Incident Response & Digital Forensics
Any stage of the incident-response cycle: triage, containment, forensic investigation, and a formal report you can hand to management, insurers, or regulators. Deep experience with Microsoft 365 forensics.
Whether something has already happened or you want to make sure it never does, hodsec brings hands-on investigation experience and plain-language guidance to your business.
You speak directly with the consultant who does the work. No ticket queue, no sales layer.
From the first hour of an incident to the long work of building resilient systems.
Any stage of the incident-response cycle: triage, containment, forensic investigation, and a formal report you can hand to management, insurers, or regulators. Deep experience with Microsoft 365 forensics.
Application and infrastructure testing that looks for what an attacker would actually use, explained in terms your team can act on, with retesting once fixes are in.
Lectures, workshops, and multi-day courses for technical teams and for executives who need to understand cyber risk without the jargon. Delivered in Hebrew or English, or built for your internal team to run.
Design, build, and secure AI agents and automation workflows, including platforms like n8n and Make, so they deliver value without opening a new door into your business.
If your product is being written with AI coding tools, this is a secure-SDLC practice built for that reality: guardrails, review, and testing that keep speed without inheriting avoidable risk.
Security work is stressful enough. The engagement itself should not be.
A short conversation to understand what happened, what you are worried about, and what a good outcome looks like for your business.
If there is an active incident, the priority is containment and preserving evidence. If there is not, we agree on scope, timeline, and cost before any work starts.
Methodical, evidence-based work with regular plain-language updates, so you always know where things stand.
Every engagement ends with practical recommendations you can actually implement, prioritised by impact, not by fear.
Owners and managers who need a trusted, senior point of contact rather than a large vendor.
Fast-moving teams that want security to keep pace with development, including AI-assisted development.
Compliance mapping and application reviews under Israeli privacy and financial-advisory regulation.
Awareness sessions that turn cyber risk into decisions leadership can actually make.
hodsec is the independent practice of Hod Felber, a cybersecurity consultant specialising in digital forensics and incident response. After several years in salaried security roles, Hod moved to independent practice to work directly with the businesses he serves.
His work spans hands-on investigations of real intrusions, penetration testing, secure-development consulting, and training. He is equally at home explaining an attack chain to an engineering team and translating it into business terms for a board.
Hod works solo by default and brings in trusted specialist freelancers when an engagement needs them, so you always know exactly who is doing the work.
Email with a short description of what you are seeing. Do not reset passwords, wipe machines, or delete anything until we have spoken; those steps can destroy evidence.
Tell us a little about your situation. You will get a reply from Hod personally.