Contact Us (02) 9388 1741

    Secure Email Gateway

    Protect against inbound email cyberattacks and prevent outbound data loss with Fortra Secure Email Gateway.

    Fortra Products
    Secure Email Gateway
    Secure Email Gateway
    Protect against inbound email cyberattacks and prevent outbound data loss with Fortra Secure Email Gateway.
    Secure-Email-Gateway
    Our Price: Request a Quote

    Block Prevalent Email Attacks with the Fortra Secure Email Gateway

    Fortra's Secure Email Gateway (SEG) is an on-premise email security solution that monitors emails coming into and out of an organization before they ever reach an inbox. Powered by a Deep Content Inspection Engine, it detects and analyzes the content of incoming and outgoing emails down to 50 levels deep, protecting against spam, viruses, and evasive threats that slip past standard filtering.

    The on-premise Fortra Secure Email Gateway (SEG) protects against spam, viruses, and prevalent threats including phishing, ransomware, and spam by leveraging a Deep Content Inspection Engine. This offers an additional layer of security for content or communications deemed suspicious.

    IT teams need to ensure that information being shared across email both inside and out of the organization is not only secure, but appropriate and compliant. Fortra’s unparalleled level of inspection and granular policy controls apply the optimal security treatment to your emails in real time reducing the risk of data loss. This keeps your communications safe and flowing, without business disruptions.

    Secure Email Gateway product video thumbnail

    Key Features of the Fortra Secure Email Gateway

    The Fortra SEG is mail system-agnostic, scalable from SMEs to enterprises and can complement either a cloud-based solution, such as Microsoft 365 and Google Workspace, or on-premise systems like Microsoft Exchange.

    Using multiple anti-virus engines, the SEG provides inbound threat protection using traditional signature, heuristic, and cloud assisted lookups to deliver protection against malware, ransomware, and spyware.
    Augment the AV engines with Active Code detection and an Active Code removal option or a cloud-based Sandbox from Sophos to detonate the file to ensure no zero-day attacks get through.
    Malicious URLs in messages and attachments can be checked using several threat feeds, which can cause the message to be blocked, the URL to be sanitized, or the URL be rewritten so that if the link is clicked the URL will be processed by a Browser Isolation solution.

    Data Loss Prevention (DLP) is not just an outbound problem. Depending on your business, you might need to control the content of what’s being received by your employees.
    It is imperative that a thorough understanding of the message is performed by the deep content inspection capabilities in order to understand the email body, subject lines, and attachments (such as PDFs, Word documents, and images). This way, they can be scanned for critical information like intellectual property, employee’s personal information, or forgotten content like metadata, revision history, or customer data.
    Metadata can include document classification tags from Fortra's Data Classification solutions which can signify whether the content is unclassified, classified, or even top secret.
    The understanding of the content and the context is then applied into configured policies to determine if the message should be rejected, held, delivered, delivered encrypted, or sanitized in some way prior to delivery.
    The SEG enables compliance with regulations (GDPR, HIPAA, etc.) – detects, protects, and audits emails, and attachments to validate sensitive data. Then it applies the appropriate security remediation according to the specific regulation standards.

    Encryption provides security and regulatory compliance needed to keep data secure. Multiple encryption options provide many ways to secure email content by verifying that messages cannot be read by the wrong recipients, and the message stays intact - not modified by anyone from sender to recipient.
    The SEG encryption options allow policies to be based on sender, recipient, subject content, message body, attachment types, attachment content, message header or document metadata. Using encryption guarantees confidentiality, integrity, and availability of organizational data.

    Fortra with Cryoserver addresses archiving and compliance in one platform.
    • Provides C-Level Executives with transparency
    • Adheres to corporate governance and risk management
    • Alleviates IT department storage concerns
    • Offers a forensic archive and compliance system
    • Retains full audited copies of all emails sent to, from, and within a business
    • Preserves data as required by courts and legal practice

    Spam and phishing emails are dealt with by a multi-engine, multi-layered spam filtration system, incorporating Signature Engines with machine learning, DMARC, DKIM, SPF, IP Reputation, Greylisting, and URL analysis. This provides a highly accurate and flexible approach where messages can be blocked, held, or delivered with warnings — all based on policy.

    Spam and phishing emails are dealt with by a multi-engine, multi-layered spam filtration system, incorporating Signature Engines with machine learning, DMARC, DKIM, SPF, IP Reputation, Greylisting, and URL analysis. This provides a highly accurate and flexible approach where messages can be blocked, held, or delivered with warnings — all based on policy.

    Why Choose the Fortra SEG?

    Complete granular control icon

    Complete Granular Control

    Block, encrypt, or remove critical data to mitigate risk and ensure compliance 

    100% critical data visibility icon

    100% Critical Data Visibility

    Complete visibility and management of emails entering or leaving your organization

    Minimize business disruptions icon

    Minimize Business Disruptions

    Maintain consistent collaboration and communication with employees, customers, and business partners

    :

    Product Specifications

    Deep Content Inspection Engine

    Far greater than any other structural level of verification on the market, Fortra's Deep Content Inspection Engine scans content in a multi-stage process:

    • Identifies the file type by file signature
    • Verifies the file structure conformity
    • Extracts content that violates rules in zipped or compressed files, document body, headers, footers, or embedded objects
    • Strips metadata from documents and image files
    • Records what it removed:

    Anti-Virus

    Providing a further inbound threat protection, Fortra works with the following anti-virus software engines:

    • Avira
    • Sophos
    • Sophos Sandbox

    Encryption

    The Fortra SEG appliance supports multiple encryption rules to allow companies to select the most appropriate methods for their different user communities, including:

    • TLS
    • S/MIME/PGP
    • Password-Protected ZIPs
    • Web Pickup Portal (recipients receive a link to a message)
      • Ciphermail – On-premise encryption portal

    Integrations

    The Fortra SEG has built-in integrations with Garrison and Ericom for browser isolation. Browser isolation protects from web-based threats by isolating users away from their local networks and infrastructure, thereby allowing website access without compromising security.

    On-Premise Deployment

    Options

    • Managed or hosted in ISO-certified data centers
    • Public cloud deployment on Microsoft, Azure, or AWS
    • Private cloud virtual environment running VMware/Hyper V
    • Own or packaged hardware

    Requirements

    A standard RHEL-operating stack is required, which includes Microsoft Azure, AWS, or localized cloud providers. Fortra will take care of the installation and upgrades across platforms.

    Secure Email Gateway + Microsoft 365

    The on-premise Fortra SEG can be used to provide enhanced Adaptive Data Loss Prevention (A-DLP) protection and complement the M365 hygiene components of the E5 tier with extra coverage, including:

    • More Comprehensive and Easier-to-Configure Adaptive DLP (A-DLP) and Compliance Controls
    • Additional Layer of Ransomware and APT Protection
    • Better Visibility of Policy Violations and Tracking of Message Flow
    Functionality M365 E5 Tier M365 E5 Tier Augmented with Fortra SEG
    Anti-virus
    Anti-spam
    Stop & block policy enforcement
    Stop & block DLP controls
    B2B/B2C encryption
    Advanced BEC & brand impersonation protection
    Active code detection
    Body content analysis
    Advanced URL & attachment analysis
    Inline sandboxing to protect from malware & APTs
    Active content sanitization to protect from data loss & compliance violations
    Data redaction of sensitive data (e.g., IP, PII, PCI, etc.)
    Automated document sanitization of metadata & version history
    Anti-steganography to sanitize images of hidden data
    Optical Character Recognition (OCR) to extend data protection
    Active code removal

    Documentation

    Download product documentation and resources.

    Discover More

    Similar Products

    Explore other configurations and models that might suit your needs.

    Suspicious Email Analysis Recommended

    Suspicious Email Analysis

    #Suspicious-Email-Analysis

    DMARC Protection Recommended

    DMARC Protection

    #DMARC-Protection

    Secure Exchange Gateway Recommended

    Secure Exchange Gateway

    #Secure-Exchange-Gateway

    Secure Email Gateway FAQs

    A Secure Email Gateway is an on-premise appliance that monitors email traffic coming into and going out of an organization before it reaches an inbox, inspecting content for threats and policy violations rather than relying on the mail server alone.

    Instead of blocking and quarantining a message outright, Adaptive Redaction detects sensitive data such as personal or financial information, removes or masks it in real time, and lets the redacted message continue on, keeping business communication moving while still protecting the data.

    Structural Sanitization rewrites URLs before they can cause harm and strips active code, such as macros, scripts, and ActiveX controls, out of Microsoft Office, OpenOffice, and PDF files, so a malicious payload can't hide inside an otherwise legitimate-looking attachment.

    Yes. Its data loss prevention and redaction capabilities are built for organizations in regulated industries, including defense and government, healthcare, and financial services, that need to prove sensitive data isn't leaving the organization unprotected.

    Standard filters typically inspect a message and its immediate attachment, while the Deep Content Inspection Engine analyzes content down to 50 levels deep, catching threats and policy violations nested inside compressed files, embedded documents, or other layered attachments.

    Call a Specialist
    Today!

    Our team of experts is ready to help you find the perfect solution for your business needs. Get personalized advice and competitive quotes.

    Monday - Friday: 9:00 AM - 6:00 PM AEST
    Sydney, Australia

    Speak to an Expert

    We're here to help with any questions

    Call us now
    (02) 9388 1741