RSA Risk Management & Investigations, PLLC

RSA Risk Management & Investigations, PLLC RSA Risk Management & Investigations PLLC (RSA) is a forensic accounting, litigation support, eDisco

01/28/2026

ReZolveX is offering a limited-time, limited-availability opportunity: a 12-month complimentary subscription to our 24/7 anonymous Ethics & Compliance Hotline.

ReZolveX is built for business leaders who want early detection and a defensible response process—before issues escalate into disruption, turnover, regulatory exposure, or litigation.

✅ Anonymous reporting (web portal + iPhone & Android apps)
✅ Immediate routing to the right people—HR, General Counsel, Compliance, outside counsel, or other designated stakeholders (as your organization directs)
✅ Coverage for whistleblower complaints, waste/fraud/abuse, harassment, discrimination, and Title VII / Title IX concerns

If you’re a business owner, executive, HR leader, attorney, CFO/controller, or healthcare professional—and you’d like to explore whether your organization qualifies for the complimentary 12-month offering—please reach out:
📩 [email protected]
or [email protected]

05/23/2025

Virtual Real Estate and Hidden Wealth: How High-Value Digital Assets Are Shaping Marital Asset Dissipation Investigations

In the rapidly evolving digital economy, some of the most valuable—and most overlooked—assets in marital law cases aren’t tucked away in offshore accounts or shell corporations. They’re found in virtual worlds.

From fully operational virtual nightclubs in Entropia Universe to digital land parcels in blockchain-based metaverses, virtual real estate has emerged as a legitimate asset class with real-world financial implications. For divorce attorneys and forensic accountants, recognizing the value—and vulnerability—of these digital holdings is critical. In cases involving asset dissipation, the discovery and proper valuation of virtual assets can result in hundreds of thousands, if not millions, of dollars being restored to the marital estate.

The Rise of Virtual Real Estate
A landmark example of the financial power of virtual real estate is the now-legendary purchase of "Club Neverdie" in Entropia Universe. In 2005, entrepreneur Jon Jacobs purchased the virtual asteroid property for $100,000—at the time, an unprecedented figure for a virtual asset. The virtual space was not just a digital monument but an income-generating nightclub within the game, where players paid real money to access content and services. Over the years, Jacobs reportedly earned significant returns on his investment, eventually selling parts of the property for over $600,000.

This transaction shattered preconceived notions about the intangible nature of digital assets. It proved that virtual holdings—whether in the form of land, entertainment venues, or high-traffic digital billboards—can produce real, measurable income and retain or increase in value over time. In today’s terms, these assets can function much like traditional real estate, investment portfolios, or business holdings.

A New Frontier for Marital Asset Dissipation
In divorce litigation, especially in high-net-worth and contentious dissolutions, parties often attempt to obscure wealth through unconventional means. While attorneys and financial professionals are well-versed in tracking offshore accounts, retirement portfolios, and cryptocurrency wallets, virtual real estate remains an under-explored avenue of hidden wealth. This is particularly concerning given how easily funds can be transferred to these platforms and how quietly value can accumulate or be transferred.

Spouses looking to shield assets may purchase digital properties in games like Entropia Universe, Second Life, or The Sandbox, knowing these environments rarely come under scrutiny unless specialists are involved. These properties can yield steady income through in-game purchases, rentals, advertising, or content licensing. A $50,000 property investment in a virtual economy might be generating thousands in monthly income, unbeknownst to the other party or the court.

The Role of Forensic Accounting and Specialized Investigation
This is where the experience and precision of RSA Risk Management & Investigations, PLLC (RSA) becomes indispensable. The RSA team is uniquely comprised of retired Special Agents from elite federal agencies—including the U.S. Secret Service, Internal Revenue Service Criminal Investigation Division, and the Office of Inspector General. With decades of experience investigating financial fraud, cybercrime, and money laundering, RSA’s team brings the tools, training, and tenacity needed to uncover virtual asset holdings hidden within increasingly complex digital ecosystems.

In a typical dissipation investigation, RSA’s forensic accountants employ advanced techniques such as digital payment tracing, platform-specific financial analysis, metadata recovery, and subpoenas to gaming companies or virtual real estate exchanges. They follow the digital money trail through platforms like PayPal, Skrill, or obscure game-specific marketplaces. When a spouse converts large sums of cash into in-game currency or purchases digital land through fiat-to-crypto exchanges, those transactions leave a trace—and RSA knows where to look.

Furthermore, RSA doesn’t stop at discovery. Valuation is equally critical. The team draws on market-based comparative analysis, digital traffic metrics, and revenue modeling to assign fair-market values to virtual properties, just as one might for a rental property or business asset in the physical world.

A Call for Diligence in Family Law
Family law practitioners must begin asking the right questions: Is the client’s spouse an avid gamer? Are there unexplained transfers to gaming platforms? Has there been a sudden shift in financial transparency during the separation? In an age where a digital nightclub on a virtual asteroid can sell for more than a luxury home in Chicago, the answer may no longer lie in bank statements alone.

Equitable distribution depends on full financial disclosure. Virtual assets, though intangible, carry very real value. By partnering with a highly specialized team like RSA Risk Management & Investigations, attorneys gain access to the forensic expertise necessary to identify, trace, and quantify digital wealth—and ensure it is rightfully included in the marital estate.

In today’s digital age, overlooking virtual real estate in a marital asset investigation isn’t just a missed opportunity—it’s a costly mistake. With the right forensic team, hidden assets don’t stay hidden for long.

05/08/2025

Welcome to RSA Risk Management & Investigations, PLLC

At RSA, we do more than provide services—we deliver solutions grounded in decades of federal law enforcement, forensic accounting, and enterprise security risk management (ESRM) expertise.

RSA is a unique firm serving the legal, corporate, and government sectors through a comprehensive suite of services including:

Litigation Support & Forensic Accounting

Fraud & Financial Investigations

Physical & Enterprise Security Risk Assessments

Active Shooter & Workplace Violence Prevention Training

What sets us apart?

Our team is composed of retired special agents and highly-credentialed professionals with field-tested experience from elite agencies such as the U.S. Secret Service, U.S. General Services Administration Office of Inspector General, IRS Criminal Investigations, Homeland Security Investigations, DOJ-OIG, and many more. We blend cutting-edge technology, in-depth research, and investigative precision to uncover financial fraud, identify organizational vulnerabilities, and enhance operational resilience.

Whether conducting a fraud examination, providing expert witness testimony, or designing a tailored security training program, RSA delivers the highest level of professionalism, integrity, and insight.

Our credentials include:
✅ Certified Fraud Examiner (CFE)
✅ Master Analyst in Fincial Forensics (MAFF)
✅ Certified Anti-Money Laundering Specialist (CAMS)
✅ Physical Security Professional (PSP)

We’re proud to be a trusted partner in forensic accounting, corporate financial investigations, risk mitigation, regulatory compliance, and investigative strategy.

📞 Reach out to learn how RSA can support your organization’s security and investigative needs.

Please join me on September 26, for a CPE, CLE*, CE webinar chock full of fraud prevention measures!Register online: htt...
08/11/2023

Please join me on September 26, for a CPE, CLE*, CE webinar chock full of fraud prevention measures!

Register online: http://www.lorman.com/410783?discount_code=H2761935&p=15999

Discount code: H2761935
Priority code: 15999

Learn how to defend against fraud and take appropriate steps to respond when fraud occurs. This presentation explores the various ways to mitigate risk, especially in the corporate sector as it pertains to organizational fraud.

04/13/2023

There has been a surge in the amount of cryptocurrency fraud cases brought to us at RSA Risk Management & Investigations, PLLC, in the last six months.

Cryptocurrencies have gained significant popularity in recent years, but with their rise in popularity has come a surge in scams. To avoid falling victim to cryptocurrency scams, there are several steps you can take.

Firstly, it is essential to do your research and educate yourself about the cryptocurrency you wish to purchase. You should understand how the technology works, what the currency's value proposition is, and who the team behind the project is. This information will help you make an informed decision when it comes to investing in a particular cryptocurrency.

Secondly, always be wary of offers that sound too good to be true. Scammers often use promises of quick returns or exclusive investment opportunities to lure in unsuspecting victims. Remember, there is no such thing as a risk-free investment, and legitimate investments take time to grow. These scammers often claim to have made millions by day-trading.

Thirdly, use reputable cryptocurrency exchanges or platforms to purchase your coins. These platforms have robust security measures in place, reducing the risk of theft or fraud. Also, do your research on the different wallet types and the security concerns with each.

Finally, be mindful of phishing scams. Scammers may create fake websites or emails that appear to be from legitimate cryptocurrency platforms, asking you to provide your login credentials or personal information. Of the scams RSA has investigated to date, all of the frauds included the scammers having the potential investor transfer money to a non-public website. Always double-check the website's URL and be wary of emails that ask for sensitive information. In each of the scams we have investigated to date, the fraudsters began by connecting with the potential investor via social media and later contacting them about crypto opportunities. It is not unusual for the fraudsters to pose as an attractive female who has become an expert trading cryptos and has amassed millions of dollars.

In conclusion, buying cryptocurrencies requires caution and due diligence. By taking the necessary precautions and staying informed, you can protect yourself from falling victim to scams and invest in cryptocurrencies safely.

I presented a 60-minute program to the National Society of Professional Insurance Investigators (NSPII) today titled, "E...
06/22/2022

I presented a 60-minute program to the National Society of Professional Insurance Investigators (NSPII) today titled, "Employing Technology and Analytics in Multi-Layer Financial Investigations." This presentation demonstrated how the collaboration of Data Scientists, Digital Forensic Examiners, SIU Investigators, and Forensic Accountants can result in greatly reducing the investigative time needed to identify indicia of fraud and corroborate the data and evidence.

          A Certified Fraud Examination would have uncovered this embezzlement!
01/18/2022



A Certified Fraud Examination would have uncovered this embezzlement!

Former Financial Controller Sentenced to Prison for Embezzling Almost Half a Million Dollars from Family-Owned San Diego Business

07/29/2021

The Evolution of Digital Forensics and Growth of the Industry

The rapid growth of technology has resulted in the computer age, which has given rise to cybercrimes. Savvy criminals today use devices such as tablets, computers, smartphones, and cloud storage in the planning and commission of cybercrimes, whether to wreak havoc in the system of an organization or in the commission of a crime of self-enrichment. According to McAfee, global losses from cybercrime in 2019 exceeded $1 trillion, which was a 50% increase over 2018. These major challenges have been met by cyber sleuths, who are trained in the collection and analysis of data and in navigating the legal basis surrounding the data in the judicial process. Today, digital forensics truly is the intersection of science and the legal process. This article describes the evolution of the digital forensics industry.

The rapid growth of technology has resulted in the computer age, which has given rise to cybercrimes. Savvy criminals today use devices such as tablets, computers, smartphones, and cloud storage in the planning and commission of cybercrimes, whether to wreak havoc in the system of an organization or in the commission of a crime of self-enrichment. According to McAfee, global losses from cybercrime in 2019 exceeded $1 trillion, which was a 50% increase over 2018. These major challenges have been met by cyber sleuths, who are trained in the collection and analysis of data and in navigating the legal basis surrounding the data in the judicial process. Today, digital forensics truly is the intersection of science and the legal process.

Digital forensics is the science behind the recovery and investigation of data stored in digital devices, and often in relation to computer or computer related crimes. Though initially this science was called computer forensics, the advent of numerous devices designed to store digital data, resulted in the name change to digital forensics. Digital forensics is broad and covers civil and criminal court applications and private sector applications, including internal corporate investigations wherein devices and systems were used to commit or hide offenses. As one might imagine, there is crossover between digital forensics and cybersecurity, and professionals from both disciplines communicate with each other in security design and implementation, and post incident investigation. Digital forensics science is also used to assess any damage resulting from a breach. Concerning breaches, S. Terry Brugger, PhD, Founder and Computer Scientist, Bubowerks, stated every organization will get breached at some point, and that is a very unfortunate fact of life. Dr. Brugger added that even companies that are Systems and Organizations Controls 2 (SOC2) audit certified get breached, and that the speed and method of the response shall have tremendous bearing on the outcome. Enter digital forensic examiners, who can stop hackers who seek to bring harm to an organization’s digital infrastructure and help in the recovery of lost or stolen data. These examiners seek to discern the origins of an attack, identify the source, and of course, prepare reports for any legal process which may follow. Dr. Brugger informed attacks can come from either insider attackers or external attackers, and the process is dependent on the nature and source of the threat. According to Dr. Brugger, insider threats can happen to any firm, and it is important to discern who did it and exactly what they did. Dr. Brugger added that these incidents can and often do result in litigation, and require proper evidence preservation of laptops, desktops, and tablets, along with strict adherence to the rules of evidence. The dynamic is very different with external attackers, as told by Dr. Brugger, with the incident response usually varying by the size of the organization attacked. He stated, it makes sense for a large organization to investigate an attack to prevent the same in the future but added, small to midsize organizations usually are not in the position to commit to a $50,000 investigation. With the smaller organizations, a missing computer patch is usually to blame and enabled the vulnerability. In terms of large organizations, as conveyed by Dr. Brugger, attackers use zero-day exploits, a method attackers or hackers use to attack systems with a not yet known vulnerability and is done to damage the system or steal data. According to Dr. Brugger, large organizations usually do not know that these vulnerabilities even exist and sometimes result in post incident collaboration with the software company to remediate and repair the newly identified flaw. In direct contravention to internal attacks, external attacks are focused on reverse engineering rather than evidence preservation.

In addition to cyberattacks and other cybercrimes, theft of proprietary information is a problem that plagues the corporate and government sectors. Keith Chval, Esq., President and CEO, Protek International (Protek), a digital forensics, advisory, cybersecurity, and eDiscovery firm, stated that the greatest amount of work done by his firm is in unfair competition and theft of proprietary information and trade secrets. Chval informed Protek’s examiners recreate the users’ activities to see files, find artifacts, and conversations in these matters. He added it is not unusual for an employee to begin theft of proprietary information predating that employee’s departure, and Protek’s collection, preservation, and analysis should be able to show and document that. Along these lines, Chval suggested employers should save, set aside, or back up a computer when an employee leaves, allowing examiners to initiate investigation down the road should an issue arise.

The history of digital forensics is relatively short, beginning in the late 1970s. In fact, the first reported computer crime in the United States dates to 1978, which resulted in federal law enforcement agencies developing forensic teams utilizing special agents with computer experience and/or education. The 1978 Florida Computer Crimes Act was passed to prevent alteration or deletion of data. Canada followed in 1983 by passing legislation addressing cybercrimes and computer forensics. As this is an international issue, Britain developed their first ever computer crime department in 1985. Though legislation was being passed internationally, it was Britain’s 1990 Computer Misuse Act that put digital forensics on the map world-wide. While numerous countries passed legislation and created computer crime detection units post 2000, it was the ISO 17075 standard for digital forensics in 2005 that standardized digital forensics laboratories in the United Kingdom. Debate remains in the United States whether this standard is suitable for digital forensics. Realizing that seizing, retaining, and analyzing the data was a large concern, in 1984 the Federal Bureau of Investigation (FBI) developed their first digital forensics program, known as the Magnet Media Program. The FBI addressed forensic investigations with the development and staffing of their Computer Analysis and Response Team (CART), a team of highly trained FBI Special Agents with computer backgrounds who aided all areas of FBI jurisdiction in digital investigations. Since this time, numerous law enforcement and intelligence agencies have contributed to digital forensics, employing cybercrime divisions, laboratories, and highly trained staff who collaborate with both government and non-government associations to develop protocols, training, and best practices relative to digital forensic science.

As this discipline is subject to court challenge, the process is of the utmost importance and must be defensible. Though the process is dependent upon the type of matter, data stored, and type of device, there are five basic steps comprised of identification, preservation, collection, analysis, and reporting. Throughout all five stages, the digital forensic examiner takes copious and contemporaneous notes documenting procedural steps and results, providing the means by which another examiner can produce the same results solely from the detailed, contemporaneous notes. The initial stage of identification consists of identifying potential sources of data, information and or/evidence and the location of the data and the custodians of said data. Electronically stored information (ESI) must be preserved by securing the scene, capturing images of the scene, and memorializing pertinent information about the evidence and the method of acquisition. Collection is the process of collecting the digital information and is comprised of removing the device(s) from the scene if necessary, imaging, copying, or printing out the device contents. The analysis portion is a very detailed search of evidence relative to the incident under investigation, with the analysis seeking to provide conclusions. Lastly, reports are drafted clearly delineating accepted methodologies and techniques, to which any other forensic examiner would be able to duplicate the process and produce the same results.

Digital forensics is expanding and will continue to do so with the advent of new media. Currently, digital forensics includes computer forensics, mobile device forensics, network forensics, forensic data analysis, database forensics, e-mail forensics, malware forensics, memory forensics, wireless forensics, and disk forensics. Computer forensics, as previously discussed is comprised of the five basic steps of identification, preservation, collection, analysis, and reporting as it pertains to desktop computers, laptop computers, and tablets. Examiners in this area usually specialize in either the investigation of computer crimes or in the process of data recovery for civil litigation and criminal prosecution. Mobile device forensics has grown substantively, as these devices are extremely powerful and almost universally owned. It is not unusual for a specialist to retrieve data from SIM cards, mobile phones, smartphones, video game consoles, and vehicles to be used as evidence in a court of law. Network forensics is also a quickly growing field, whether conducted inhouse by employees or by consultants. Specialists in this area monitor, document, and analyze network traffic and activity both proactively and post incident. This role supports both the preventive and digital forensics incident response (DFIR) function for organizations and is focused on breaches and cyberattacks.

As the cybercrimes have evolved, so have to the tools used to analyze digital evidence. Examiners did not have many choices in the early days of digital forensic examinations, but over the years numerous tools have come to market. While a search of available tools will produce no less than 15 applications, Dr. Brugger related he has always preferred EnCase, and added it has withstood court challenges and has huge case law support. He noted EnCase’s credibility was strengthened by the EnCase Certification Program, which resulted in the examiner earning EnCase Certified Examiner (EnCE) certification and designation. There is change afoot right now for the legion of EnCase users and enthusiasts such as Dr. Brugger. EnCase, which has enjoyed widespread use by law enforcement and the private sector for many years, no longer updates, leaving a large hole in the marketplace. According to Chval, OpenText purchased Guidance Software, the maker of EnCase, for a single piece of Guidance Software’s inventory, and have not updated EnCase. This change of events has left examiners evaluating new tools to ensure they can perform to both industry standards and as claimed by their developers. Chval said federal law enforcement agencies are now mostly using AccessData by Exterro as their forensic tool kit (FTK). Even though AccessData is gaining users, Chval informed a drawback of using AccessData is the onus is now on the examiner during testimony, whereas in the past the examiner could rely on EnCase’s established case law. At this time, the demand for cybersecurity tools seems to vastly exceed those for digital forensics, and the developers, according to Chval, are now intently focused on cybersecurity rather than digital forensics.

Digital forensic examiners may choose employment in law enforcement, large corporations, cybersecurity, military, law firms specializing in data privacy, and in specialty consulting firms. The career field is evolving and growing, which is providing several different career paths for students seeking careers in digital forensics. Even in law enforcement, digital examiners have the choice of municipal, county, state, or federal law enforcement. Choices are also available for those looking to work for intelligence agencies. Noticeably missing are small companies, which might have digital forensics as part of a larger information technology position, but not as a main focus, as you would see with a fortune 2000 company, according to Dr. Brugger.

Like many other disciplines and technical fields, certifications and updating of one’s credentials are very important. Dr. Brugger informed certifications in digital forensics and related fields are available from certifying bodies such as Global Information Assurance Certification (GIAC) to set standards for information security professionals. GIAC provides training and testing for certifications such as the GIAC Certified Forensic Examiner (GCFE), GIAC Network Forensic Analyst (GNFA), GIAC Reverse Engineering Malware (GREM), and the GIAC Cyber Threat Intelligence (GCTI). Dr. Brugger added certifications are available from other certifying organizations and even specific vendors as well.

In the field of digital forensics, it appears the dam has burst, and the water will never return. Now that we are in the computer age, there will always be a need for digital forensics and cybersecurity. Both Dr. Brugger and Chval agree that preservation and response are of the utmost importance. Chval stated that being proactive is worth its weight in gold and that organizations should have reasonable measures in place identifying the business to which they will refer any incident and detailing actions to be taken. Chval stated organizations should act swiftly and assume whatever happened is the crime of the century until they know it is not! Lastly, Chval communicated, you must not underestimate the value of preservation, because you cannot recreate what has not been preserved.

07/18/2021

M

Address

2863 W. 95th Street, Ste 143/227
Naperville, IL
60564

Alerts

Be the first to know and let us send you an email when RSA Risk Management & Investigations, PLLC posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Contact The Business

Send a message to RSA Risk Management & Investigations, PLLC:

Share