What is our primary use case?
In our environment, we are using Proofpoint Email Protection for inbound email protection as a primary gateway, while Microsoft 365 serves as the secondary gateway. In the primary gateway, it scans both inbound and outbound emails. We are using multiple products in Proofpoint, including email protection, DLP, TRAP, TAP, email fraud defense, and many others in our environment.
I am working in the cloud for Proofpoint Email Protection.
We are using AWS as our cloud provider for Proofpoint Email Protection.
We purchased Proofpoint Email Protection directly from the Proofpoint vendor, not through the AWS Marketplace.
We used Microsoft 365 by default before adopting Proofpoint Email Protection.
We are utilizing messaging and security for protection across cloud apps and file sharing services in Proofpoint Email Protection, as well as using Proofpoint DLP.
Overall, using Proofpoint Email Protection has positively impacted our security posture. We are using multiple products in Proofpoint, including DLP and email protection, and the real-time experience has us very satisfied.
For end users, Proofpoint Email Protection provides the option to submit suspicious emails, and they receive a proper investigation report from Proofpoint. If any known emails get quarantined, the user will receive a notification allowing them to release it automatically without needing admin assistance. These two features enable end users to learn about phishing, malware, and what to look for in suspicious emails, supported by numerous training materials available.
The initial setup of Proofpoint Email Protection is straightforward. Compared to other tools, configuring it is easy. I find Proofpoint Email Protection to be very simple and user-friendly, with many learning portals for admins. I recommend Proofpoint Email Protection as a tool due to its ease of use.
What is most valuable?
The best feature of Proofpoint Email Protection is that it is a very good tool. They use the F-Secure engine, which scans for absolute phishing and malware protection. There is also a good feature in TRAP. If any suspicious emails are delivered to the inbox, it automatically pulls them back from the user machine. Another good option is TAP. If a user clicks on any URLs, we can easily identify who clicked it as those URLs are already categorized as allowed or blocked. These two features are very good—TAP and TRAP.
Using the TAP features of Proofpoint Email Protection impacts our SOC analyst workloads by making it easier to identify if any malicious emails were delivered to the end user. We can see if those users clicked or opened the email. If an email was already opened, TRAP will automatically pull it back, which automates the process and is very helpful. Additionally, multiple emails are quarantined, and the easy help of the dashboard and reports is very beneficial for our SOC analyst team.
Overall, using Proofpoint Email Protection has positively impacted our security posture. We are using multiple products in Proofpoint, including DLP and email protection, and the real-time experience has us very satisfied.
What needs improvement?
For improvement, the dashboard of Proofpoint Email Protection needs some enhancement. Currently, we are using multiple dashboards, and it would be beneficial if everything was integrated. A single dashboard showing the total number of delivered emails, how many were phishing, how many delivered to users, and how many were clicked would be very helpful. Additionally, a special feature for zero-day to trigger responses quickly would also enhance the product. Lastly, we need improvements in how quickly emails are investigated after being delivered. Overall, as I mentioned previously, we are very satisfied with Proofpoint Email Protection over the last three years since many emails have been successfully quarantined.
For how long have I used the solution?
I have been working with Proofpoint Email Protection for around three to four years.
What do I think about the stability of the solution?
The stability and reliability of Proofpoint Email Protection is good. I agree that it is very stable, which is why we migrated to it.
What do I think about the scalability of the solution?
Overall, I find Proofpoint Email Protection scalable and have not encountered any limitations with it.
How are customer service and support?
I evaluate the technical support and customer service team of Proofpoint Email Protection as really good. We receive proper support which is available 24/7, allowing us to reach out to them anytime for assistance without any issues.
On a scale of 1 to 10 for tech support, I would rate it a nine without any problem.
Which solution did I use previously and why did I switch?
We used Microsoft 365 by default before adopting Proofpoint Email Protection.
How was the initial setup?
The initial setup of Proofpoint Email Protection is straightforward. Compared to other tools, configuring it is easy. I find Proofpoint Email Protection to be very simple and user-friendly, with many learning portals for admins. I recommend Proofpoint Email Protection as a tool due to its ease of use.
What about the implementation team?
The initial setup of Proofpoint Email Protection is straightforward. Compared to other tools, configuring it is easy. I find Proofpoint Email Protection to be very simple and user-friendly, with many learning portals for admins. I recommend Proofpoint Email Protection as a tool due to its ease of use.
What's my experience with pricing, setup cost, and licensing?
I am not informed about the pricing, setup costs, or licensing as it is handled by a different team. I come from a technical perspective.
Which other solutions did I evaluate?
We discussed options including Proofpoint, Microsoft 365, and Firefox, as well as Google products. We compared all three options, but finally decided to purchase Proofpoint Email Protection due to its numerous options, cost value, and security features.
What other advice do I have?
We decided to switch to Proofpoint Email Protection because it offers more options. After comparing it in the market, we found Proofpoint Email Protection to be good for scanning and having many options, which is why we purchased it for email security.
The disadvantage of Proofpoint Email Protection in comparison to other competitors is its cost. We have purchased a bundle license, including many licenses for both the US and Europe data centers. The TAP, TRAP, email fraud defense, and authentication parts make it feel much better compared to other products.
The time needed for email investigations and responses has changed with Proofpoint Email Protection's visibility and automation. From an automation perspective, it has slightly reduced the time required. However, we still manually investigate some true positive emails delivered, though TAP has many features like forensics that are beneficial. Overall, we are satisfied with the experience.
Proofpoint Email Protection addresses modern security challenges by being effective against zero-day attacks and direct send features, which are complex and lead to an increase in phishing emails. Some emails are not quarantined and are delivered to end users, requiring manual investigation and leading to user compromises. While 5% of emails might get delivered due to these challenges, 95% of emails get blocked and quarantined, which is a positive outcome with everything being automated.
We have seen improvements in operational efficiency. Before, a lot of spam and phishing emails were delivered to the end user leading to multiple account compromises. Nowadays, the number of spam and bulk marketing emails delivered to the end user has significantly reduced.
My experience with the unified admin console in the Threat Protection workbench for managing security operations is very positive. I think Proofpoint Email Protection has recently introduced a new dashboard, which is very good. The old email protection dashboard was outdated. The new dashboard is user-friendly, offering many options, making it a great improvement over the old POD Admin, which had limited features.
While I don't have exact numbers, the quantity of threats we need to protect against has increased. We have over 30,000 users' mailboxes and scan lakhs of emails daily. I estimate around 20,000 to 30,000 emails are quarantined on average each day.
As advice for organizations considering Proofpoint Email Protection, I can absolutely recommend it as a good tool with many available features and modules. I recommend using Proofpoint Email Protection since it is very effective and user-friendly in areas including threat analysis and response. I would rate this review eight out of ten overall.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.