HCC EvidenceOps
Version 1.2
HCC EvidenceOps is an enterprise-grade incident response and forensic evidence collection platform for Windows, Linux, and macOS, with signed licensing, chain-of-custody packaging, multi-tenant fleet orchestration, and alert-driven triage workflows.
HCC EvidenceOps is an enterprise-grade incident response and forensic evidence collection platform built for security teams that need defensible, repeatable, and operationally scalable evidence capture. It collects high-value forensic artifacts from Windows, Linux, and macOS endpoints, preserves integrity with SHA-256 hashing and append-only chain-of-custody records, and packages results for downstream investigation, legal review, and long-term retention.
The platform supports both individual host acquisition and coordinated fleet operations. Security teams can execute local collections, issue signed licenses online or offline, validate update metadata, and manage enterprise deployments across distributed endpoints. The control plane provides multi-tenant organization and workspace separation, RBAC-scoped access, agent orchestration, detector event ingestion, alert triage, incident views, timeline drill-down, and operational dashboards for analyst workflows.
HCC EvidenceOps is designed for organizations that need more than a basic artifact collector. It delivers enterprise controls around integrity, packaging, licensing, fleet visibility, auditability, and release governance, making it suitable for internal security operations, incident response teams, regulated environments, MSSP-style tenant separation, and commercial distribution through managed licensing and update channels.
Hosted file: hcc-evidenceops-1.2.0-multi-os-installer-kit.zip
MD5: beda2300e81d20688c48b9a3dc2dc11e