Functional but not Excellent
Use Cases and Deployment Scope
Webroot Email Security is used by our organization to act as our secure email gateway. It filters out bad emails (spam, phishing, etc.) and allows us to input specific allow & block list rules. We have this in place for the entire organization, so all emails are being filtered through this system.
Pros
- Webroot Email Security has a message retraction feature that can pull bad emails from inboxes.
- This platform has some fine grain filtering options to restrict emails based on originating country, confidence of spam thresholds, and even the ability to create custom rules that can go as far as to look at specific keywords in the body of an email.
- There are ways to manipulate individual user settings, instead of just global settings, which allows for further customization.
Cons
- I think that Webroot Email Security lets in too many bad emails and it becomes too time consuming to figure out why certain emails made it through while others didn't.
- There is very little reporting in the tool and so it is hard for me to filter down the results beyond just knowing how many total emails came in and how many in total were blocked. For example, it would be nice to know how many emails were blocked based on different rules I have in place to see how effective they are or not.
- There are no alerts or way for the system to tell me if a bad email made it through. Proofpoint TAP is a good example, because that platform will tell you if they let a bad email through and now it's been categorized as phishing.
- The way that the block and allow lists are handled is a bit frustrating, because you can specify individual block and allow lists, but then you have to setup overrides and sometimes those don't always work the way you think they will.
- There isn't a way to allow list the link protection, and I can't see any links that people are clicking on that were stopped by link protection, so I have no idea if that is doing anything.
Return on Investment
- About 30% of emails we receive are spam/phishing and this system has been blocking roughly 80k worth of bad emails month-to-month.
- This tool has saved us a lot of time in performing certain actions such as removing bad emails, as it can do this more efficiently that we can do.
- Zix is competitively priced, and so it is providing us a service for a minimal cost.
Usability
Alternatives Considered
Proofpoint Advanced Threat Protection and Microsoft 365
Other Software Used
VMware Carbon Black EDR, Cato Networks, Rapid7 InsightVM





