The email-security leader that grew into a connected Human Risk Management platform— protecting 42,000+ organisations across email, collaboration, awareness and insider risk, from one platform. This hub is your complete intel file.
Buy through TechBag
Same software. Better outcome — at no extra cost.
Free, vendor-neutral, 30 minutes
The company, at a glance
Quick answer
Mimecast is the email-security company that grew into a connected Human Risk Management platform. Founded in London in 2003 by Peter Bauer and Neil Murray and now owned by private-equity firm Permira (which took it private in a ~$5.8B deal in 2022), Mimecast protects 42,000+ organisations across 100+ countries. It built its reputation on email — AI-powered protection against phishing, malware, ransomware, business-email-compromise and impersonation, plus a defensible email archive and continuity — and remains a recognised email-security leader. But its current strategy is broader: reduce human risk across every channel employees use. Through the acquisitions of Elevate Security (2023, now Engage awareness training), Aware (AI collaboration governance) and Code42 (2024, now Incydr insider-risk protection), Mimecast connected email security, collaboration security and governance, security awareness training, and insider-risk into one Human Risk Management platform — so a risky email, a risky chat, a risky data movement and an untrained user are one connected picture rather than four disconnected tools. The pitch: protect the human — the factor behind most breaches — across email, collaboration and data, from one platform.
The complete Mimecast platform — every linked card is a full intel page, from the email core to insider risk.
AI email security, your way.
Mimecast's core: AI/ML protection against phishing, malware, ransomware, BEC and impersonation, deployable as a Cloud Gateway (SEG) or Cloud Integrated (M365 API). The email-security heritage the whole platform is built on.
Teams, SharePoint & OneDrive.
Extends email-grade threat protection to the collaboration surface — Microsoft Teams, OneDrive and SharePoint — closing the blind spot threats use when they skip the email gateway.
Catch data leaving via employees.
The Code42 Incydr technology — insider-risk management that watches how data actually moves (USB, cloud, webmail, Git) and surfaces risk-ranked exfiltration, without the false-positive floods of legacy DLP.
Train who's actually risky.
Risk-based security awareness training and simulated phishing (the Elevate Security technology) — memorable content, focused on the users who are genuinely risky rather than one-size-fits-all.
Govern Teams, Slack & Zoom.
AI-powered governance and compliance for collaboration — data loss, supervision, records retention, e-discovery and conduct risk across the channels where conversations now happen.
Stop domain spoofing.
Take control of your email domains — readable DMARC reports, sender discovery, and a guided path to safe enforcement (p=reject), the only setting that actually stops attackers spoofing your brand.
A defensible record, and continuity.
A tamper-proof, searchable email archive for compliance, e-discovery and legal hold — plus continuity that keeps you sending and receiving through a primary-mail outage. A core Mimecast heritage strength.
Contain what gets through.
Expert, 24x7 analyst-led response to email threats — triage user reports, investigate, and remove a malicious email from every mailbox it reached. The human backstop for orgs without a large SOC.
The connected platform tying it all together — email, collaboration, awareness and insider-risk signals combined into one view of human risk, with a Human Risk Command Center.
DMARC-based monitoring that detects and helps take down sites and mail spoofing your brand — protecting customers, bundled into the email/DMARC story.
Point tools from different vendors don’t talk, and most mid-sized organisations can’t staff a point tools. Mimecast bet on connected Human Risk Management— email security connected to awareness, collaboration and insider risk — and the acquisitions doubled down on it.
One connected platform to reduce human risk across every channel — email, collaboration and data — rather than four disconnected point tools. The organising idea behind everything.
AI/ML email protection — the heritage since 2003 and the foundation the platform is built on, deployable as a gateway or via M365 API.
Elevate (Engage training), Aware (collaboration governance) and Code42 (Incydr insider risk) — the acquisitions that turned an email company into a human-risk platform.
A risky email, a risky chat, a risky data movement and an untrained user become one connected picture — the human risk seen across channels, not in silos.
A defensible email archive and continuity — the compliance-and-resilience heritage that underpins the platform and keeps the business running through outages.
Start with email — the heritage; the platform connects awareness, collaboration and insider risk around it.
Every claim on this hub traces to one of these public signals.
100+ countries
Since 2003
Incydr insider risk
Engage training
~$5.8B take-private, 2022
AI collaboration governance
Founded 2003
Compliance heritage
The connected human-risk platform, explained.
The vision behind Mimecast's platform.
The email-security core, demonstrated.
Trusted by 600,000+ organisations worldwide
Two company-level views you won’t find on any vendor site — tap any dot for the rationale. The category-level grid lives on the product page.
Each dot is a Mimecast product: competitive position vs category momentum.
The flagship — AI email security, the heritage and platform core.
Email + platform strength vs human-risk breadth — where Mimecast wins email-first buyers.
The email-security leader turned connected Human Risk Management platform — email, collaboration, awareness and insider risk, one picture.
Positions are TechBag’s illustrative synthesis of public review-platform standings and vendor documentation — not a reproduction of any analyst graphic. Verify before relying on it.
Zero-jargon starting points, in reading order. Each links into the deep education on the product page.
Answer three questions; we’ll point you at the right starting product. No email required — this isn’t that kind of quiz.
1. What's the most pressing gap right now?
2. Which sentence sounds most like you?
3. What does success look like in 90 days?
How Mimecast connects email, collaboration, awareness and insider risk into one view of the human.
Read →The two ways Mimecast email security deploys — SEG via MX, or API for Microsoft 365. Which fits you.
Read →Why Incydr watches how data moves instead of rigid content policies — and why that beats legacy DLP.
Read →The distinction that causes compliance failures — and what a defensible archive actually provides.
Read →Why p=reject is the goal, why most orgs stall in monitoring, and how DMARC Analyzer gets you there safely.
Read →The honest matrix vs Proofpoint, Abnormal and Microsoft — email depth, deployment, and the platform.
Read →The procurement playbook TechBag runs with IT buyers — steps, licensing cheat-sheet, and the pitfalls that cost quarters.
Mimecast's core and strongest heritage is email security. If email is your priority, start at Advanced Email Security and decide gateway vs Cloud Integrated (M365 API). TechBag scopes it free.
Mimecast's strategy is one connected platform across email, collaboration, awareness and insider risk. Scope which channels of human risk matter to you — the connection is the value.
Engage (Elevate), Incydr (Code42) and Aware are strong products in their own right. If awareness, insider risk or collaboration governance is a real need, they're worth scoping, not ignoring.
Test detection against phishing, malicious links, attachments AND payload-free BEC — plus time-of-click and sandboxing. The email core is where to prove value first.
Against Proofpoint (enterprise heavyweight), Abnormal (API-native challenger) and Microsoft (native E5) — bake off on email depth, deployment flexibility, archiving and the platform.
TechBag is your local partner for licensing (S1/S2/S3 bundles), PoCs, platform scoping, migration and support — GST invoicing throughout.
| Product | Licensing model | How you enter | Best for |
|---|---|---|---|
| Email Security (S1/S2/S3) | Per user/mailbox | Tiered email-security bundles | Email-first buyers |
| Incydr | Per user | Insider-risk / data protection | IP & regulated-data orgs |
| Engage | Per user | Risk-based awareness training | Human-layer buyers |
| Archive / Platform | Per user / storage | Archiving, continuity & the wider platform | Compliance + human-risk programs |
Per-user/device plus appliances and MDR service — TechBag models the mix (managed vs self-managed) for your size.
Mimecast built its name on email, but its current strategy is a connected human-risk platform. Evaluating only email misses Engage, Incydr and Aware — strong products that, connected, are the differentiator over a point email tool.
Cloud Gateway (SEG) vs Cloud Integrated (M365 API) is a real decision that shapes the deal — gateway suits hybrid/non-Microsoft estates, Cloud Integrated suits M365-first. Decide early.
Mimecast's archive is a defensible compliance record, not a backup — buyers who conflate the two under-scope their retention and e-discovery needs.
For pure Microsoft 365, API-native challengers (Abnormal) are strong and worth comparing. Mimecast's edge is depth plus the platform, but a fair PoC should include them.
Continuity (working through a primary-mail outage) and a mature archive are real Mimecast strengths that competitors often lack — factor them in, they may tip the decision.
The flagship intel page carries an 8-question vendor checklist and an automation-savings calculator:
Bring your device counts and current tool bills — a TechBag advisor models the whole decision for you.
Book a discovery call →Six trends with momentum scores (TechBag’s read of analyst and market signals) — and what each means for your next decision.
*Directionally consistent with public analyst forecasts; verify exact figures before quoting. The takeaway: human risk, insider risk and awareness compound fastest — exactly where Mimecast (and its acquisitions) is placed.
Vendors are converging on 'human risk' — connecting email, collaboration, awareness and insider risk. Mimecast is one of the clearest bets on this, built via acquisition.
What it means for you
Evaluate whether you want connected human-risk signals or best-of-breed point tools.
Despite everything, the overwhelming majority of attacks still start with an email — which keeps email security foundational and Mimecast's core relevant.
What it means for you
Email security is not a solved, commoditised problem — it remains where most attacks begin.
As work moved into Teams, Slack and SharePoint, both threats and compliance obligations followed — driving collaboration security and governance.
What it means for you
If your people live in collaboration tools, your security and compliance must extend there too.
Insider-risk tools (like Incydr) are moving from rigid DLP policies to watching how data actually moves — fewer false positives, faster value.
What it means for you
If legacy DLP frustrates you, the behavioural insider-risk approach is worth evaluating.
One-size-fits-all annual training is giving way to risk-based programs that focus on who's actually risky — Engage (Elevate) is built on this.
What it means for you
Score awareness vendors on targeting and engagement, not just content library size.
Mailbox providers increasingly require authentication, pushing organisations toward DMARC enforcement to protect their domains and deliverability.
What it means for you
If you're stuck at DMARC monitoring, enforcement is becoming table stakes — not optional.
Open any of the twelve intel pages for the deep dive, or let a TechBag advisor build the case with you — MDR-vs-self-managed scoping, quotes, trials, GST invoicing and lifecycle support included.
Stats, positions and figures are illustrative syntheses of public materials; verify before purchase.