Services · Digital forensics
Incident Response Forensics
Forensic answers after a breach or security incident.
After a cyber incident, legal and security teams need to know what happened, what data was affected and what must be reported. We preserve evidence properly and produce findings that support notifications and any later dispute.
§ 01 · What we do
How we help.
01
Evidence preservation
Endpoint, server, log and cloud audit data preserved with chain of custody.
02
Scope analysis
Identification of accessed or exfiltrated data to inform ICO and other notifications.
03
Legal support
Reports prepared under legal instruction for regulators, insurers and litigation.
§ 02 · Who we work with
Built for the teams that carry the risk.
- Chief information security officers and incident-response teams
- General counsel and in-house legal departments
- Regulated businesses and public-sector organisations
Standards we work to
- Evidence handled for later legal use
- UK GDPR breach reporting awareness
- Clear separation of facts and opinion
§ 03 · Where we work
London, the UK and Ireland, for UK and US clients.
- London and the rest of England
- Across the UK and Ireland
- US clients in California, New York, Texas, Illinois, Washington D.C., Massachusetts and Florida with employees, subsidiaries, branches or other connections in the UK or Ireland