Identify and Respond to Email Threats
Faster with KnowBe4 PhishER

Introduction

Phishing remains the most widely used cyber-attack vector. In the region of 10 to 15 percent of current spam and malicious emails make it past currently installed email filters.

Companies who have invested in training their employees with the latest forms of security awareness training, including simulated phishing tests and have deployed the free KnowBe4 Phish Alert Button can still run into problems accurately identifying a spam email versus a phishing email or other type of malicious email.

Many of these emails are reported by employees to Information Security teams and require review as quickly as possible. Since each message requires some level of analysis and possible human intervention to prioritise, companies with limited security resources need a quick and easy way to respond to and mitigate these emails.

Incident response orchestration can deliver immediate efficiencies to an Information Security or Security Operations team. With the right strategy and planning, a company can build a fully orchestrated and intelligent SOC that can contend with today’s threats. PhishER is a critical element to help Incident Response and Information Security teams work together to mitigate the phishing threat.

Our Information Security and Security Operations teams spend a significant amount of time and resource checking suspected Phishing emails. Can PhishER help me?

Additionally, with PhishER you are able to automate the management of the 90% of reported emails that are not threats. Incident Response orchestration can easily deliver immediate efficiencies to your Information Security team, but the potential value is much greater than that.
With the right strategy and planning, your company can build a fully orchestrated and intelligent Security Operations Centre that can contend with today’s threats. PhishER is a critical element to help your Information Security and Incident Response teams work together to mitigate the phishing threat and is suited for any company that wants to automatically prioritise and manage potentially malicious messages — accurately and fast.
PhishER is available as a stand-alone product or as an add-on option for existing KnowBe4 customers.

So, I understand the benefits that PhishER can bring to my company — but how does it actually work?

This all makes sense, but can you provide some more information on how the prioritisation, rules and tagging work?

Automatic Message Prioritisation:

Simple and Advanced Rule Creation:

PhishML™:

Emergency Rooms:

Each room is interactive, allowing you to drill down into filtered inbox views of the messages and take action across all associated messages at the same time. The overview of the Emergency Rooms allows you to immediately prioritise which room contains the most messages and is in need of attention.
In addition, you can define criteria to create your own room and highlight what means the most to your company. Interested in how many messages are spoofing your executives or how many legitimate HR notices are being reported by your employees? How about finding out if there is a widespread generic phish campaign that many employees are reporting? Emergency Rooms will give you all that and more.

--

--

Specialist in innovative disruptive technologies with business focused consultants.

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Somerford Associates Limited

Specialist in innovative disruptive technologies with business focused consultants.