Tom Cooley, President, Versatalis Payment Solutions
We've been extremely happy with the high level of support, simplicity and follow through from SecurityMetrics.
Find out how to recover from a data breach
To minimize breach impact and maintain your reputation, SecurityMetrics PCI Forensic Investigators (PFI) work with merchants, healthcare providers, and legal entities in confidence to help organizations quickly recover from compromise.
Here are the typical actions a forensic investigator would take:
Preliminary research: Forensic investigations begin with some research on the company. The PFI needs to “scope” out the merchant’s environment, finding out where critical data resides, the systems that connect to it, and how the data flows in and out of the network.
Onsite data gathering: The forensics team then goes onsite and gathers data from identified devices.
Analysis: The investigation team brings the data back to their headquarters and analyzes it thoroughly to confirm whether a data breach actually occurred, determine what data the attacker was able to steal, and discover which vulnerabilities were exploited in the breach.
Reports: About a week after the initial data acquisition, the investigator will issue a short preliminary report that shows whether or not they’ve discovered any indicators of compromise or other overt evidence of a data compromise. After the forensic data has been fully analyzed, the investigator will submit a complete final report that includes how the attack happened, which vulnerabilities were exploited, and what data was at risk.
Forensic investigations can be costly. However, remember that the investigation involves one or more PFI’s examining a mountain of data.
The cost will depend on the size of your organization; the larger your organization, the more data you likely have that will need to be examined.
An incident response plan is a documented, written plan with 6 distinct phases that helps IT professionals and staff recognize and deal with a cybersecurity incident like a data breach or cyber attack. Properly creating and managing an incident response plan involves regular updates and training.
A well-executed incident response plan can minimize breach impact, reduce fines, decrease negative press, and help you get back to normal operations more quickly.
Here's a helpful blog that goes over the six phases of incident response.
SecurityMetrics' Forensic Investigators have years of experience and expert tools that provide a fast recovery solution. Our investigators work with you in confidence to identify all exposure points and provide necessary education to achieve a full recovery.
After discovering the cause of breach, SecurityMetrics' Forensic Investigators immediately advise how to patch breach points. Time is taken to ensure you understand your responsibility so you can continue to run your business without continuing to leak data.
The only way to reduce the likelihood of future compromise is to implement data security best practices, including complying with PCI Data Security Standard (DSS) compliance, HIPAA compliance, and other compliance mandates. SecurityMetrics' Forensic Investigators provide best practice recommendations for HIPAA compliance, PCI validation, and other security mandates to help you maintain a secure environment.
SecurityMetrics' Forensic Investigators have years of experience and expert tools that provide a fast recovery solution. Our investigators work with you in confidence to identify all exposure points and provide necessary education to achieve a full recovery. Request a quote by filling out the form.
Forensic Investigations Data Sheet
How to Effectively Manage a Data Breach White Paper
Window of Compromise White Paper
SecurityMetrics Guide to PCI Compliance