Services catalogue

Forensics. Response.
Testimony.

Five service categories spanning digital forensics, device security, incident response, litigation support, corporate investigations and email & eDiscovery — covering everything from a single device to a multi-jurisdiction matter. Pick the category that matches your case, or open one and we'll triage it.

Secure IntakePrivileged
Name

Choose your investigation.

All six categories active & staffed
01 / Forensics Active

Digital Forensics

Court-defensible acquisition and analysis across every platform. Practical end-to-end capability — from sensitive private matters to the specialized work many firms can't handle in-house.

  • Computer & Mobile ForensicsWindows · macOS · iOS · Android · Memory
  • Cloud & EmailM365 · Google Workspace · AWS · eDiscovery
  • Deceased Person's DataEstate-authorized · Photos · Messages · Discreet
  • Specialized & NicheImage Auth · Crypto · A/V · OSINT · IoT
View capabilities
04 / Response Active

Incident Response

Active breach response, ransomware containment and DFIR retainers. Counsel and insurer relationships, prepaid SLAs.

  • Emergency ResponseTriage · Containment · Recovery
  • RansomwareInvestigation · Backup validation · Recovery
  • BEC InvestigationVector · Dwell · Exfiltration
  • DFIR RetainersSLA · Prepaid hours · Insurer panels
View capabilities
05 / Litigation Active

Litigation Support

Expert testimony, eDiscovery and court-ready exhibits. The highest-rate work in the industry.

  • Expert WitnessReports · Depositions · Trial testimony
  • eDiscoveryCollection · Processing · Production
  • Reports & AffidavitsDaubert-ready · Methodology · Citations
  • Court ExhibitsTimelines · Demonstratives · Jury visuals
View capabilities
06 / Corporate Active

Corporate Services

Direct-to-employer engagements: misconduct, IP theft, departing-employee forensics and readiness assessments.

  • Employee InvestigationsMisconduct · Harassment · Policy violation
  • IP TheftTrade secrets · Exfiltration tracing
  • Departing EmployeeUSB · Cloud · IP transfer detection
  • Forensic ReadinessAssessment · Policy · Training
View capabilities
03 / Security Active

Device Security

Lawful decryption, spyware scans, compromise assessments and pre-travel hardening — for journalists, executives and anyone targeted.

  • Secure DecryptionFileVault · BitLocker · Keychain
  • Spyware & StalkerwarePegasus · Predator · Implants
  • Compromise AssessmentEndpoint · Identity · Cloud · Network
  • Travel & HardeningPre-trip · Lockdown Mode · Account Audit · Burner Setup
View capabilities
01 / Not sure which?

Open a case — we'll triage.

If the matter spans devices and platforms, start with an intake and we'll assign the right examiners across disciplines. Most engagements pull from two or three practice areas.

02 / Same methodology

One chain of custody, all disciplines.

Every service follows the same five-step workflow: secure intake, forensic acquisition, deep analysis, court-ready report, expert testimony. SHA-256 verification at every checkpoint.

03 / Same credentials

Court-validated across every area.

Court-validated across every practice area we offer. controls, facility. Examiners are admitted in Canadian and US courts; reports are written for Rule 702 scrutiny.