Forensic Data Services

Forensic Data Services provide essential capabilities for digital investigations and incident response. Our services allow you to create backups with forensic data. These backups include additional pieces of digital evidence that are not typically part of regular disk backups. Forensic backups are automatically notarized, ensuring their integrity and authenticity. The following components are collected during a forensic backup process:

  • Snapshots of Unused Disk Space: These snapshots capture areas of the disk that are typically unallocated or unused. They may contain remnants of deleted files or other valuable information.
  • Memory Dumps: A raw memory dump is taken, which can be crucial for analyzing system state during an incident.
  • Snapshots of Running Processes: These provide insight into the active processes at the time of the backup.