← All services

Incident Response

ITgalya's incident response service goes into action when an incident surfaces. We identify the source of the attack, contain the threat, and carry out forensic analysis — collecting and preserving evidence, examining memory, files and logs — to establish exactly what happened and what was affected. From there we clean the systems, restore business operations, and provide root-cause analysis and recommendations that stop it recurring. The extent of availability and the response levels are set in the service agreement with each client.

What the service includes

  • Availability and contact route agreed in advance
  • Threat identification and containment
  • Forensic analysis and evidence collection
  • Cleanup, restoration and root-cause analysis

The service is supported by automation and by tooling built in house, intended to improve the quality of an investigation and the time it takes to respond.

// next step

Not sure what the right next step is?

Use the short assessment to identify the areas worth reviewing, or tell us what changed and we will start from there.

Do not send passwords, credentials, API keys, logs or sensitive incident material through the web form.