First page of Microsoft's 100,000-partner directory, sorted by responsiveness All 6 Microsoft Solutions Partner designations Microsoft Solutions Partner since 2006 1,100+ organizations under management
Home/Services/Additional Spam and Phishing Protection
Security and Protection

Additional Spam and Phishing Protection — Exchange Online Email Security

Additional Spam and Phishing Protection is a service for organizations using Exchange Online that are experiencing spam, phishing, or email spoofing issues. Duration: 5 days. Price: 500. IT Partner implements DKIM and DMARC, assigns Exchange Online Advanced Threat Protection licenses to users, checks and corrects the SPF record if needed, and configures a country block list. SKU: ITPWW380IMPOT. Manager: Roman Sotnik.

Timeline 5 daysService owner Roman SotnikExchange Online

What this engagement is

Attackers continue to develop ways to bypass email protection, including targeted phishing methods that may exploit employee negligence or gaps in spam and phishing protection. This service helps organizations using Exchange Online start using modern protection solutions, such as Exchange Online Advanced Threat Protection, which helps protect employees from viruses and malware. DKIM and DMARC setup significantly reduces the ability to send phishing from your company’s domain, including messages sent to your own addresses on behalf of company employees. IT Partner will also check domain settings and make changes if necessary. Blocking mail receipt based on regional data can also be enhanced by eliminating the possibility of attacks from countries with increased viral activity. The plan may vary depending on your needs.

Success criteria

01All scheduled mail protection features are implemented
02Mail workflow is not broken
03The number of spam and phishing messages has decreased

What you receive

DKIM implemented
DMARC implemented
EXO ATP licenses assigned to users
SPF record checked and corrected, if needed
Country block list configured

How the work unfolds

Kickoff meeting

Kickoff meeting

Implementation of additional protection settings and services

Implementation of additional protection settings and services

Verification and fixing issues

Verification and fixing issues

Gathering feedback

Gathering feedback

Prerequisites

Exchange online is used in your organization

Who does what

IT Partner

  • Implement DKIM
  • Implement DMARC
  • Assign EXO ATP licenses to users
  • Check and correct SPF record, if needed
  • Configure the country block list

Your team

  • Coordinate Client resources and staff schedules
  • Provide a dedicated point of contact responsible for working with IT Partner
  • Coordinate any outside vendor resources and schedules
  • Perform changes to internal and external DNS, as required
  • Configure all network equipment, such as load balancers, routers, firewalls, and switches
  • Review and approve engagement deliverables in a timely manner

What's not included

EXO ATP licenses

Limitations & technical notes

!The plan may vary depending on your needs.

Frequently asked questions

What is the Additional Spam and Phishing Protection service?

Additional Spam and Phishing Protection is a 5-day IT Partner service for organizations using Exchange Online that are experiencing spam, phishing, or email spoofing issues. IT Partner implements DKIM and DMARC, checks and corrects SPF if needed, assigns Exchange Online Advanced Threat Protection licenses to users, and configures a country block list to strengthen email protection.

Who is this service designed for?

This service is designed for organizations that use Exchange Online and need additional protection against spam, phishing, malware-related email threats, or spoofing of their company domain. Exchange Online is a prerequisite, because the engagement is based on configuring protection features and licensing within that environment.

What is included in the service?

The service includes DKIM implementation, DMARC implementation, SPF record review and correction if needed, assignment of Exchange Online Advanced Threat Protection licenses to users, and configuration of a country block list. These deliverables are intended to reduce spam and phishing exposure while keeping mail flow working.

What is not included in the service?

Exchange Online Advanced Threat Protection licenses are not included in the service price. IT Partner assigns the licenses to users as part of the engagement, but the customer must have or obtain the required licenses separately.

How long does the engagement take?

The stated duration for Additional Spam and Phishing Protection is 5 days. The plan may vary depending on the organization’s needs, so exact scheduling and sequencing should be confirmed with IT Partner during the kickoff.

How much does the service cost?

The listed price for Additional Spam and Phishing Protection is 500. This price covers the defined implementation service scope, but it does not include Exchange Online Advanced Threat Protection licenses.

What is the service SKU?

The SKU for Additional Spam and Phishing Protection is ITPWW380IMPOT. This can be used when referencing or ordering the service with IT Partner.

Who manages this service at IT Partner?

The listed manager for this service is Roman Sotnik. Prospective customers should confirm current contact and scheduling details with IT Partner when initiating the engagement.

What happens during the engagement?

The engagement starts with a kickoff meeting, followed by implementation of the additional protection settings and services. IT Partner then verifies the configuration, fixes issues if needed, and gathers feedback before completion.

Will this service stop all spam and phishing emails?

The service is intended to decrease the number of spam and phishing messages, but it does not state a guarantee that all unwanted or malicious email will be blocked. Email attackers continuously change tactics, so the engagement focuses on implementing scheduled protection features and reducing risk within the defined scope.

How do DKIM and DMARC help protect our domain?

DKIM and DMARC help reduce the ability of attackers to send phishing messages that appear to come from your company’s domain. This is especially valuable for limiting spoofed messages, including messages that may appear to be sent to your own users on behalf of company employees.

Does the service include SPF configuration?

Yes, IT Partner checks the SPF record and corrects it if needed. SPF is part of the domain email authentication review, while the client is responsible for performing required internal or external DNS changes.

Who is responsible for DNS changes?

The client is responsible for performing changes to internal and external DNS as required. IT Partner checks and corrects SPF if needed and implements DKIM and DMARC, but DNS updates may require customer-side access, approval, or execution.

Will the service disrupt mail flow or cause downtime?

The stated success criteria include that mail workflow is not broken. However, because DNS, authentication, and protection settings can affect mail behavior, IT Partner verifies the implementation and fixes issues as part of the engagement.

What does the country block list do?

The country block list is configured to enhance mail protection by blocking mail receipt based on regional data. This can help reduce exposure to attacks from countries identified as having increased viral activity, within the limits of the configured protection approach.

What does the client need to provide before or during the service?

The client must coordinate internal resources and staff schedules, provide a dedicated point of contact, coordinate any outside vendor resources, and review and approve deliverables in a timely manner. The client is also responsible for DNS changes and for configuring network equipment such as load balancers, routers, firewalls, and switches if required.

What is IT Partner responsible for?

IT Partner is responsible for implementing DKIM and DMARC, assigning Exchange Online Advanced Threat Protection licenses to users, checking and correcting the SPF record if needed, and configuring the country block list. IT Partner also performs verification and issue fixing within the defined engagement plan.

What are the success criteria for this engagement?

The engagement is considered successful when all scheduled mail protection features are implemented, mail workflow is not broken, and the number of spam and phishing messages has decreased. These criteria align the service with practical protection improvements rather than a claim that every threat will be eliminated.

What happens after the implementation is completed?

After implementation, IT Partner verifies the configuration, fixes identified issues, and gathers feedback. Ongoing operations or additional changes beyond the listed deliverables are not specified in the service scope, so any post-engagement support should be confirmed with IT Partner.

Can the implementation plan be customized?

The service notes that the plan may vary depending on your needs. Any changes to scope, timing, or configuration approach should be discussed with IT Partner during the kickoff so the engagement remains aligned with the stated deliverables.

Didn’t find your question?

Ask it here. A real engineer answers by email within one business day — and if it’s a good one, it becomes part of this page so the next person finds it.

Answered by a person, one time, to your inbox. Nothing you type here is published without a human reviewing and anonymizing it first.

Often combined with