Conducting Efficient Insider Threat Investigations using KAPE

September 24, 2020 | (Online)
Webcast , Countries

Insider threat investigations involve collecting and analyzing tremendous amounts of data, which can require considerable time and effort. Knowing what forensic data is relevant to your case and where to uncover these artifacts can save a substantial amount of time during your collection and analysis. The Kroll Artifact Parser and Extractor (KAPE) has assisted investigators in solving insider threats faster than ever before due to its ability to process forensic artifacts within minutes.

Join our resident experts, Anthony Knutson and Aaron Read, as they discuss the ways they use KAPE during insider threat investigations, its efficiencies for their teams, and how it’s changing the landscape of forensic analysis.

Schedule: 1:00 p.m. (EDT)

Watch the on-demand Webinar Now.

Key Takeaways

  • Collect only forensic artifacts relevant to your case
  • Automate the collections for non-technical users
  • Learn how to tailor a forensically-sound tool to your needs to expedite investigations
  • Understand key areas to examine in an investigation to maximize your time


  • Anthony Knutson, Senior Vice President, Cyber Risk 
  • Aaron Read, Senior Vice President, Cyber Risk

Kroll Artifact Parser And Extractor (KAPE)

Find, collect and process forensically useful artifacts in minutes.


Proactively monitor, detect and respond to threats virtually anywhere – on endpoints and throughout the surface, deep and dark web.

Cyber Risk

Incident response, digital forensics, breach notification, managed detection services, penetration testing, cyber assessments and advisory.

24x7 Incident Response

Kroll is the largest global IR provider with experienced responders who can handle the entire security incident lifecycle.