External sender warnings in emails help users identify external senders, en vermindert phishing success.
Aanbeveling
IMPLEMENT
Risico zonder
Medium
Risk Score
5/10
Implementatie
2u (tech: 1u)
Van toepassing op:
β M365 β Exchange
Users assume emails are van colleagues Tenzij warned. External sender tag alerts users: Verifieer sender voordat clicking links, be cautious met requests, suspect Phishing aanvallen.
Configureer external sender identification: warning banner in Outlook showing 'External sender' of aangepaste message. via Exchange mail flow rule of ingebouwde setting.
Option 1: Exchange admin center β Mail flow β Rules β Add external sender warning
Option 2: Native external tag (if available in Tenant instellingen)
Message: 'EXTERNAL: Deze email originated buiten de organization'
Apply to alle inbound external emails
Vereisten
Exchange Online
Exchange Administrator
Implementatie
Option 1: Exchange admin center β Mail flow β Rules β Add external sender warning
Option 2: Native external tag (if available in Tenant instellingen)
Message: 'EXTERNAL: Deze email originated buiten de organization'
Apply to alle inbound external emails
Compliance en Auditing
CIS M365 - regelen 2.1.10
BIO 13.02
ISO 27001 A.13.2.1
Monitoring
Gebruik PowerShell-script external-sender-identified.ps1 (functie Invoke-Monitoring) β Controleren.
Remediatie
Gebruik PowerShell-script external-sender-identified.ps1 (functie Invoke-Remediation) β Herstellen.
Compliance & Frameworks
CIS M365: Control 2.1.10 (L2) - External sender identification
BIO: 13.02 - Email security awareness
ISO 27001:2022: A.13.2.1 - Email policies
Automation
Gebruik het onderstaande PowerShell script om deze security control te monitoren en te implementeren. Het script bevat functies voor zowel monitoring (-Monitoring) als remediation (-Remediation).