Investigative Services.

Digital Forensic Investigations (DFI)

Digital Forensic Investigations, or DFI, is a category of Information Security focused on investigating anomalous or malicious activity within an organization’s systems. DFI work typically involves a combination of physical, human, and technical techniques to solve the investigation. Often, what may first appear to be a hack of company systems may turn out to be an insider threat intentionally leaking data.

Incident Response (IR)

Overt team members have extensive experience in handling incidents that range from simple password-guessing account takeovers to nation-state compromises. We provide incident response services in cases including:

  • Network breaches, with lateral movement and persistence
  • Server breaches, with password harvesting and backdoors
  • Account takeovers, including business email compromise (BEC)
  • Ransomware, and its variants such as crypto-mining

Our specialty is in the incident handling and case management. Through our extensive partner network, we can supplement a victim’s technical capability to provide additional support during incident recovery.

Device Forensics

Overt considers Device Forensics as a subspecialty of Digital Forensic Investigations (DFI). We have extensive experience performing device forensics, including:

  • Live System Memory Capture
  • Hard Drive Forensics
  • Mobile Devices Forensics

eDiscovery & Data Production

Overt specialists have participated in large, complex lawsuits that required discovery and production of data from disparate systems. We have used a combination of native tools, third-party e-discovery tools, and custom software to accomplish the mission. Notably, we have extracted data from:

  • Google Workspace – emails and documents
  • Microsoft 365 – emails and documents
  • Slack – Workspace exports
  • Salesforce – exports via Python API

Additionally, we have crafted custom code that can convert difficult to manage file formats into nicely formatted PDF files.

Overt’s experts can also recommend E-Discovery platforms to enable legal teams to manage, review, and export data.

SECURITY

SETS YOU FREE.