The organization should adopt and maintain an implementation plan for the deployment of Mail Transfer Agent Strict Transport Security (MTA-STS). The plan should establish measures to accelerate the enforcement of encrypted TLS connections for incoming mail to mitigate eavesdropping and man-in-the-middle attacks. The organization should also implement TLS Reporting (TLS-RPT) to monitor deployment progress and identify policy failures.
While specific technologies like MTA-STS and TLS-RPT are recommended for transport security, the organization should also evaluate and accelerate the deployment of broader protocols, such as SPF, DKIM, and DMARC, to mitigate evolving email-related threats.