But you can mitigate the hell out of it, I suggest air gapping.
Yes. Lets air-gap the email system. That would work well.
I've long advocated, but never implemented, having a VM just for email. This wouldn't protect from social engineering via email but its better than having the email client on the desktop itself.