• Facebook
  • Twitter
  • LinkedIn
  • Instagram
  • FAQs
  • Careers
  • Privacy Policy
  • Remote Support
(403) 237-7750
The ITeam
  • Home
  • Services
    • Managed IT Services
    • Cyber Security Calgary
      • Email Security
      • Security Training
    • Cloud Services
      • BaaS
      • IaaS
      • BCDR
      • DRaaS
      • Hosted Services
      • Microsoft Azure
    • Microsoft 365 Services
  • Industry
    • Construction
    • Healthcare
    • Oil & Gas
    • Legal Firm
    • Accounting
    • SME
    • Clients & Achievements
  • Your ITeam
    • Careers
  • Blog
    • News
  • Business Assessment
  • Contact Us
  • Menu Menu
  • Home
  • Services
    • Managed IT Services
    • Cyber Security Calgary
      • Email Security
      • Security Training
    • Cloud Services
      • BaaS
      • IaaS
      • BCDR
      • DRaaS
      • Hosted Services
      • Microsoft Azure
    • Microsoft 365 Services
  • Industry
    • Construction
    • Healthcare
    • Oil & Gas
    • Legal Firm
    • Accounting
    • SME
    • Clients & Achievements
  • Your ITeam
    • Careers
  • Blog
    • News
  • Business Assessment
  • Contact Us
Blog
can you catch a phish

Catching Phish: Email Security for Your Team

November 4, 2019/1 Comment/in Email Security /by James Wagner

Email is the gateway used by most hackers to launch their nefarious schemes. Today’s hackers are far more sophisticated than before, and they’re willing to take their time to gather the information they need to successfully hack into your organization. Your best phish defense – besides layers of security and a great MSP partner – is employee education. Training your staff on what to look for in a phishing email and to be cautious with every email – even those that look like they come from your CEO – could potentially save your organization hundreds of thousands of dollars.

The First Danger of a Phishing Email: Know Who It’s From

Be honest: If you were busy and you received an email from john@qutterinstallers.com, would you really notice that the email address was off by one letter? Now go back and look at the email address. You probably thought it read ‘john at Gutterinstallers.com,’ right? But in reality, it read ‘john at Qutterinstallers.com.’ Yes, hackers are that subtle. Because not only can they make emails look like they have been sent from an internal address, but they can also insert themselves mid-conversation into an email thread so that you really do think you’re talking to the right person. This is why every email requires the same vigilance – even if you think it’s from your boss or best client.

Hackers can also make it look as if an email was sent from john@Gutterinstallers.com, but when you hover over the email link (try it here), you’ll see that, in fact, it was sent from hacked@hackerswin.com.

phish

Keep these questions in mind with every email you receive:

  • Is the sender unfamiliar to you?
  • When you hover over the email address, is it different than what appears in the header?
  • Is the email out of character?
  • Is the email from someone outside of your organization and asking you to do something outside of your typical role?
  • Is the sender a stranger?
  • Does the email include a link or attachment?

No Action without Asking

It should be the policy of every company not to pay invoices, click links, open attachments, or take other actions without at least asking if it’s possible that the email could be fake. Look for these telltale clues and red flags in an email header:

  • Did the email arrive at an odd hour?
  • Is it from someone you don’t know or addressed differently than you would expect?
  • Is your name spelled incorrectly?
  • Is the email sent to multiple people, making the same request?

When you’re always on high alert about the potential risks of email, you’ll start noticing when something seems off. Watch for these clues:

  • Is it asking you to do something that’s not really your job?
  • Is there a sense of urgency or threat from the email that attempts to emotionally compromise you into taking action?

Don’t Click

If there is a link in an email, you should be on high alert. You can often tell when it’s a phishing email. Try these steps: When you hover over (but don’t click) on the link, does it go to a different website than what it says in the text? Does the hyperlink look similar to a legitimate website but differ, if only slightly?

Don’t Open

Does the email contain an attachment? Is the attachment a file of any type other than a text file (.txt)? Were you expecting the attachment because of a previous conversation or is it out of the blue? Does the message seem to pressure you into taking action of some kind?

Protect Your Organization Against Phishing Attacks

Strong spam filtering can stop most phishing emails, but some will still make it through. At this point, your employees are your final line of defence against an attack. Yes, your firewall and threat management software should protect you, but without extensive training and awareness,  a plan of action to protect your data, and non-stop vigilance, email may be what brings your organization down.

Download The ITeam’s Email Security Guide

Your greatest weakness can also be your greatest strength if you invest the necessary time and resources in educating your employees. When education is provided, employees become a partner in your overall cybersecurity efforts. The ITeam understands the email security issues facing Canada businesses. We are committed to helping Calgary- and Alberta-based businesses develop proactive, cost-effective IT strategies that minimize risk and maximize efficiency. Contact us to learn more.

Tags: email hacking, email security, email security training, phishing
Share this entry
  • Share on Facebook
  • Share on Twitter
  • Share on WhatsApp
  • Share on Pinterest
  • Share on LinkedIn
  • Share on Reddit
  • Share by Mail
You might also like
How to Prevent Your Business From Phishing, Malware, or Ransomware How To Prevent Your Business From Phishing, Malware, or Ransomware
email security is essential to business continuity Will Email Bring Down Your Organization?
lessons from data breaches Lessons from Data Breaches
The ITeam Security Bulletin: WannaCry Ransomware
Closing the Security Gaps: Employee Passwords
Phishing and Spoofed Emails Threaten Corporate Email Security
1 reply

Trackbacks & Pingbacks

  1. Your Password IS the Problem for Data Security | The ITeam says:
    December 10, 2019 at 10:17 am

    […] Provide ongoing, in-depth training to your staff about threats, including common email threats […]

Comments are closed.

Request An Assessment

  • This field is for validation purposes and should be left unchanged.

Request your complimentary business assessment below. We will contact you within 24 hours.

Categories

  • Asset Management
  • Azure
  • BDR
  • Business Continuity
  • Cloud Hosting
  • Cloud Security
  • Compliance
  • Cybersecurity
  • Data Privacy
  • Dental IT
  • Disaster Recovery
  • Email Security
  • Energy IT
  • IoT Security
  • Legal IT
  • Managed IT
  • Mobile Device Management
  • Multifactor Authentication
  • Network Assessment
  • News
  • Office 365
  • Ransomware
  • Security Alert
  • Small Business IT
  • VCIO

Pages

  • Accounting Firms & Accountants
  • Blog
  • Business Assessment
  • Careers
  • Clients & Achievements
    • Kemp Orthodontics
    • The Power of Partnership – Wood Group
  • Cloud Services
    • Backup as a Service (BaaS)
    • Business Continuity & Disaster Recovery (BCDR)
    • Infrastructure As A Service (IaaS)
  • Construction
  • Contact
  • Cyber Security Calgary
  • Disaster Recovery with HC3 by Scale Computing
  • Email Security
  • Healthcare Clients
  • Hosted Services
  • IT Services Calgary
  • IT Services FAQ
  • Legal Firm
  • Managed IT Services
  • Master Services Agreement
  • Microsoft 365 Services
  • Microsoft Azure
  • News
  • Oil & Gas
  • On Demand IT Services
  • Privacy Policy
  • Security Awareness Training
  • Small and Medium-Sized Enterprises (SMEs)
  • support
  • Terms Of Service
  • Thank You
  • When is Your Business Ready for Managed IT Services
  • Why setting up a business in Calgary Is a Good Idea
  • Your ITeam

CONTACT US

Sales:
Phone: (403) 750-2540
Email: sales@theiteam.ca

General Inquiry:
Phone: (403) 237-7750
Email: info@theiteam.ca

Service & Support:
Phone: (403) 750-2525
support@theiteam.ca

FIND US

The ITeam IT Support Calgary
Suite 200, 1210 8 Street SW
Calgary, AB T2R 1L3
(403) 750-2540

Office Hours:
Monday to Friday: 8AM to 5PM
(Mountain Standard Time)
IT Support Calgary The ITeam $$ (403) 750-2540 Calgary, AB
5

stars

"The ITeam provides peace of mind with high level security and superb customer service." - Jeff B.

OUR SERVICES

  • Managed IT Services
  • On Demand IT Services
  • Hosted Services
  • Clients & Achievements
LinkedIn | FB | Twitter | Instagram
Privacy Policy
Copyright © 2020 The iTeam.ca | All Rights Reserved
  • Facebook
  • Twitter
  • LinkedIn
  • Instagram
Lessons from Data Breaches lessons from data breaches your password IS the problem Your Password IS a Problem
Scroll to top

This site uses cookies. By continuing to browse the site, you are agreeing to our use of cookies.

OK

Cookie and Privacy Settings



How we use cookies

We may request cookies to be set on your device. We use cookies to let us know when you visit our websites, how you interact with us, to enrich your user experience, and to customize your relationship with our website.

Click on the different category headings to find out more. You can also change some of your preferences. Note that blocking some types of cookies may impact your experience on our websites and the services we are able to offer.

Essential Website Cookies

These cookies are strictly necessary to provide you with services available through our website and to use some of its features.

Because these cookies are strictly necessary to deliver the website, refuseing them will have impact how our site functions. You always can block or delete cookies by changing your browser settings and force blocking all cookies on this website. But this will always prompt you to accept/refuse cookies when revisiting our site.

We fully respect if you want to refuse cookies but to avoid asking you again and again kindly allow us to store a cookie for that. You are free to opt out any time or opt in for other cookies to get a better experience. If you refuse cookies we will remove all set cookies in our domain.

We provide you with a list of stored cookies on your computer in our domain so you can check what we stored. Due to security reasons we are not able to show or modify cookies from other domains. You can check these in your browser security settings.

Other external services

We also use different external services like Google Webfonts, Google Maps, and external Video providers. Since these providers may collect personal data like your IP address we allow you to block them here. Please be aware that this might heavily reduce the functionality and appearance of our site. Changes will take effect once you reload the page.

Google Webfont Settings:

Google Map Settings:

Google reCaptcha Settings:

Vimeo and Youtube video embeds:

Accept settingsHide notification only