SlideShare a Scribd company logo
2
Most read
3
Most read
SERVICE OVERVIEW
Digital Forensics & Incident Response (DFIR)
Detect, investigate, respond, and remediate threats with speed
and efficiency with OpenText Cybersecurity Services
Benefits
• Rapid response to incidents
• Root cause analysis and
defensible evidence
management
• Enhanced security posture
• More than just an IR partner
Industry statistics over the years show a growing skills gap and
difficulty for organizations to access DFIR talent. Many believe
there is a shortage of cybersecurity skills in their company.
Today, organizations of all sizes are still struggling to source
cybersecurity talent with no material improvement around time-
to-hire.
With Digital Forensic investigative experience reaching back as far as 27 years,
the OpenText Cybersecurity Services team are professional investigators using
the OpenText Digital Investigations and Forensics Portfolio and best-in-breed
technologies. OpenText DFIR services combined with an Incident Response
Retainer is a proactive approach to cybersecurity and helps organizations
minimize the impact of an incident.
Digital Forensics and Incident Response 2
Rapid response to breaches
OpenText can respond to incidents within minutes, from its next-generation
SOC, leveraging its investigation and forensic tools, and drawing from
its expert team equipped for broad data collection and investigation of
evidence from the endpoints, network and cloud. The team then employs
advanced analytics and custom workflows, which quickly drive accurate root
cause identification, remediation actions and security control improvement
recommendations.
How do we deliver DFIR Services?
Our team leverages the OpenText end-to-end technology stack, including
OpenText™ Endpoint Investigator, OpenText™ Information Assurance,
OpenText™ Forensic Equipment, and OpenText™ Threat Intelligence. Over
the last few decades, we also developed custom workflows and usage of the
MITRE ATT&CK® framework to quickly identify the scope of the entire incident.
Our DFIR services provide rapid response, in-depth root cause analysis, and
a rapid return to an operational steady state, as well as an improved security
posture.
Not just incident response—a full IR and post-IR
service catalog
OpenText provides on-site or remotely delivered services, leveraging its next-
generation and forensic labs for faster breach response, cyberattack analysis,
proactive investigations, insider threats and more.
Incident Response specialties:
• Advanced digital forensics
• Insider threat investigation
• Threat hunting
• Reverse engineering and malware analysis
• Memory forensics
• Full Packet Capture (PCAP) and analysis
• Ransomware investigations
• Mobile forensics collection and analysis
Post Incident Response:
• Standard Operating Procedures (SOP) development
• Incident Response Plan (IRP) development
• Cyber simulation and tabletop exercises
• Runbooks against identity threat
Copyright © 2024 Open Text • 11.24 | 242-000042-002
Incident Response scope
Overseen by our Service Program Manager, your DFIR Champion at OpenText,
we cover all your needs during the IR lifecycle for any security breaches,
cyberattacks, insider threats, or other investigations. OpenText delivers:
• Identification, triage, and validation of an incident
• Reporting on threats, impact details, and potential data exfiltration
• Hands-on support for incident remediation and post-incident activities
• Development of an increased skill level of the client team through
collaborative investigations
• “Feet on the ground” incident response investigation and threat hunting
• Root cause analysis of the breach and incident response plan
recommendations
• Lessons learned and continuous process improvement report
Incident Response Retainer
OpenText can deliver DFIR services across various programs and service
agreements. Simple incident response retainers are also offered on pre-paid
contracts at competitive pricing levels.
The Incident Response Retainer ensures quick responses to an incident and
reduces time to remediation exponentially. The OpenText Cybersecurity
Services team has the ability to react immediately, and come equipped with
best-in-bread tools, know-how and extensive DFIR experience.
With an Incident Response Retainer, organizations can meet their
cybersecurity plan or insurance requirements within their budget while
ensuring:
• Incident response hotline for incident response and escalation support
• Service Program Manager as DFIR Champion
• Response times*
• 3 hours – Initial response with validation and scoping
• 24 hours – Start of remote investigation support
• 48 hours – On-site investigative support
Not only for incident response! Conversion of banked hours can be used
against any Cybersecurity Services in our catalog, including:
• Security Health Check
• Risk Assessments
• Threat Hunting
• Security Testing/Penetration Testing
• Managed Security Services
• Tabletop Exercises
• Incident Response Playbook Creation
For more information, please contact us at securityservices@opentext.com
* Certain conditions apply. Talk to your OpenText Account Executive for all the details.
Resources
Cybersecurity Catalog >
NextGen Cybersecurity
Services >
Targeted DFIR evidence
collections >

More Related Content

PDF
OpenText Cyber Resilience Program
PDF
OpenText Cyber Resilience Fastrak
PPTX
Threat Hunting - Moving from the ad hoc to the formal
PPTX
Proactive Approach to OT incident response - HOUSECCON 2023
PDF
OpenText Managed Extended Detection and Response (MxDR)
PPTX
CyberKnight capabilties
PPSX
TSS - App Penetration Testing Services
PDF
Luncheon 2015-06-18 Security Industry 2.0: Survival in the Boardroom by David...
OpenText Cyber Resilience Program
OpenText Cyber Resilience Fastrak
Threat Hunting - Moving from the ad hoc to the formal
Proactive Approach to OT incident response - HOUSECCON 2023
OpenText Managed Extended Detection and Response (MxDR)
CyberKnight capabilties
TSS - App Penetration Testing Services
Luncheon 2015-06-18 Security Industry 2.0: Survival in the Boardroom by David...

Similar to Digital Forensics & Incident Response (DFIR) Service Overview.pdf (20)

PPTX
Managed Security Operations Centre Alternative - Managed Security Service
DOCX
Cryptika cybersecurity - company profile
PDF
Today's Breach Reality, The IR Imperative, And What You Can Do About It
PDF
NetForChoice: Redefining Cybersecurity Intelligence
PPTX
NetForChoice SOC: Advanced Security Operations Center for 24/7 Protection"
PPTX
C4I cyber secuirty by Eric Eifert - Keynote 9.pptx
PPTX
Comparing MDR to Traditional Cybersecurity Approaches.pptx
PDF
Tecomex Forensics Brochure 2014
PDF
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
PDF
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
PDF
Security+ SY0-701 CERTIFICATION TRAINING.pdf
PDF
CompTIA Security+ (Plus) Certification Training Course
PDF
CompTIA_Security_plus_SY0-701_course_content.pdf
PDF
CompTIA_Security_plus_SY0-701_course_content.pdf
PDF
Connection can help keep your business secure!
PDF
NOVA mediakit for Cyber Security Compliance.pdf
PPTX
MCGlobalTech Consulting Service Presentation
PPTX
It security cognic_systems
PDF
Careers in Cyber Security
PPTX
Critical Capabilities for MDR Services - What to Know Before You Buy
Managed Security Operations Centre Alternative - Managed Security Service
Cryptika cybersecurity - company profile
Today's Breach Reality, The IR Imperative, And What You Can Do About It
NetForChoice: Redefining Cybersecurity Intelligence
NetForChoice SOC: Advanced Security Operations Center for 24/7 Protection"
C4I cyber secuirty by Eric Eifert - Keynote 9.pptx
Comparing MDR to Traditional Cybersecurity Approaches.pptx
Tecomex Forensics Brochure 2014
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
Security+ SY0-701 CERTIFICATION TRAINING.pdf
CompTIA Security+ (Plus) Certification Training Course
CompTIA_Security_plus_SY0-701_course_content.pdf
CompTIA_Security_plus_SY0-701_course_content.pdf
Connection can help keep your business secure!
NOVA mediakit for Cyber Security Compliance.pdf
MCGlobalTech Consulting Service Presentation
It security cognic_systems
Careers in Cyber Security
Critical Capabilities for MDR Services - What to Know Before You Buy
Ad

More from Marc St-Pierre (20)

PDF
Opentext Incident Response (IR) Service Overview.pdf
PDF
OpenText MxDR Advanced EDR Agent with Autonomous, Next-Gen Protection
PDF
OpenText AI project security and compliance services
PDF
Data Protection Services Service Overview.pdf
PDF
OpenText Vulnerability Assessment & Penetration Testing
PDF
Opentext Managed XDR paves the way for CyberResilience
PDF
OpenText Security Health Check Service
PDF
OpenText Cybersecurity Tabletop Exercise
PDF
MITRE ATT&CK framework and Managed XDR Position Paper
PDF
OpenText AI & Analytics Services and Solutions Catalog
PDF
OpenText Threat Hunting Service
PDF
The Incident Response Decision Tree
PDF
US Medical University trust OpenText to guard against cyber threats-en.pdf
PDF
Managed Detection and Response (MDR) Whitepaper
PDF
Opentext Translation and Localization Services
PDF
Digital Ethical Risk Assessment
PDF
OpenText Translation & Localization Services
PDF
Opentext Decisiv
PDF
OpenText Taxonomy Catalog & Services
PDF
Open text security services catalog
Opentext Incident Response (IR) Service Overview.pdf
OpenText MxDR Advanced EDR Agent with Autonomous, Next-Gen Protection
OpenText AI project security and compliance services
Data Protection Services Service Overview.pdf
OpenText Vulnerability Assessment & Penetration Testing
Opentext Managed XDR paves the way for CyberResilience
OpenText Security Health Check Service
OpenText Cybersecurity Tabletop Exercise
MITRE ATT&CK framework and Managed XDR Position Paper
OpenText AI & Analytics Services and Solutions Catalog
OpenText Threat Hunting Service
The Incident Response Decision Tree
US Medical University trust OpenText to guard against cyber threats-en.pdf
Managed Detection and Response (MDR) Whitepaper
Opentext Translation and Localization Services
Digital Ethical Risk Assessment
OpenText Translation & Localization Services
Opentext Decisiv
OpenText Taxonomy Catalog & Services
Open text security services catalog
Ad

Recently uploaded (20)

PDF
The Cost of Neglect How Skipping Fire Safety Maintenance Can Lead to Disaster...
PDF
How Firewalls Stop Cyber Attacks Before They Happen?
PDF
Why Corporate Relocations Need Professional Packers and Movers.pdf
PDF
Expert Medical Coding Services for Faster Reimbursements.pdf
PPTX
Unlocking-Business-Potential-Power-BI-Development-Services.pptx
PDF
Environmental Impact Assessment of Quarrying Plants An IRF Kriging Solution t...
PDF
Top 7 Cybersecurity Companies in Abu Dhabi
PDF
The New Drive_ How the Transportation Business is Reinventing Itself by Ednei...
PDF
Green minimalist professional Business Proposal Presentation.pdf
PPTX
Why Outsourcing Debt Collection Saves Time and Money.pptx
PDF
AI Staffing for Startups & Growing Businesses | Rubixe
PDF
Digital marketing strategy slides .pdf
PPTX
Ealeba Youth Structure Five Core Programs & Projects Executives
PDF
Understanding LA's Zero Waste Initiative
PDF
Optimize Freight, Fleet, and Fulfillment with Scalable Logistics Solutions.pdf
PDF
SPECIAL CRIME INVEST COMbjubgjkknnjj.pdf
PPTX
Next-Generation Airline Network & Schedule Planning
PDF
Digital Marketing Skills in Demand for 2025.pdf
PDF
Meet Ulas Utku Bozdogan: A Culinary Pioneer in Malta
PDF
Bisleri vs Coca Cola.pdf intellectual property rights
The Cost of Neglect How Skipping Fire Safety Maintenance Can Lead to Disaster...
How Firewalls Stop Cyber Attacks Before They Happen?
Why Corporate Relocations Need Professional Packers and Movers.pdf
Expert Medical Coding Services for Faster Reimbursements.pdf
Unlocking-Business-Potential-Power-BI-Development-Services.pptx
Environmental Impact Assessment of Quarrying Plants An IRF Kriging Solution t...
Top 7 Cybersecurity Companies in Abu Dhabi
The New Drive_ How the Transportation Business is Reinventing Itself by Ednei...
Green minimalist professional Business Proposal Presentation.pdf
Why Outsourcing Debt Collection Saves Time and Money.pptx
AI Staffing for Startups & Growing Businesses | Rubixe
Digital marketing strategy slides .pdf
Ealeba Youth Structure Five Core Programs & Projects Executives
Understanding LA's Zero Waste Initiative
Optimize Freight, Fleet, and Fulfillment with Scalable Logistics Solutions.pdf
SPECIAL CRIME INVEST COMbjubgjkknnjj.pdf
Next-Generation Airline Network & Schedule Planning
Digital Marketing Skills in Demand for 2025.pdf
Meet Ulas Utku Bozdogan: A Culinary Pioneer in Malta
Bisleri vs Coca Cola.pdf intellectual property rights

Digital Forensics & Incident Response (DFIR) Service Overview.pdf

  • 1. SERVICE OVERVIEW Digital Forensics & Incident Response (DFIR) Detect, investigate, respond, and remediate threats with speed and efficiency with OpenText Cybersecurity Services Benefits • Rapid response to incidents • Root cause analysis and defensible evidence management • Enhanced security posture • More than just an IR partner Industry statistics over the years show a growing skills gap and difficulty for organizations to access DFIR talent. Many believe there is a shortage of cybersecurity skills in their company. Today, organizations of all sizes are still struggling to source cybersecurity talent with no material improvement around time- to-hire. With Digital Forensic investigative experience reaching back as far as 27 years, the OpenText Cybersecurity Services team are professional investigators using the OpenText Digital Investigations and Forensics Portfolio and best-in-breed technologies. OpenText DFIR services combined with an Incident Response Retainer is a proactive approach to cybersecurity and helps organizations minimize the impact of an incident.
  • 2. Digital Forensics and Incident Response 2 Rapid response to breaches OpenText can respond to incidents within minutes, from its next-generation SOC, leveraging its investigation and forensic tools, and drawing from its expert team equipped for broad data collection and investigation of evidence from the endpoints, network and cloud. The team then employs advanced analytics and custom workflows, which quickly drive accurate root cause identification, remediation actions and security control improvement recommendations. How do we deliver DFIR Services? Our team leverages the OpenText end-to-end technology stack, including OpenText™ Endpoint Investigator, OpenText™ Information Assurance, OpenText™ Forensic Equipment, and OpenText™ Threat Intelligence. Over the last few decades, we also developed custom workflows and usage of the MITRE ATT&CK® framework to quickly identify the scope of the entire incident. Our DFIR services provide rapid response, in-depth root cause analysis, and a rapid return to an operational steady state, as well as an improved security posture. Not just incident response—a full IR and post-IR service catalog OpenText provides on-site or remotely delivered services, leveraging its next- generation and forensic labs for faster breach response, cyberattack analysis, proactive investigations, insider threats and more. Incident Response specialties: • Advanced digital forensics • Insider threat investigation • Threat hunting • Reverse engineering and malware analysis • Memory forensics • Full Packet Capture (PCAP) and analysis • Ransomware investigations • Mobile forensics collection and analysis Post Incident Response: • Standard Operating Procedures (SOP) development • Incident Response Plan (IRP) development • Cyber simulation and tabletop exercises • Runbooks against identity threat
  • 3. Copyright © 2024 Open Text • 11.24 | 242-000042-002 Incident Response scope Overseen by our Service Program Manager, your DFIR Champion at OpenText, we cover all your needs during the IR lifecycle for any security breaches, cyberattacks, insider threats, or other investigations. OpenText delivers: • Identification, triage, and validation of an incident • Reporting on threats, impact details, and potential data exfiltration • Hands-on support for incident remediation and post-incident activities • Development of an increased skill level of the client team through collaborative investigations • “Feet on the ground” incident response investigation and threat hunting • Root cause analysis of the breach and incident response plan recommendations • Lessons learned and continuous process improvement report Incident Response Retainer OpenText can deliver DFIR services across various programs and service agreements. Simple incident response retainers are also offered on pre-paid contracts at competitive pricing levels. The Incident Response Retainer ensures quick responses to an incident and reduces time to remediation exponentially. The OpenText Cybersecurity Services team has the ability to react immediately, and come equipped with best-in-bread tools, know-how and extensive DFIR experience. With an Incident Response Retainer, organizations can meet their cybersecurity plan or insurance requirements within their budget while ensuring: • Incident response hotline for incident response and escalation support • Service Program Manager as DFIR Champion • Response times* • 3 hours – Initial response with validation and scoping • 24 hours – Start of remote investigation support • 48 hours – On-site investigative support Not only for incident response! Conversion of banked hours can be used against any Cybersecurity Services in our catalog, including: • Security Health Check • Risk Assessments • Threat Hunting • Security Testing/Penetration Testing • Managed Security Services • Tabletop Exercises • Incident Response Playbook Creation For more information, please contact us at securityservices@opentext.com * Certain conditions apply. Talk to your OpenText Account Executive for all the details. Resources Cybersecurity Catalog > NextGen Cybersecurity Services > Targeted DFIR evidence collections >