Qualification
Qualifying the request: abuse type, control state, evidence, impact
For CIO, CISO, deliverability and fraud roles, the request form works best from a concrete decision record rather than a generic brief. It should name the email abuse type, the controls already in place, the evidence captured and the impact — customers phished, payments diverted, deliverability harmed. With that, dotNice can separate a DMARC enforcement push from a lookalike-monitoring programme, a gateway rule or a supplier-verification design — and recommend clearly what to enforce, monitor, block or verify.
The review is most valuable when the buyer can describe the current gap: whether DMARC is enforced, whether lookalikes are watched, what abuse is live, and which team owns the gateway. A request is qualified when it states the abuse type, the control state and the impact at stake. The output is a scoped decision — a recommended control and owner — not a service catalogue.
The cost of waiting belongs in the same record. Brand-led email fraud converts because recipients trust the name: customers lose money, suppliers are defrauded, and deliverability suffers as the domain's reputation is dragged down. Quantifying that exposure — phishing and BEC losses, customer harm, deliverability impact — is what moves email brand protection from a backlog item to a funded decision with an owner and a deadline.