Skip to main content
Guidance

Email security and anti-spoofing

A guide for IT managers and systems administrators

Page 4 of 14

2. Protect email in transit

Where email is transferred over untrusted networks, such as the internet, its integrity and confidentially should be protected.

Although it is possible to encrypt individual emails using protocols like PGP or S/MIME, this requires the sender and recipient to have the necessary trust infrastructure in place. This is not likely to be possible for all the parties you communicate with. So, your email servers should be configured to support encryption of the communications channel that the email is sent over. This task is best handled by TLS.

TLS and cloud providers

Where you use a cloud provider for your email, such as Microsoft’s O365 or Google’s G-Suite, this will likely already be in place.

The Further reading page has details on the security controls of the most common cloud providers.






Reviewed

Version

2.0