Castleforce IT Security Team

Email

GCSx CoCo adds some very good email policy features which add security benefits to electronic mail. 

Electronic email policies would be advised that HTML is disabled for incoming emails and that automatic execution of email content is disabled as this takes care of many forms of spam and phising attacks.

Dangerous file types, such as executables and scripts or password protected files are not allowed via email.

Encrypted files are not sent via email, though as email encryption is growing in popularity this could in theory help secure file transit.

File attachments and extensions are validated to prevent attachment spoofing - This is standard protocol for many email filtering type products that do IPS controls for all SMTP, POP3 and IMAP traffic.


Castleforce IT Security Consultancy

The Castleforce IT Security Consultancy service was established to address the growing need for organisations to understand and manage security at a higher level. 

Our IT Security Standards Gap Analysis deliver reports to help organisations understand what needs to be addressed in order for them to achieve the level of Compliance desired. 

The Gap Analysis for PCI DSS, ISO27001 and GCSx CoCo identify all the sections within each standard which includes Physical, Network and Data Security.

Contact-Castleforce-for-help-with-Compliance


Email Partners

Mirapoint-Appliance-Based-Secure-Messaging-Infrastructure the secure-messaging expert in appliances for email archiving, messaging, and security in enterprise, service providers, and education customers.  Mirapoint are the fourth largest email server producer after Microsoft Exchange, IBM Lotus Notes and Novell Groupwise and are used by many large Enterprises including Ford, Volkswagon, CSC, BT Global Services and the NHS.