DNS

NIST DNS update: What this means for your organization

Mar 25, 20265 min read

NIST SP 800-81 Revision 3 reframes DNS as an active security layer for the first time since 2013. Here's what changed and why it matters for DMARC, SPF, and DKIM.

Read more
Certificates

PKI ecosystem changes in 2026: what your team needs to know

Mar 19, 20267 min read

2026 brings shorter certificate lifetimes, unmanaged private PKI, and looming post-quantum migration. A concise guide to the changes security teams need to plan for.

Read more
DMARC

60% of the U.S. Northeast's top organizations are vulnerable to phishing

Mar 18, 20268 min read

An analysis of 700 domains across seven Northeast U.S. states found that only 35% have reached full DMARC enforcement, with significant variation between states and industries.

Read more
Compliance

Active Cyber Defence: Mail Check and Web Check transition with Ciaran Martin and Rahul Powar

Feb 24, 20264 min read

NCSC switched off Mail Check and Web Check on March 31, 2026. Ciaran Martin and Rahul Powar discuss what UK public sector organizations should do next for email security visibility.

Read more
DMARC

50% of Boston's top organizations lack full DMARC protection

Feb 16, 20265 min read

Red Sift analyzed 99 domains from Boston's largest organizations and found nearly half (49.5%) haven't reached DMARC enforcement, leaving them open to spoofing and BEC.

Read more
DMARC

43% of Washington D.C.'s top organizations vulnerable to phishing

Feb 16, 20265 min read

Red Sift analyzed 100 domains from Washington D.C.'s largest organizations and found 43% lack DMARC enforcement — right where US cybersecurity policy is made.

Read more
DMARC

Over a quarter of New York's top organizations still exposed to email spoofing

Feb 16, 20265 min read

Red Sift analyzed 99 domains from New York's largest organizations. While 72.7% have reached DMARC enforcement, 27 domains remain exposed to email spoofing.

Read more
Compliance

UK Cyber Action Plan sets the standard that private businesses must match

Jan 16, 20263 min read

The UK Government's £210M Cyber Action Plan raises the bar for public sector resilience. CEO Rahul Powar argues private businesses must now mirror this approach.

Read more
DMARC

52% of US insurance brokers remain vulnerable to email spoofing

Jan 5, 20264 min read

52% of the top 50 US insurance brokers have no effective DMARC protection, leaving them vulnerable to spoofing and phishing in an industry built on client trust.

Read more
Compliance

Red Sift on G-Cloud 14: Your trusted partner for the NCSC Web Check transition

Dec 8, 20255 min read

NCSC discontinued Web Check on March 31, 2026. Red Sift ASM on G-Cloud 14 provides comprehensive attack surface management as the successor for UK public sector organizations.

Read more
DMARC

Finding the right DMARC monitoring tool: A practical guide for security teams

Dec 1, 20255 min read

A practical guide for choosing the right DMARC monitoring tool based on your organization's maturity — from basic reporting needs to full enterprise enforcement.

Read more
DMARC

Top platforms for enterprise DMARC enforcement: Technical comparison for Security Leaders

Nov 24, 20254 min read

A technical comparison of 7 enterprise DMARC platforms, evaluating automation, API integration, and time-to-enforcement. Red Sift OnDMARC leads with 6-8 week enforcement.

Read more
DMARC

Over 40% of essential services companies remain vulnerable to phishing

Nov 18, 20256 min read

Red Sift's analysis of 840 companies in chemical, energy, and water sectors found 42% lack DMARC protection, leaving critical infrastructure exposed to email threats.

Read more
Email Security

Gmail's enforcement ramps up: What bulk senders need to know

Nov 14, 20254 min read

Gmail is now rejecting emails from bulk senders who lack SPF, DKIM, DMARC, and one-click unsubscribe. Here's what to fix before enforcement hits your deliverability.

Read more
Certificates

How to build an inventory of certificates for PCI DSS 4.0 Requirement 4.2.1.1

Nov 11, 20258 min read

PCI DSS 4.0 Requirement 4.2.1.1 mandates a complete certificate inventory by March 2025. This guide walks through how to build and maintain one using automated discovery.

Read more