Email Security
Practical guidance on Microsoft 365 security, Azure protection, Sentinel SIEM, and managed detection and response. Written by security engineers who configure, harden, and monitor Microsoft environments every day.
What Defender for Office 365 Misses: Findings from Real Assessments
Defender for Office 365 gaps usually come from policy, DMARC, and response issues. Here is what Falconer finds in real email security assessments.
Read moreHow to Report Phishing in Outlook: Step-by-Step Guide
How to report phishing in Outlook across desktop, web, and mobile, plus the Microsoft 365 admin setup behind the reporting flow.
Read moreIs Outlook HIPAA Compliant? Email Rules, Encryption, and the BAA
Outlook with Exchange Online is in Microsoft's BAA scope; Outlook.com is not. When emailing PHI is permitted and the settings that make it defensible.
Read moreMicrosoft Defender for Office 365 for SMBs
Microsoft Defender for Office 365 adds Safe Links, Safe Attachments, anti-phishing, and response tooling on top of Microsoft 365 baseline email security.
Read moreNew Microsoft security guidance, when it lands.
One email when we publish. Practitioner analysis on detection, response, and hardening. No product pitches, unsubscribe anytime.



