CFOtech Australia - Technology news for CFOs & financial decision-makers
Story image
IT leaders leaning on outsourcing for DMARC implementation
Thu, 25th Apr 2024

Research from cloud-native email security provider, EasyDMARC, reveals that the majority of IT decision-makers prefer to outsource implementation of the DMARC email authentication protocol. This follows significant email changes currently being effected by technology giants Yahoo and Google. In a climate where over half of IT decision-makers admit to lacking the expertise and resources to implement such tools, Managed Service Providers (MSPs) are presented with an enormous opportunity to meet this growing demand.

Announced in February, Google and Yahoo now require bulk email senders to implement the DMARC protocol to enhance email security. The two companies have initiated the temporary rejection of non-compliant emails ahead of enforcement due from June 2024 onwards. The DMARC protocol utilises SPF and DKIM to help verify the legitimacy of an email sender, significantly reducing the risk of phishing and spoofing attacks by either automatically rejecting, quarantining, or reporting on emails that fall afoul of verification. This measure forms part of a broader initiative to increase trust in email communications as cyber threats continue to evolve.

EasyDMARC obtained its findings by surveying 1,000 IT decision-makers across the US, UK, Europe, and Oceania to assess their comprehension and adoption of these email authentication protocols. The research yielded some enlightening results. Only 37% of organisations currently comply with the updated email authentication requirements. Of these IT decision-makers, only 28% expressed an intent to manually action the required changes within their organisations. An overwhelming majority of 54% said they would outsource implementation.

These findings pose a significant challenge for IT decision-makers in ensuring a smooth transition that avoids disruptions to email communications. This situation contains tremendous potential for MSPs to assist customers in implementing the technology in a bid to conform to these emerging guidelines. When asked about strategies for implementing email authentication, responses were divided amongst the respondents. Excluding those who had already adopted the technology and had no intention of implementing it, 51% of decision-makers indicated that they would rely on a consultancy or IT provider to implement the DMARC protocol. Additionally, 15% planned to use a specialist service to handle the technical aspects of implementation, meaning that 66% of businesses would outsource the task.

The research revealed that many IT decision-makers feel hesitant about deploying email authentication tools due to their complex nature and the perceived lack of necessary resources. As many as 40% of IT decision-makers pointed to the complexity of implementation as a major barrier to adoption.

In response to the research, Mike Anderson, Global Channels Director, EasyDMARC, commented: "There is a critical gap in knowledge and resources within organisations, making it difficult to adapt to the standards now required by providers like Google and Yahoo. This situation presents an enormous opportunity for Managed Service Providers to become indispensable allies." He added that by offering expertise and implementation services for DMARC and related protocols, MSPs could help businesses navigate the complexities of compliance and offer a broader scope of services, thereby solidifying their role as vital security partners.