Email threats like phishing and impersonation are increasingly common, making email security a critical priority for businesses and MSPs. According to the UK Government’s Cyber Security Breaches Survey 2025:
- Phishing attacks affected around 261,000 businesses and 28,000 charities last year in the UK alone. This is magnified in the EU.
- Businesses experienced an average of 30 cyber incidents per year, while charities averaged 16.
- Impersonation incidents (e.g., fraudulent invoice scams) cost businesses an average of £5,900 per incident.
Robust email security isn’t optional—it’s paramount to protecting your clients and your business.
This blog will give MSPs and their clients actionable insights to strengthen email security immediately.
High Costs of Weak Email Security for MSPs + Clients
Scenario 1: A local accounting firm experiences plummeting email open rates because legitimate newsletters are flagged as spam due to inadequate email authentication.
Scenario 2: A manufacturing client faces fraudulent invoices sent from their own email domain, causing significant financial loss and reputational damage.
These scenarios highlight a common blind spot: the lack of proper implementation and monitoring of email authentication protocols (DMARC, DKIM, SPF).
Percentage of types of breaches or attacks in the last 12 months, among the organisations that have identified any breaches or attacks (UK Gov cyber security survey 2025)

How MSPs can explain the Financial Impact to clients
The survey highlights different financial impacts depending on the type of cybercrime:
- Cyber-facilitated fraud, such as fraudulent invoice scams, costs businesses significantly more, averaging £5,900 per incident.
- General cyber incidents (excluding phishing and fraud specifically) averaged lower costs (£990 per business).
- Charities experienced higher average disruption costs (£8,690) due to generally weaker security measures and fewer dedicated resources.
These variations reflect the specific nature and severity of different attacks, underscoring the importance of targeted email security measures.
52% of businesses attacked are attacked again monthly, 29% weekly!

Common MSP Challenges for email
- Manual DMARC Report Analysis: Complex, manual processing of XML reports is inefficient and error-prone.
- Single-Tenant Solutions: Separate dashboards for each client increase administrative burden, obscuring unified security management.
Lupasafe’s Multi-Tenant DMARC Solution for MSPs and clients
Lupasafe provides MSPs with streamlined email security management:
- Unified Dashboard: Instantly identify clients at risk from email spoofing and authentication issues.
- Simplified Setup: Quickly implement email security with pre-generated DNS records.
- Automated Reporting: Easily interpret technical data with actionable insights into email security risks and unauthorized sender activity.

Immediate Benefits for MSPs
- Efficiency: Reduces administrative tasks by consolidating client security monitoring into one intuitive dashboard.
- Visibility: Clearly identifies potential risks and threats, preventing breaches before they impact your clients.
- ROI Demonstration: Clearly shows the effectiveness and necessity of email security measures.
Act Now to Secure Your Clients
With phishing and impersonation threats growing, now is the time to implement robust email security solutions. Contact Lupasafe today to safeguard your clients’ email communications efficiently and effectively.
