What is phishing?
Phishing scams are typically fraudulent email messages appearing to come from legitimate organizations (e.g., your Company IT or Security department, your Internet service provider, your bank). These messages usually direct you to open an attached file or click a link which takes you to a spoofed web site. Simply opening that file or clicking on that link in the email may be all that is needed to first compromise your work PC, and then eventually our entire company network. Once a Hacker has that internal access to our systems, they can often do things not possible if they remained outside our firewalls.
{Insert Company Name} has the best messaging security filters possible, but even with that in place some phishing emails will get through. We need everyone working at {Insert Company Name} to be diligent to avoid being compromised by phishing attacks and to report them as soon as they are seen. To make it easy for you to report suspicious emails, we are going to install an Outlook Plugin starting {Insert Reporter deployment date}, which will provide a simple way to report suspicious emails which may be a phishing attack. The button is shown below. Once you report the suspicious email, you can continue on with your work. The Security Team will investigate, and we will contact you if more information is required.