We use cookies on this site to help provide the best possible online experience. By using this site you agree to our use of cookies.

Click to view our cookie policy and customize your cookie preferences.

Icon
A notification message..

Red Sift

Available to purchase until

Red Sift is a UK owned, cloud based security platform offering TLS certificate management and DMARC email protection. It delivers real time monitoring, alerts, and remediation to prevent certificate outages and real-time monitoring, customisable reports, and guided remediation and compliance tracking to help simplify email security. Red Sift gives organisations of all sizes clear visibility, stronger security, and control across certificates and email.

Key Facts

Benefits

  • Simple preferential pricing using Jisc banding
  • Fixed pricing for 1 or 3 year terms
  • OnDMARC: No volume limits, unlimited email traffic included
  • Rapid time to compliance, designed specifically for education providers
  • Free trial available for OnDMARC, free version available for Certificates 

Important Dates

Agreement start: 31 March 2025

Agreement end: 30 March 2028

Invoice date: annually one month in advance of the anniversary of the licence start date.

Commitment Period

Institutions may participate in the Agreement at any time during the agreement period, and are bound by its Terms and Conditions, including payments, until the end of the Institution’s chosen Commitment (Licence) Period.

Licence Type

Site licence

Eligible Institutions

Higher and Further Education and Research Councils in the United Kingdom, and to Universities and Colleges of Further Education in the Republic of Ireland. Other organisations supporting education, including research bodies and the public sector, may ask to participate in the Agreement. Chest will liaise with the Supplier about any such requests.

Background Information 

The National Cyber Security Centre’s (NCSC) announcement that its Mail Check DMARC reporting service for the UK public sector was retired on 24 March 2025. Red Sift's OnDMARC is one such replacement for organisations to consider. Redsift Certificates were added to the agreement June 2026.

 

Product Information

Supplier Details

Licensor: Red Sift Ltd, 3rd Floor, 1 Ashley Road, Altrincham, Cheshire, United Kingdom, WA14 2DT. 09240956.

Product Description 

Red Sift OnDMARC is a UK-owned, cloud-based solution that stops unauthorised use of email-sending domains. With real-time monitoring, customisable reports, and guided remediation, it helps organisations quickly achieve DMARC enforcement.

Red Sift OnDMARC's user-friendly dashboard and compliance tracking simplify email security, while Jisc Banded pricing makes it accessible to organisations of all sizes. Backed by expert support, OnDMARC ensures a smooth path to stronger protection and trust across your email ecosystem. 

Red Sift Certificates provides full visibility across your public and private certificate estate. With CT log monitoring, automated expiry alerts, and guided issue remediation, it helps organisations reduce risk from expired or misconfigured TLS certificates. For more details see below.

Redsift OnDMARC 

  • Red Sift OnDMARC - is an automated DMARC application that helps organisations take back control of their email reputation and stop unauthorised use of their email-sending domains. By providing step-by-step implementation guidance, hosted email protocol management, as well as clear reports that provide insight into sending services and domain health, it helps global brands reach DMARC enforcement (p=reject) quickly and effectively. For more information click here.
    Red Sift OnDMARC Voted best in class

  • Red Sift OnDMARC focuses on expedited time to enforcement by making it easy to audit existing email-sending environments, troubleshoot setups with Investigate, and automate the management of email security protocols DMARC, DKIM, and SPF with Red Sift Dynamic Services. It offers hosted MTA-STS to stop man-in-the-middle attacks and the only end-to-end BIMI solution on the market with integrated VMC provisioning.
  • DNS Guardian (available with Premier licensing) is the first DNS configuration monitoring feature of its kind offered among DMARC providers, stopping malicious emails that slip through DMARC defences, including threats from domain takeovers and SubdoMailing attacks. Read more at Red Sift's blog.
  • With the newly embedded Red Sift Radar LLM, OnDMARC enables security teams to find and fix email-related issues up to 10x faster. For more information, click here.
  • All supported by the award winning Red Sift customer success program and support portal “Sift Space”

There are 3 levels of OnDMARC available to purchase: 

Essentials 

This includes: 

  • Automated DMARC and Outbound Email Authentication Suite   
  • Unlimited Sending Services   
  • Unlimited Email Sending Volume   
  • Dynamic DMARC   
  • Dynamic SPF with Unlimited SPF Lookups   
  • 1 year of data history   
  • Investigate   
  • Forensics Reporting   
  • Logs   
  • API Access   
  • SAML/SSO   
  • Chat Support   
  • Unlimited Platform Users   
  • Unlimited Parked Domains   
  • Essentials Support  

Enterprise 

This includes everything in Essentials and the addition of:

  • Dynamic BIMI with one VMC included  
  • Dynamic DKIM  
  • Dynamic MTA/STS  
  • Detailed User Permissions  
  • Domain Compliance Support - Dedicated Success Engineer  
  • Dedicated Account Manager  
  • Quarterly Account Review  
  • Advantage Support   

Premier 

This includes everything in Enterprise and the addition of: 

DNS Guardian is the first DNS configuration monitoring feature of its kind offered among DMARC providers, stopping malicious emails that slip through DMARC defences, including threats from domain takeovers and SubdoMailing attacks. 

 

If you are unsure which level is most appropriate for your institution and needs, please contact help@chest.ac.uk

 

Redsift Certificates 

Red Sift Certificates is a cloud-based TLS/PKI visibility and monitoring solution that provides full discovery and oversight across your public and private certificate estate. Red Sift Certificates' intuitive dashboard and continuous discovery simplify PKI oversight, while REST API and webhook integrations fit seamlessly into existing security workflows. Backed by expert support, Certificates ensures a smooth path to stronger visibility and control.

  • Continuous certificate discovery via CT log monitoring ensures no certificate goes untracked, across both public and private infrastructure.
  • Automated expiry alerts and guided issue remediation help security teams prevent outages and fix misconfigurations before they become incidents.
  • Seamless integration via REST API and webhooks connects Certificates to existing SIEM, ticketing, and asset management workflows.
  • Role-based access control (Owner, Admin, Observer) ensures appropriate access across teams and business units.
  • PQC readiness baselining prepares organisations for the transition to post-quantum cryptography.

Supported by the award-winning Red Sift customer success program and support portal Sift Space.

There is a free version of Certificates called Certificates Lite available. This includes: 

  • Dashboard 
  • Certificate Inventory (All, Issuance & Revocation History) 
  • Endpoint Monitoring (limited 443 scan) 
  • Certificate Transparency (limited) 
  • Domains & Domain Exclusions (limited) 
  • API Access (limited) 
  • Notifications & CT Monitoring Settings (limited) 

Certificates Essential includes:

  • Dashboard 
  • Certificate Inventory (All, Issuance & Revocation History) 
  • Endpoint Monitoring (All, Expiring, Port 443 and 25) 
  • Certificate Transparency (Discoveries, CT Log List, High Assurance CT) 
  • Host Discovery (Passive DNS, Subdomains, Nameserver Monitoring) 
  • Host Assessment (HTTP, SMTP, CAA) 
  • DNS Inspections 
  • TLS Security posture (incl. Post-Quantum Readiness) 
  • WHOIS / RDAP Lookups 
  • Domains & Domain Exclusions 
  • Groups 
  • API Access 
  • Notifications & CT Monitoring Settings 
  • Teams & Account Management  

Certificates Enterprise  

This includes everything in Essential and the addition of:  

  • Elastic Search (API) 
  • Issues Tracking (Certs, TLS, PKI, CAA, HSTS) 
  • Network Scanning (beyond 443 and 25) 
  • Events (CT, Issues, PKI) 
  • Integrations (AWS, GCP, Azure, CAs, Cloudflare, CSC, Private PKI agents etc.) 
  • Headless Chrome (Screenshots & Page Classification) 
  • Technologies Detection 
  • Network Ranges 

If you are unsure which level is most appropriate for your institution and needs, please contact help@chest.ac.uk

Useful Resources

We will continue to update this page as and when we receive new content.  The new content will always be added at the top of the page.

Red Sift Blog:

What is email spoofing and how can you prevent it?

DMARC: The best ROI for your organization

Red Sift Launch Webinar

On the 30 April 2025 Red Sift hosted a webinar to celebrate the launch of their Jisc Agreement on Chest.  You can access that webinar by clicking on the below image.

Service and Support

This content is restricted to logged in members.

Please register or login to view.

Terms and Conditions

Licensor: Red Sift Ltd, 3rd Floor, 1 Ashley Road, Altrincham, Cheshire, United Kingdom, WA14 2DT. 09240956.

The Chest Order, together with the Licence Terms and Conditions, and any exceptions listed below, create a legally binding contract between your institution, organisation or company and the Licensor. Therefore please read the terms and conditions carefully and only submit a Chest Order if its terms and conditions are acceptable to your institution, organisation or company and you have the authority to make the financial commitment shown.

Licence Type

This licence is subject to the terms and conditions for the Standard Software as a Service (SaaS) Licence (July 2024) 

Payment Terms

Chest is an Enterprise of Jisc. All Purchase orders must be made out to JISC, One Castlepark, Tower Hill, Bristol, BS2 0JA Payments are due within thirty days of invoice date; recipients of late payments are entitled to interest in accordance with UK statutory provisions. 

On receipt of a completed Order, and a Purchase Order (if required by the Institution) made payable to Jisc, Institutions will be invoiced depending on the licence and payment term selected. Invoices are payable within 30 days of the date of the invoice. 

  • For a one-year licence, the invoice will be for the Agreement Year in which the Licence is signed.
  • For institutions signing up to three year agreements, subsequent annual invoices will be sent 1 month in advance of the anniversary of the licence commencement date.

Exceptions to the Terms and Conditions

  1. Term 1.1(a) (the definition of Authorised Users) is deleted and replaced by the following text: “Authorised Users” means any person affiliated with the Licensee.
  2. An additional Definition is added: “Customer Data” means data and information submitted by or on behalf of Licensee to the Licensors Software.
  3. An additional Definition is added: “DPA” means Licensors’ data processing agreement available at https://redsift.com/data-processing-agreement which is incorporated in, and forms part of, this Agreement.
  4. Term 2.2 is deleted.
  5. Term 3.1(d) is deleted

Products and Pricing

This content is restricted to logged in members.

Please register or login to view.

Join our mailing list for the latest news, event information and resources