17
1

POST: Email Archival, Processing and Flagging Stack for Incident Responders

Jeffrey Fairbanks
Abstract

Phishing is one of the main points of compromise, with email security and awareness being estimated at \50100Bin2022.Thereisgreatneedforemailforensicscapabilitytoquicklysearchformaliciouscontent.AnovelsolutionPOSTisproposed.POSTisanAPIdrivenserverlessemailarchival,processing,andflaggingworkflowforbothlargeandsmallorganizationsthatcollectsandparsesallemail,flagsemailsusingstateoftheartNaturalLanguageProcessingandMachineLearning,allowsfullemailsearchingoneveryaspectofanemail,andprovidesacostsavingsofupto68.650-100B in 2022. There is great need for email forensics capability to quickly search for malicious content. A novel solution POST is proposed. POST is an API driven serverless email archival, processing, and flagging workflow for both large and small organizations that collects and parses all email, flags emails using state of the art Natural Language Processing and Machine Learning, allows full email searching on every aspect of an email, and provides a cost savings of up to 68.6%.

View on arXiv
Comments on this paper