Answer yes if your organisation has implemented email security controls that inspect inbound email and detect, filter, or quarantine messages that are likely to be malicious, such as phishing attempts, spoofed senders, or messages containing malicious attachments or links. This could include secure email gateways, native cloud email provider protections (e.g. Microsoft Defender for Office 365, Google Workspace security controls), or third-party email security solutions. Describe the nature of the controls in the notes section.