Skip to main content
NexusGroup Employee Portal

Knowledge base · Security

Spotting and reporting phishing

How to recognise a phishing email and report it the right way.

4 min read · Updated 19 June 20XX · For All staff

Phishing emails try to trick you into clicking a link, opening an attachment, or handing over information. Learning the signs protects you and Nexus Group.

Warning signs

  • Urgency or threats — “Your account will be closed in 24 hours!”
  • Unexpected attachments or links, especially asking you to “verify” or “log in”.
  • Slightly wrong sender addresses — e.g. accounts@nexus-group-pay.com instead of our domain.
  • Requests for passwords, payments or gift cards.
  • Spelling and grammar mistakes, or a greeting that isn’t quite right.

What to do

  1. Stop. Don’t click links, open attachments or reply.
  2. Don’t enter your password anywhere you reached from the email.
  3. Report it using the Report phishing button in your email toolbar. If you can’t see it, forward the email to phishing@nexusgroup.example.com.
  4. Delete the email after reporting.

If you already clicked

Don’t panic, but act fast:

  1. Disconnect from the internet if you can.
  2. Contact the Service Desk immediately (ext. 4357).
  3. If you entered your password, reset it right away.

Reporting early helps us protect everyone — you’ll never be in trouble for reporting a mistake.

Related policy: IT Security & Acceptable Use.