What you are evaluating
The profile covers email security. Cloud Integrated configuration and Cloud Gateway configuration are distinct; archiving, continuity, training and other services should not be assumed to be included.
A useful evaluation context
Consider when comparing dedicated email protection with a choice of gateway or Microsoft 365-integrated deployment.
Documented capabilities
The vendor describes these capabilities in the linked sources. Availability depends on the product edition and supported environment.
- Cloud Integrated documents Microsoft 365 setup and different protection modes.
- Detection-engine settings configure URL, attachment, phishing and impersonation controls.
- The Integrations Hub exposes available connections according to purchased products.
Where it fits in the work
- Choose the deployment path and review tenant prerequisites before granting consent.
- Move a test group through the available observation and protection modes.
- Inspect the verdict, applied action and a controlled exception using that deployment’s documentation.
APPLY THE IDEA / ILLUSTRATIVE EXERCISE
Make the outcome observable.
A test tenant contains an application sender and an ordinary user mailbox.
Evidence to look for
Verify both flows against the selected protection mode and record any routing or authentication prerequisites before enabling enforcement.
Use synthetic data and an authorized test environment. Agree the scope and recovery steps before enabling enforcement.
Questions for your evaluation
- Which changes to SPF, DMARC and transport rules are required?
- Which modes and mail directions are covered by the chosen deployment?
- Are the required SIEM and service integrations included in the package?