Reporting phishing and suspicious emails in Outlook
Encourage Your Users to Use the Outlook Report Button.
As an IT administrator, promoting the use of the Report button in Outlook is a simple but effective way to strengthen your organization’s email security posture.
Why it matters:
When users report suspicious emails, it helps your security team detect and respond to threats faster — especially phishing attempts. It also contributes to Microsoft's threat intelligence, improving protection over time.
Encouraging your users to report rather than ignore suspicious emails fosters a proactive security culture.
Remember: Better safe than sorry.
Nimblr Simulations:
If you have configured allowlisting for Nimblr’s phishing simulations according to our documentation (see: Advanced Delivery Policy setup guide), reported simulation emails will appear clearly labeled as simulations in Microsoft’s Threat Explorer and other security reporting tools. This means your users can practice reporting, and you can track engagement — without confusion.
Key Benefits of Using the Outlook Report Button:
-
Empowers users to actively participate in phishing defense
-
Improves incident response visibility
-
Enhances Microsoft Defender’s detection through user feedback
-
Seamlessly integrates with Nimblr’s training simulations
Learn more:
🔗 Use the Report Message add-in – Microsoft Docs
How to Enable the Outlook Report Button for Your Organization:
-
Deploy the Report Message or Report Phishing add-in organization-wide (via the Microsoft 365 admin center or Group Policy)
-
Remind users to report anything suspicious — real or simulated Consider using internal email communications or security awareness posters to reinforce this message.
-
Reassure users that false alarms are OK, and reporting simulations is encouraged