About

Twenty years. Zero re-breaches.

A specialist DFIR firm built by senior practitioners who have spent two decades on the front line of incident response.

Our story

Built by people who had to do it right.

The leadership at Makkari has spent over twenty years leading and developing offensive and defensive teams across the UK and EU, on front-line ransomware engagements, state-aligned intrusions, and multi-national panel investigations.

We founded Makkari to deliver the standard every organisation deserves: a real answer, a real eviction, a real hardening plan. Not a boilerplate report, not a single-tool verdict, not a recommendation written to protect the firm's reputation.

Operating principle

We are specialists in DFIR. For everything beyond it, we work with named, vetted partners and stay on the engagement as your single point of contact.

By the numbers

Depth you can measure.

20yr
Combined IR
front-line experience
0
Re-breaches
across that record
5yr
In-house forensic
engine, field-built
24/7
Senior-led
IR hotline
Principles

What we commit to.

Four lines we hold without exception.

Multi-source verification

Every critical finding is reproduced through an independent method. EDR, disk, memory and cloud logs are reconciled until they tell the same story.

AI assists. Humans sign.

The Makkari Forensics Engine is automation, not language modelling. Every conclusion is grounded in raw artefact, including the memory dump.

Initial foothold, proven

The single most important output of an IR engagement. We name the entry vector, the timeline, and the artefact that proves both.

Senior on the keyboard

The practitioner who scopes the engagement is the practitioner who works it, from first call to final report. Continuous senior ownership, end to end.

Talk to the team

The person who runs the intro is the person who runs the investigation.

Senior practitioners only. From the first call through to the final report.