In many areas of our lives, we have a plan ready for the worst-case scenario. Why should cyber security be any different? We evaluate your preparedness to respond to cyber attacks with a readiness assessment and, if necessary, create an effective emergency plan tailored to your company. If a successful attack against your company does occur, we are at your side as an incident response team within the shortest possible time. You can have this support guaranteed with an Incident Response Retainer, which ensures that our incident response team is ready for you 24/7 and you are immediately connected with our experts, without going through a hotline.
The Oneconsult International Computer Security Incident Response Team (OCINT-CSIRT) provides expert support for ransomware and hacker attacks. We are available around the clock to assist you with security incidents. We coordinate all involved parties and accompany teams in this challenging situation. No matter if IT/OT team, crisis team, management, or the board of directors.
As a preventative measure, we test your security team’s ability to react with practical and therefore realistic exercise scenarios for various target groups, from the IT team to crisis management exercises with all stakeholders involved. In addition, we train your employees for the emergency case of a cyber security incident. Oneconsult is your “Cyber Fire Brigade”, so that you can get back to your daily business.
Can you respond to cyber attacks around the clock? Discover our Incident Response Retainer (IRR) and secure the competent support of our experts – 24/7, 365 days a year.
How well is your organization prepared for cyber attacks? Discover our Digital Forensics & Incident Response (DFIR) Readiness Assessment to uncover weaknesses and gaps in your processes, documents and tools.
Prepared for an emergency? We develop a customized incident response plan for you based on international standards and your individual requirements.
Can your incident response plan cope with a major incident or even a cyber crisis? Our experts will review it and help you optimize.
What happens if you become the target of a cyber attack? Test your team’s response capabilities in a tabletop exercise or simulation and find out how you can improve them.
Defined processes are crucial for successfully dealing with cyber attacks. Use our detailed Incident Response Playbooks for efficient responses to common and critical incidents.
Do you really know what is going on in your Microsoft 365 and Azure Active Directory? Our Threat Hunting Service reveals previously undetected security incidents and helps to identify suspicious activities at an early stage.
We accompany you before, during and after a cyber incident – so that you can fully protect your company.
After completion of the assignment, you will receive a customized final report, which will contain the following information:
The incident is discussed in a joint lessons-learned meeting (retrospective / post-mortem analysis) in order to identify opportunities for improvement.
In the event of a crisis, Oneconsult International Computer Security Incident Response Team (OCINT-CSIRT) assesses the situation in a joint meeting. Together with you, we define the objective and the necessary immediate measures before initiating the incident response. If this contributes to the efficient management of the situation, Oneconsult employees will also visit you on site. Working closely together, we get the incident under control, develop a strategy, and implement it. At the same time, OCINT-CSIRT specialists carry out an investigation into the incident and provide the information that is essential to successfully manage it. In this way, we ensure that you can return to normalcy as quickly as possible.
The duration of an incident response assignment depends on the type and the extent of the incident. Simple incidents can be resolved within a few hours or days, while more serious incidents can take weeks or even months. Response time and practical experience in dealing with such incidents are particularly important aspects of timely incident resolution. Fast and targeted action is crucial to stop the spread of damage, limit the damage, and resume normal operations as quickly as possible. A well-prepared incident response team as well as clear procedures and defined roles can help to deal with an incident efficiently and shorten the duration.
The duration of the incident response assignment varies depending on the type and scope of the incident. Simpler incidents may be resolved within a few hours or days, while the investigation and recovery may take weeks or even months in more complex cases. However, reaction time is an important aspect of incident response. Quick action is critical to stop the propagation of the damage, contain it, and restore operations as quickly as possible. A well-prepared incident response team as well as clear procedures and defined roles can help shorten the incident response time and manage the incident efficiently.
Don’t miss anything! Subscribe to our free newsletter.
Availability Monday to Friday 8:00 a.m. – 12:00 p.m. and 1:00 p.m. – 5:30 p.m (exception: customers with SLA – please call the 24/7 IRR emergency number).
Private individuals please contact your trusted IT service provider or the local police station.
For more information about our DFIR services here: