Featuring Forensic Product Marketing Director Lynne Roossien and Exterro FTK Evangelist Justin Tolman, FTK Over the Air sheds light on the world of digital forensics through conversations with digital forensics experts and practitioners. Together, they’ll discuss topics ranging from new features in the FTK family of products and how to’s for practicing forensics professionals to interesting applications and use cases for digital forensics. Subscribe to FTK Over the Air and stay up-to-date with everything digital forensics!
Justin and Lynne sit down with David Williams from the Microsoft Public Safety & Justice team to take a deeper look into Microsoft Azure cloud solutions and how we're partnering with them (and winning awards) to dramatically improve productivity for first responders and law enforcement agencies, allowing them to solve cases faster and take criminals off the street. David sheds light on Microsoft's goals and motives for transforming the forensic review space, and how partners like Exterro are helping them carry out their vision. It's time to change your outdated perceptions of the cloud and learn why the move to "digital policing in the cloud" is happening faster than you think!Back
Forensic investigations involving CSAM (Child Sexual Abuse Material) and the process of reviewing and categorizing these kinds of explicit images can be emotionally draining. Semantics 21 realized they could help! They used AI technology to build a better tool for CSAM investigators to protect their mental health while reviewing and categorizing evidence. Justin sits down with Tom Oldroyd at Semantics 21 to uncover the remarkable way they've reshaped the CSAM workflow, and how they work with CAID UK, Project Vic, FTK, and a few sources that might surprise you!Back
Episode 15: Creating the Next Generation of Digital Forensics Experts
With over 700K open cybersecurity jobs in the US alone, how do we train the next generation of forensics professionals to take the reins? Recorded live at the HTCIA conference in Atlantic City, NJ, Justin Tolman sits down with some special guests who are just beginning or advancing their DFIR journeys. See the world of digital forensics through the eyes of four cybersecurity students and their professor, Glenn Goe, at Stark State College in Canton, Ohio. Interested in connecting with Glenn about his forensics curriculum? Email him at GGoe@starkstate.edu
Ep. 14: DFIR Life after Law Enforcement
In this week's episode, Justin sits down with Dan Sumpter of Exterro, Chris DeLeon of Texas Central Bank, and Amanda Fields of Blue Cross Blue Shield, to talk about making the transition to digital forensics careers after working in law enforcement. With over 50 years of law enforcement experience combined, this group discusses the strengths from their public sector careers that gave them an advantage when transitioning into private DFIR investigations. They dive into team dynamics, data acquisition, remote work, zero trust obligations, and even reporting.Back
Ep: 13: Going Beyond the Button with Brett Shavers
If you follow Justin’s forensic content on YouTube, then you know how he insists on having a broader understanding of digital forensics than just how a forensic tool works. This week’s guest is a big supporter of that mentality! Justin and Lynne talk with Brett Shavers of DFIR Training about the advantages of learning digital forensics at a deeper level, and his art of "Placing the Suspect Behind the Keyboard." Hear how Brett has used digital forensics technology to solve murders, investigate cybercrime, and write a few books about it. Plus get a sneak peek into Brett's upcoming book (spoiler: it involves government corruption, planted evidence and political prisoners!)Back
Ep. 12: Police Investigations move to the Cloud
This week Justin and Lynne talk with John Price of the West Midlands Police in the UK. John has pioneered the first cloud-based digital forensics platform powered by FTK Central in Microsoft Azure. With nearly 7,000 officers able to work cases remotely and upload evidence directly to the cloud, criminal forensic investigation tasks that previously took days to complete are now almost instantaneous. Hear how John has paved the way for law enforcement agencies to collaborate to clear case backlogs and secure faster convictions, bringing closure to victims and their families.Back
Ep. 11: What is 'Digital Sandwiching'?
In this week’s episode we sit down with Gus Dimitrelos of CyberForensics.com. Gus is a long-time investigator both in the public sector and of course private. We spoke with Gus about putting a person behind the keyboard during an investigation. The technique of “Digital Sandwiching” is very important for building the best narrative of user behavior and user identification.We chat about some of the FTK features that have helped Gus in recent high-profile cases such as enhanced Mac artifact parsing, System Summary, and FTK’s powerful filtering capabilities.Back
Ep. 10: Off-Network Collection and Preview
In this episode, Justin and Lynne talk about FTK Enterprise and Off-Network Collection and Preview. Even when your resources are not connected to your company network using the VPN it is still important for compliance with Zero Trust and the CISA Incident Response Playbook to be able to react and mitigate risks to those endpoints. FTK Enterprise has been able to access, collect, and remediate off-network devices for a while, but version 7.6 is adding Off-Network preview, allowing IT professionals to determine the scope of an incident even on weak internet.Back
Ep. 9: Internet Crimes Against Children Conference
The Internet Crimes Against Children (ICAC) is an organization of law enforcement officers from all over the United States working to catch online predators and protect our children. We sit down at the Atlanta ICAC conference with Detective and ICAC Affiliate Matthew Wharton of the Sweetwater County Sheriff's Department in Wyoming and discuss his experience with ICAC and how he got started working with ICAC. We close out by talking mental health for investigators and how examiners and departments can best take care of those working these types of cases.Back
Ep. 8: Network Breach - The 'Everyday Person' Perspective is complete
This week we get a look at a network breach from the perspective of a “non-IT” person. Cristie Nickel is an Event Marketing Manager here at Exterro. She is new addition to our team here, but she came from a healthcare provider who experienced a serious breach during the Covid Pandemic. She walks through how the hospital coped with the dangerous consequences of the breach, and how it was “all hands on deck” for months on end before things return to normal. This is a great episode from a different perspective on breaches.Back
Ep. 7: The NEW Exterro Academy
The podcast features Sarah Hargreaves, VP of Exterro Global Training, who is based in the UK. Sarah is joined by Dan Sumpter, a Senior Trainer at Exterro, and resident expert on how to testify in court as a digital forensics examiner.
We talk with Sarah about why taking FTK training is absolutely critical for forensic professionals, and the tangible effects that training can have on your investigation. Sarah also talks about how forensic labs can use FTK technology to update and maintain their ISO Accreditation status. Listen to the episode to find out something unexpected that happened to Dan after teaching a class.Back
Ep. 6: FTK and Zero Trust Collections
Harsh Behl, Director of Product Management here at Exterro sits down with Justin and Lynne to discuss FTK’s capabilities within Zero Trust Environments. FTK offers both on and off network collections and is in full compliance with Zero Trust providers and frameworks. We also discuss how FTK Connect can help in automating breach response and collection in Zero Trust environments.
Ep. 5: Comparing Law Enforcement and Service Provider Investigations
This week, Justin sits down with Allan Buxton, Senior Forensic Consultant at Epiq, and discusses the differences between law enforcement and service provider investigations. Allan spent 15 years as a Computer Forensic Specialist at the Ohio Bureau of Criminal Investigations and now works as a consultant at Epiq. We talk about differences between investigation types and how to successfully navigate the challenges related to the transition to the private sector.Back
Ep. 4: DSU - Educating the Next Generation of Forensic & Cybersecurity Professionals
In this episode, Justin speaks with Dr. Ashley Podhradsky, Vice President of Research and Economic Development at Dakota State University. Dr. Podhradsky talks about using the FTK Academic Program and how it served as a springboard to expanding into a full-size lab that serves the state of South Dakota, while also benefiting student learning.
Guest & Bio:
Dr. Ashley Podhradsky is the vice president of research and economic development at Dakota State University. She is also a member of the Board of Directors for First Bank and Trust. Her research has been published in the Journal of Digital Forensics, Security and Law, Journal of Cyber Security, America’s Conference on Information Systems, Hawaii’s International Conference on Systems Science, among others. She has given invited keynotes at several events including the Department of Justice, Google, Penn State, UC Berkeley, among other national, regional and state organizations.
Ashley co-founded CybHER, an effort to increase diversity in cybersecurity. To support the efforts of CybHER, she received grants from the National Science Foundation, National Security Agency, American Association of University Women, and National Center for Women and Information Technology. One notable area of CybHER is the GenCyber Girls in CybHER Security camp, which Ashley is the camp director. Ashley volunteers her time for national and international events such as the IEEE Symposium of Security and Privacy, Women in CyberSecurity (WiCyS), and Advances in Security Education (USENIX). Her work was recognized by the EmBe organization when she was selected as the 2017 Young Women of Achievement. Podhradsky is a fellow for New America, a nonpartisan think-tank out of D.C.
Podhradsky received her doctoral degree from Dakota State University where her research focused on cybersecurity models for financial institutions. During her doctoral studies, she was honored with the Anita Borg scholarship from Google. She holds a bachelor's degree in eCommerce and computer security and a master’s degree in information systemsBack
Ep. 3: The Importance of Investigator Mental Health
In this episode of FTK Over the Air, we are excited to have Cindy Kuhr from the Ohio Attorney General’s Bureau of Criminal Investigation with us. Cindy serves as a Victim Specialist/Consultant and provides her services statewide. Cindy has a lifetime of experience dealing with victims and investigators and provides valuable insight into the wellbeing of those who experience trauma. Cindy discusses the different stresses digital investigators face and how to identify and cope with those stresses in a healthy way.
Guest & Bio: Cindy Kuhr, L.S.W., M. Ed, R.A.S.S., C.C.R
Cindy Kuhr serves as Victim Specialist/Consultant for The Ohio Attorney General’s Ohio Bureau of Criminal Investigation. She provides services statewide to jurisdictions where additional or neutral services are needed. She is the former director of Direct Services for the Ohio Victim Witness Association. In 2002, this program received the Tadini Baglaccuci Award. This award is a national award presented by the National Organization for Victim Assistance to programs of excellence and promising practices. She is also the recipient of the 2008 Dr. Marlene Young- Leadership award. She is a recent recipient of the Models of Justice Victim Advocacy Leadership Award for 2020 presented by The Ohio Crime Victim Justice Center.Back
Ep. 2: Post Breach Response with FTK Enterprise
In this episode of FTK Over the Air, we chat with Tom Vieth, one of Exterro’s Technical Engineers based out of the United Kingdom. We take a look at the powerful options FTK Enterprise users have when working with Powershell and our agents in Post Breach investigations. We also talk about the power of automation and the options users have when working with FTK Connect and FTK Enterprise.Back
Ep. 1: Introduction to FTK
Welcome to FTK Over the Air! This is episode 1 where Lynne Roossien and Justin Tolman discuss the many new features that have been released in the last year or two, as well as giving an update on the acquisition of AccessData by Exterro a year ago. (Spoiler alert, it has been great). FTK is being updated with new features like never before! We welcome you to this new podcast and look forward to many more episodes with you all.Back