Post-Incident Forensics

Our Digital Forensics and Incident Response team (DFIR) is comprised of trained and certified experts uniquely and specifically qualified to perform investigations and analysis, adhering to industry best-practice techniques that gather and preserve evidence from a system or systems ensuring that the information collected is suitable for presentation in a court of law.

Home  /  Cybersecurity  /  Professional/Consulting Services  /  Post-Incident Forensics

We use the recommended post incident response process as outlined by NIST Special Publication 800-61 Revision 2. Here’s our process:

Assist in the discover and identification of illegal activity as well as the attempted recovery of any associated data.

Provide a documented and verifiable chain of custody to track evidence through entire collection process.

Create forensically sound images used for analysis to ensure the integrity of original media.

Utilize state-of-the-art hardware and software to conduct a thorough analysis of written and unwritten space in memory, Hard drives, USB drives and other forms of media.

Deliver a detailed report and investigation summary that highlights discovered artifacts and activities.

Blog
Corsica Technologies Named an Elite 100 Security Provider

CRN’s yearly list recognizes top technology providers and consultants whose forward-thinking approach to providing managed services is changing the landscape of the IT channel.

Take a Tour of our Security Operation Center

Corsica Cybersecurity President Charles Johnson gives a behind-the-scenes look at one of Corsica's two geographically redundant Security Operation Centers (SOC) in Augusta, Georgia.

Talk with an Expert Icon

Talk with an Expert

Provide your contact information below and one of our experts will contact you within one business day.

To speak with someone immediately, give us a call at (706) 941-5773.

  • This field is for validation purposes and should be left unchanged.