all user mailboxes after the fact. Time-of-click URL protection also ensures that even if the email was delivered, users are blocked from reaching harmful destinations when they attempt to click.
Does Mimecast scan internal emails, or only inbound messages from outside the organization?
Mimecast scans inbound, outbound, and internal email. By scanning internal email, Mimecast specifically addresses the risk of a compromised internal account being used to spread phishing links or malware to colleagues, a scenario that perimeter-only tools miss entirely.
How does Mimecast help with employee phishing awareness?
Mimecast includes dynamic security awareness training with phishing simulations and places warning banners on emails from external or unknown senders. Regular simulation-based training has been shown to reduce employee click rates on phishing links by up to 90%.
Does Mimecast support compliance with data protection regulations?
Yes. Mimecast’s anti-phishing controls, DMARC enforcement, and detailed security reporting help organizations meet requirements under GDPR, HIPAA, PCI-DSS, and NIS2. Tamper-proof logs of policy violations and remediation actions provide the audit-ready evidence regulators require.