Views:
You can configure the detection threshold to determine how closely display names must match high-profile users before triggering a threat detection alert. When you set the detection threshold, it applies to all of your high-profile users.
Note
Note
This setting applies only to suspicious sender detection and BEC detection in Advanced Spam Protection of Advanced Threat Protection policies. Writing style analysis always uses the built-in detection threshold.

Procedure

  1. In Cloud Email and Collaboration Protection, go to PoliciesGlobal SettingsUser-Defined ListsHigh Profile List and click High Profile Users.
  2. Click Configure detection threshold.
  3. Select one of the following:
    • Use the built-in detection threshold
    • Customize the detection threshold
  4. If you selected Customize the detection threshold, you need to set the threshold level.
    • Aggressive: Detects the most potential threats using fuzzy matching algorithms.
    • Normal: provides balanced detection with moderate accuracy.
    • Conservative: Triggers only for exact matches and character obfuscations.
  5. Click Save.