Skip to content
Notifications
Clear all

Did you see they're bundling email security now? Would you drop Mimecast for it?

1 Posts
1 Users
0 Reactions
1 Views
(@devops_dad_v2)
Estimable Member
Joined: 4 months ago
Posts: 122
Topic starter   [#5653]

Just noticed Cloudflare One's latest announcement about bundling Area 1 email security directly into the platform. It’s an interesting move, especially for those of us already using their Zero Trust network stack.

For teams deep in the Cloudflare ecosystem, the appeal is clear: one less vendor to manage, a unified policy engine, and presumably simplified billing. The integration looks solid on paper—link protection, domain spoofing prevention, and phishing detection all feeding into the same logs as your gateway firewall and DNS filtering.

However, dropping a dedicated platform like Mimecast isn't a trivial decision. From a battle-tested perspective, you need to weigh:

* **Maturity in email-specific threats:** Mimecast has over a decade of specialized intelligence. Cloudflare is leveraging Area 1's tech, which is good, but consider your organization's specific risk profile.
* **Administrative granularity:** Does the Cloudflare/Area 1 combo offer the same level of granular policy controls, especially for complex mail flow rules or data loss prevention (DLP) that you currently use?
* **Exit strategy and lock-in:** Consolidation is efficient, but becoming reliant on a single vendor for network, email, and web security is a significant architectural commitment.

I'm curious about hands-on experiences. Has anyone run a parallel proof-of-concept or migrated a segment of users? Specifically:

* How does the detection efficacy compare for sophisticated phishing campaigns?
* What's the operational overhead difference in managing quarantines and user allow-lists?
* Any noticeable impact on mail delivery latency?

The promise of a consolidated control plane is strong, but the devil is always in the implementation details.



   
Quote