Platform Modules

See Strand in action

Explore each module of the Strand platform through short demonstrations. See exactly how each capability works and the value it delivers to your team.

Module 01

Business Email Compromise Investigations

Module 01

The Business Email Compromise Investigations module automates the investigation of suspected email based fraud, account takeover, and identity abuse. It rapidly collects and analyses mailbox, identity, and activity data to determine scope, impact, and attacker behaviour, while producing automated reports suitable for insurers and regulators.

Features

Automated mailbox and identity evidence collection
OAuth and token abuse detection
Mailbox rule and forwarding analysis
One click automated remediation actions
Automated investigation reporting

Benefits

Reduce end to end forensic investigation timelines by 92%
Reduce BEC investigation time from days to minutes
Enable rapid containment through one click remediation
Cut reporting effort by over 95% through automation
Deliver audit ready outputs for insurers and regulators

Module 02

Ransomware Investigations

Module 02

The Ransomware Investigations module orchestrates rapid, large scale forensic investigations following a suspected ransomware incident. It enables responders to identify infection vectors, attacker activity, and blast radius while supporting controlled containment actions and producing automated, audit ready reports.

Features

Offline and online endpoint evidence collection
Lateral movement and root cause analysis
Attack path and persistence identification
Controlled containment action support
Automated ransomware investigation reporting

Benefits

Reduce end to end forensic investigation timelines by 92%
Accelerate ransomware investigations under extreme time pressure
Support rapid and controlled containment decisions
Cut reporting effort by over 95% through automation
Deliver defensible outputs for insurers and legal teams

Module 03

Proactive Device Investigations

Module 03

The Proactive Device Investigations module enables investigation led threat hunting and assurance activities across endpoints without waiting for alerts or incidents. It uses intelligence driven targeting and automated reporting to identify risk early and validate device security posture.

Features

Intelligence led device investigation targeting
Offline capable endpoint evidence collection
Threat hunting and anomaly investigation support
Cross device investigation comparison
Automated investigation reporting

Benefits

Reduce end to end forensic investigation timelines by 92%
Identify threats before they become incidents
Cut reporting effort by over 95% through automation
Support compliance, assurance, and readiness activities
Strengthen endpoint security posture

Ready to see more?

Schedule a personalized demonstration and see how Strand can transform your incident response capabilities.