Select your cookie preferences

We use essential cookies and similar tools that are necessary to provide our site and services. We use performance cookies to collect anonymous statistics, so we can understand how customers use our site and make improvements. Essential cookies cannot be deactivated, but you can choose “Customize” or “Decline” to decline performance cookies.

If you agree, AWS and approved third parties will also use cookies to provide useful site features, remember your preferences, and display relevant content, including relevant advertising. To accept or decline all non-essential cookies, choose “Accept” or “Decline.” To make more detailed choices, choose “Customize.”

    Listing Thumbnail

    DFIR Digital Forensic & Incident Response, Emergency Support

     Info
    Sold by: Eviden USA 
    DFIR - Digital Forensic & Incident Response (AKA CSIRT) is a team of IT cyber security experts who help organizations to survive during cyber-attacks and support customers in technical assessments, preventions and management of security emergencies. DFIR provides resolution of security incidents, forensics analysis and malware analysis.
    Listing Thumbnail

    DFIR Digital Forensic & Incident Response, Emergency Support

     Info
    Sold by: Eviden USA 

    Overview

    DFIR - Digital Forensic and Incident Response (AKA CSIRT – CyberSecurity Incident Response Team) provides technical support in resolution of confirmed computer security incidents. Computer/Mobile security incident must fulfil all below characteristics:

    • Adverse or negative act against confidentiality, integrity, or availability of organization’s assets
    • Involve a computing/mobile resource (this rules out physical security and natural disasters)
    • Confirmed intent to cause harm needs to be present (this implicates a person involvement in an incident and rules out incidental occurrences like failed changes, software/hardware failures etc.)” Computer security incident is not:
    • Confirmed penetration test \ red team assessments.
    • Incident related to general malfunction of system that is not related to cyber-attack.
    • Physical security incident like stolen laptop or unauthorized entry to building. DFIR is focusing on three main areas:
    • Security Incident Response provides expert knowledge to analyze security incidents, determines the incident priority and the activities to mitigate the threat.
    • Digital Forensics Remote provides forensics investigation which consists of gathering and examining data, to recover and investigate material (e.g., malware, IoC, log, etc.) found in digital devices.
    • Malware Analysis provides custom malware analysis and reverse engineering. It determines the purpose and method used by a specific malware. Supplier Security Engineers shall analyze suspicious files using commercial and public toolsets, providing a custom report detailing the composition of the malware.

    DFIR Experts use special digital forensics platform called “DFIR Investigator”, which can gather data for investigation quicky. Thanks to that, investigation can be started without delay and mitigation actions - stopping the damage may be applied as soon as possible.

    The platform is used in investigations related to cybercrimes and other incidents involving digital data. Platform is realized within AWS cloud in all regions supported by AWS.

    Highlights

    • Mitigation of Risks
    • Expertise and Specialization
    • Cyber Resilience

    Details

    Delivery method

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. To get a custom quote for your needs, request a private offer.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Support

    Vendor support

    For any support please contact cert-csirt@eviden.com