Digital Forensics

Deploy360 provides expert-level digital forensics and technical exploitation
support to Special Operations Forces and joint commands. Our personnel operate
in both CONUS laboratory environments and forward-deployed OCONUS
locations, including high-risk, austere settings across Africa and Southwest Asia.
We bring a rare combination of deep forensics expertise and software
engineering capability to every engagement, enabling both hands-on exploitation
and the custom tooling that makes exploitation operations more effective at scale.

WHAT WE DELIVER
Document and Media Exploitation (DOMEX)

We provide expert DOMEX support to SOF commands, processing and exploiting
physical and digital documents captured in operational environments. Our
examiners are experienced in high-pressure, time-sensitive exploitation
workflows and have worked directly with joint DOMEX operations groups on
both CONUS and OCONUS assignments.

Cellular Phone Exploitation (CELLEX)

Our forensics personnel specialize in advanced cellular device exploitation,
including access to locked, damaged, and wiped devices. CELLEX work performed
for the SOCOM J2 Identity Intelligence Operations (I2O) Joint DOMEX Operations

Group has included:

  • In-System Process (ISP) services for devices submitted to the lab for
    exploitation
  • Hardware RAID reconstruction and full data recovery
  • Software Linux RAID reconstruction for data access and analysis
  • Access to locked smartphones that had resisted exploitation by other
    agencies for extended periods
  • Data recovery and carving from apparently wiped device images, including
    reconstruction of Arabic-language contact lists from machine-level
    hexadecimal code
  • Repair and data extraction from water-damaged devices
  • Flasherbox training for other examiners in lab and deployed settings
  • Remote on-call support for forward-deployed examiners using Enabler kits
Digital Forensics Training

Our personnel have trained fellow examiners in advanced cell phone forensic
techniques in both lab and deployed environments. Training has been delivered
in-theater to examiners carrying Enabler kits, and our team has provided
capability briefings to JEDIC at Fort Liberty/JSOC. We deploy experienced
forensics professionals who can both perform the mission and build partner
capacity on-site.

Intelligence Collection and Analysis

We support intelligence collection and analysis operations in coordination with
SOF and joint commands. Our personnel have operated alongside coalition forces
to synchronize intelligence activities, providing real-time forensic analysis that
directly supported mission-critical decision-making in field operations across the
AFRICOM area of responsibility.

OCONUS Forensics Support and Training

We deploy personnel to forward operating sites in austere, high-risk OCONUS
environments. Under the SOCOM I2O contract, Deploy360 deployed full-time
forensic examiners to Niger, Mali, and Burkina Faso, operating in dynamic
conditions that required rapid decision-making and technical adaptability while
coordinating closely with coalition forces and adhering to SOCOM deployment
protocols. Our company is registered with the Department of State Directorate of
Defense Trade Controls (DDTC) for ITAR-controlled activities in support of this
type of work.

UNIQUE DIFFERENTIATOR: SOFTWARE ENGINEERING PLUS FORENSICS

Most forensics contractors bring examiners. Deploy360 brings examiners and
engineers.

Under the SOCOM I2O effort, our software engineers worked alongside forensic
examiners and the prime’s development team to build custom exploitation
applications for the Joint DOMEX Operations Group (JDOG). Applications
delivered include:

  • SOFEX Upload Document Application
  • SOFEX Redirector and Website Program Opener
  • Golden Retriever Web Application
  • DT3 and DT Search Cross-Correlation Application

These tools were built in C# using .NET Framework and .NET Core, with HTML,
XML, and JSON interfaces and Microsoft SQL Server and Oracle database back-
ends. This combination of on-the-ground exploitation capability and purpose-
built software development is a capability gap that most companies in this space
cannot close.

PROVEN IN THE FIELD

SOCOM J2 / Identity Intelligence Operations (I2O) Tampa, FL and AFRICOM
(Mali, Niger, Burkina Faso)

Deploy360 provided cleared cyber experts, senior software engineers, and
forward-deployed forensic examiners to the SOCOM J2 Directorate’s Technical
Exploitation mission. Personnel delivered real-time intelligence exploitation
across Africa and CONUS laboratory environments in Tampa, enabling identity
operations critical to SOF targeting and decision-making.

Forensics work performed included recovering intelligence from devices deemed
inaccessible by other agencies, accessing high-value smartphones and storage
media under time pressure, enabling forward-deployed teams through remote
Enabler kit support, and reconstructing a wiped Arabic-language contact list from
a machine-level device image. Software engineers concurrently developed
custom exploitation applications for the Joint DOMEX Operations Group,
including the SOFEX Upload Document Application, Golden Retriever Web
Application, and DT3 and DT Search Cross-Correlation Application. Deploy360
consistently met or exceeded performance expectations throughout the period of
performance.

DOMAIN EXPERTISE

Our digital forensics personnel bring deep knowledge across:

  • Digital Forensics and Data Recovery
  • Document and Media Exploitation (DOMEX)
  • Cellular Exploitation (CELLEX)
  • Cyber Intelligence and Technical Exploitation (TECHEX)
  • Reverse Engineering and Low-Level Device Access
  • Software Engineering in Support of Exploitation Operations

RELEVANT NAICS CODES
541519 | 541690 | 561110

Need cleared forensics experts who can deploy and deliver?