top of page

Year-End Offer: 20% Off Fully Managed Email Security Through December 31

Writer: cAIberOps (SY-ber-ops) | MSSP
cAIberOps (SY-ber-ops) | MSSP
1 day ago
6 min read

Starting today and running through December 31, 2026, new customers who sign a 12-month agreement for our fully managed email security get 20% off the first 12 months. Registered 501(c)(3) nonprofits get 30% off instead. That takes Managed Email Security from $8 per user per month to $6.40, or $5.60 for nonprofits. To be clear, this is the license plus a fully managed service, not a license on its own. It is built for companies that have no dedicated IT person, or have one who does not have time to chase false positives, keep up with the latest phishing campaigns, and handle the tuning and upgrades that email security needs every month. There is no onboarding fee.

We are opening this offer now for a simple reason. Phishing is changing faster than most companies can keep up with, and the newest techniques get past the filters that came with Microsoft 365 and Google Workspace. The fix is not another product to babysit. It is a service where someone else keeps the defenses current, and that is what we do.

What you get

We run Managed Email Security for small and medium businesses on Check Point Email Security, the product formerly called Harmony Email & Collaboration. It connects to Microsoft 365 or Google Workspace through the cloud API, which means no appliance to patch, no change to your MX records, and what Check Point has described as "AI-trained engines" that inspect mail inline, after it reaches Microsoft's or Google's native gateway and before it lands in the inbox. It covers phishing, business email compromise, and malicious attachments and links across the mailboxes you choose to protect. We wrote about why the API architecture matters when an appliance vendor has a zero-day in last week's post on the Cisco email gateway flaw.

The license is the smaller part of what you are buying. The rest is that we do the work a dedicated email security admin would do, without you having to hire one. When Check Point ships a new protection, that is our job: read it, test it, enable it in each tenant we manage, grant the permissions it needs, and confirm it works. When a new phishing pattern shows up in one client's inbox, we review it and apply the policy change across the tenants we manage where it fits. When a legitimate vendor email gets quarantined, we release it and adjust the rule to reduce the chance of a repeat. When the Microsoft 365 integration needs new permissions, we handle the admin consent so you do not have to.

Day to day, fully managed means we run the quarantine, manage the block and allow lists, handle email restore requests, and investigate anything suspicious a user reports. It also means keeping the inbox clean: spam and bulk mail routed to Junk where it belongs, so what reaches the inbox is business.

Every new customer also gets a complimentary one-time review of their Microsoft 365 or Google Workspace tenant: security settings, conditional access or context-aware access rules, allow lists, and external sharing and forwarding, set to the minimum the business needs.

You get a monthly summary of what was blocked and what we changed. You do not get a console to babysit, a release-notes email to interpret, or the Friday afternoon discovery that a fake invoice got through because a setting from last year was not updated. If you have no IT team, this is your IT team for email. If you have one, it is the part of their week they will happily give up.

Setup is one working session with whoever has admin rights to your Microsoft 365 or Google Workspace, which authorizes the API and starts the scanning. A second session a couple of weeks later walks you through what got flagged. Pricing is per user, so the model is the same at any size.

Why now: the calendar invite that lands even when the email is blocked

Here is the kind of attack we mean. A meeting invite shows up on your calendar. Nobody accepted it. Nobody remembers seeing the email. It is sitting there anyway, with a link in the description, waiting for someone to click it ten minutes before "the call."

Attackers send an invite file, an .ics attachment or a Google Calendar invitation, from a free account. Mail systems treat calendar invites as helpful, so many of them add the event to your calendar automatically. According to Barracuda, these invites are "often added automatically to the user's calendar with little or no interaction from the recipient" and "often persist even if the original email is deleted or quarantined."

Sublime Security, which tracks this technique, puts it plainly: "calendar invites are still created even if the email message gets blocked by a secure email gateway or is sent to the Junk folder by an API email security solution."

The volume is the point. As reported by TechRadar on September 18, citing Sublime's data, calendar-based phishing has "jumped 33,000% since May," with month-over-month increases of 282% (May to June), 338% (June to July), and 1,216% (July to August), and the first half of September alone running 1,426% above the full month of August. The 33,000% headline figure leans on Sublime's projection for the full month of September, so treat that exact number with care. The direction is not in doubt, and the payload at the end of the chain, per TechRadar's report on the Sublime data, is usually a maliciously configured remote management tool such as ScreenConnect, the same tool we wrote about last week in the ScreenConnect worm post.

Defenses against this exist. Check Point says its email security product, the platform we run, automatically removes a malicious calendar invitation when the phishing email that carried it is blocked, a capability it added in March 2026. The catch is that protections like this do not turn themselves on. A new capability usually needs an administrator to enable it, grant it new permissions in Microsoft 365 or Google Workspace, and confirm it is working. Most email security platforms work this way: the vendor ships the detection, and someone on the customer side has to act on it. In a company without a dedicated security team, that step is the one that gets skipped, not because anyone is careless but because nobody has time to read vendor release notes.

Multiply that by the pace of the threat. Cofense's 2026 report counted one phishing attack getting past secure email gateways every 19 seconds in 2025, up from every 42 seconds the year before, and found that 76% of initial infection URLs were unique, meaning they had not appeared in any other campaign. Check Point's own August 2026 numbers put phishing at 1 in every 112 emails, up from 1 in 128 in July. The attackers keep changing their technique. The defenses can keep up, but only if someone keeps up with the defenses. With us, that someone is included in the price.

The offer, in full

Managed Email Security is $8 per user per month, with the management included rather than billed on top. Through December 31, 2026, new customers who sign a 12-month agreement get 20% off the first 12 months, which is $6.40 per user per month. Registered 501(c)(3) nonprofits get 30% off instead, $5.60 per user per month, on the same terms. Both discounts are for new customers only, they do not combine, and they apply to the first 12 months of the agreement; after that the rate is the then-current list price. The agreement has to be signed by December 31, 2026. There is no onboarding fee, and the complimentary tenant review is included.

If you would rather see what is getting through first, we also run a free two-week email security assessment. It sits alongside whatever you use today, reads mail through the same API, and reports what it flagged that your current filter let through. There is nothing to install beyond the same admin approval, and you keep the report either way.

We work with small and medium businesses nationwide, including Washington DC, Northern Virginia, and Maryland. To claim the year-end offer or start the assessment, book a free 15-minute call and we will take it from there.

Sources: Barracuda, "Calendar invite phishing" (Aug 6, 2026, updated Sept 17, 2026); Sublime Security, "ICS phishing" research, as reported by TechRadar (Sept 18, 2026; growth figures per TechRadar); Check Point, "Enhanced Protection for Calendar-Based Attacks in Microsoft 365 Emails" (Mar 15, 2026); Cofense, 2026 Annual State of Email Security (Feb 4, 2026); Check Point, August 2026 Cyber Threat Landscape (Sept 9, 2026); Check Point product materials for vendor claims.

Comments


bottom of page