SkjoldCyber

What we do when money or access is lost

Five kinds of work. When you report a case, we decide with you which ones it needs.

Fraud investigation and loss tracing

Money that leaves your account moves through other accounts, and every hop leaves a record. We work from your bank statements, messages and payment details to rebuild where it went.

What we do
We rebuild the sequence from your documents, identify the accounts and services the money passed through, and write down what is known and what is not.
What you get
A written account of the trail, the evidence each step rests on, and a plain statement of what is still unknown.

Incident response for hacks, ransomware and account takeover

When someone else is inside an account or a system, the order of the first steps matters. We help you take control back and stop it spreading.

What we do
We go through the affected accounts and devices with you: lock the intruder out, reset access from a clean device, and check what was changed, forwarded or taken.
What you get
A short list of what was affected, what was changed, and what to watch for in the weeks after.

Payment and invoice fraud response for businesses

An invoice with a changed bank account. A transfer approved because the request looked like it came from the manager. With payments, the first hours with the bank are what count.

What we do
We prepare the facts your bank will ask for, in the order it asks for them, and the recall request, so the call to your bank is short and complete.
What you get
A recall request ready to send, a timeline of the payment, and a list of who else should be told, such as your insurer, the police and your accountant.

Evidence and reporting packs

Police, banks, insurers and Datatilsynet each want the facts in a different shape. A pile of screenshots slows all of them down.

What we do
We arrange your messages, statements and receipts into a dated, indexed record, and write the summary each recipient asks for.
What you get
One pack for each recipient: a police report, a bank dispute, an insurance claim, or a breach notification when personal data is involved.

A personal data breach must in most cases be notified to Datatilsynet within 72 hours of becoming aware of it.

Prevention and readiness for small businesses

The day a payment goes wrong is a bad day to decide who calls the bank. A short plan, agreed in advance, removes the guesswork.

What we do
We write playbooks for the incidents that fit your business, set up a payment verification routine, such as a call-back whenever bank details change, and train the people who handle money and email.
What you get
A one-page playbook for each incident type, a payment checklist, and a training session for your team.

Not sure which one fits?

You do not have to choose. Describe what happened and we will work out which kind of help it needs.

Report a case