★ Knowledge assessment  ·  5 questions  ·  Test your DFIR & PQC IQ

investgao cyber  ·  DFIR + PQC knowledge portal  ·  Built by Giles Otomewo

Respond Today. Secure Tomorrow.

Consultant-grade answers on digital forensics, incident response, and post-quantum cryptography.

Powered by 25+ years of frontline DFIR experience across the UK, EMEA and the Americas.

Answers can be copied, shared & printed as PDF
// Trending
0Years in DFIR & cyber security,
incl. expert witness testimony
0Regions of casework: UK, EMEA,
North America & Latin America
0Core topics
available to explore — free
// Explore

Pick a topic

Click any topic to instantly populate your question, or type your own.

// Common use cases

// Incident response

// Post-quantum cryptography

// Forensics topics

// Quantum readiness

The quantum clock is already running

Attackers can steal encrypted data today and decrypt it once a large enough quantum computer exists. That's "harvest now, decrypt later". For incident responders, every exfiltration involving long-lived secrets is now a future disclosure risk too.

Aug 2024NIST publishes the first PQC standards: FIPS 203 (ML-KEM), FIPS 204 (ML-DSA) and FIPS 205 (SLH-DSA).
Mar 2025NIST selects HQC as a backup key-encapsulation algorithm.
2030NIST's draft transition plan (IR 8547) begins deprecating quantum-vulnerable RSA and elliptic-curve algorithms.
2035Proposed date for disallowing them entirely, and the US federal goal for completing migration.
01 · Discover

Cryptographic inventory

Find where RSA, ECC and Diffie-Hellman live: TLS, VPNs, code signing, PKI, backups, vendor products. Build a CBOM you can keep current.

02 · Prioritize

Quantum risk assessment

Rank systems by how long their data must stay secret and how hard they are to change. Long-lived secrets and slow-to-replace systems go first.

03 · Migrate

Hybrid, crypto-agile rollout

Adopt ML-KEM and ML-DSA, often in hybrid mode alongside classical algorithms, and design systems so algorithms can be swapped without re-architecture.

04 · Respond

PQC-aware incident response

Update IR playbooks: treat exfiltrated encrypted data as a future exposure, rotate keys with quantum-safe replacements, and log crypto posture.

05 · Preserve

Quantum-safe evidence

SHA-256 evidence hashes remain sound. Digital signatures on long-lived reports and evidence packages should plan a move to post-quantum signatures.

06 · Govern

Roadmap & board reporting

Turn the timelines into budget, vendor requirements and milestones leadership can track, before regulators and customers ask.

// Who it's for

Built for the people who need answers

// Security leaders

CISOs & Security Teams

Incident response planning, breach investigation, and a practical post-quantum migration roadmap: cryptographic inventory, risk ranking, and vendor questions.

// Responders

DFIR & Investigators

Ransomware and BEC response, memory and log forensics, cloud and mobile evidence, and preserving digital evidence in the field.

// Counsel

Attorneys & Compliance

Plain-language answers on legal holds, chain of custody, breach notification considerations, expert witnesses, and emerging quantum-readiness obligations.

// Recently asked

Questions people are asking

The kinds of questions security leaders, responders, and counsel ask. Click any to explore the answer.

// Connect

Speaking Engagements & Media Inquiries

Giles Otomewo is available for DFIR and post-quantum readiness engagements, speaking, keynotes, podcast appearances, and media & news support. To inquire, reach out directly.

⚠ Do not submit confidential case details, client names, or sensitive information. This is an informational tool.

Are you an individual affected by cybercrime? The Cyber Helpline offers free, expert help.

⌕
SleuthYOUR DFIR & PQC GUIDE

Hi, I'm Sleuth, your guide here. Got a question about digital forensics, incident response, or post-quantum cryptography? Ask away and I'll point you in the right direction. Free, any time, but always verify.