Connor Group enforces policies regarding the handling of sensitive information by automatically encrypting email messages sent inside & outside our organization that contain 'sensitive information'.
Sensitive information is currently anything that matches a pattern like one of the following:
- ABA Routing Number
- Credit Card Number
- U.S. Drivers License Number
- U.S. / U.K. Passport Number
- U.S. Bank Account Number
- U.S. Individual Taxpayer Identification Number (ITIN)
- U.S. Social Security Number (SSN)
External Recipient Experience:
External recipients will receive a message that looks something like this when they receive a message that was encrypted by this process:
Clicking the "Read the message" button may bring the recipient to a page that looks like this (dependent on the recipients domain):
- If the outside recipient is using a Google, Yahoo, or Microsoft account, they can log in with their own Google, Yahoo, or Microsoft account.
- If the outside recipient is in another domain, they will be directed through a process where they will be emailed a special one-time use password to access the encrypted message.
- External recipients using Office 365 and Outlook 2013 or 2016 may have the decrypted message presented to them transparently by their Outlook client.
Office 365 will control the user's interaction with the encrypted message so that the message stays encrypted if the recipient replies to or forwards the message.