Expert Witness

Cybersecurity & Technology Expert Witness

Jim Nitterauer provides expert consulting and expert witness services in matters involving cybersecurity, information security, network infrastructure, data breaches, security controls, identity and access management, cloud and SaaS security, cybersecurity governance, and industry security practices.

With more than three decades of hands-on technology experience — from systems and network engineering through CISO and board-level security leadership — he brings both technical depth and executive-level perspective to complex technology disputes.

Areas of Expert Analysis

Cybersecurity & Information Security

Security program design and operation; cybersecurity controls; security policies and procedures; reasonable security practices; NIST-based programs; vulnerability management; security monitoring; SIEM; EDR; incident response.

Data Breaches & Security Incidents

Technical incident analysis; security-control effectiveness; attack vectors; logging and monitoring; vulnerability management; incident-response practices; organizational security posture.

Identity & Access Management

Authentication; MFA; phishing-resistant authentication; SSO; Microsoft Entra ID; Active Directory; Zero Trust; account security; access controls.

Network & Infrastructure Security

Firewalls; routing; switching; VPNs; DNS; BGP; F5 BIG-IP; network architecture; Internet infrastructure; data centers; Anycast; DDoS mitigation.

Cloud & SaaS Security

AWS; Azure; GCP; SaaS security; cloud architecture; Zero Trust; endpoint security; enterprise security controls.

Security Governance & Compliance

SOC 2; ISO 27001; PCI DSS; NIST CSF; HITRUST; SOX; GRC; vendor risk; security policies and procedures. Technical and security expertise is distinguished from opinions that specifically require a CPA, attorney, or certified auditor.

AI Security & Governance

Generative AI; enterprise AI adoption; AI security governance; agentic AI; ChatGPT; Claude; Claude Code; MCP; AWS Bedrock; AI identity/access controls; data-security risks; Shadow AI.

Network and infrastructure security — DNS, BGP, F5, Anycast, and hands-on Internet-infrastructure experience — is a particular area of depth, distinct from governance-only cybersecurity expertise.

Types of Matters

  • Data breach disputes
  • Alleged security negligence
  • Cybersecurity practices and controls
  • Security-control failures
  • Ransomware / security incidents
  • Authentication and account compromise
  • Network-security disputes
  • Cloud-security incidents
  • Vendor / third-party security disputes
  • Cybersecurity due diligence
  • Logging and monitoring disputes
  • Incident-response practices
  • Security policy / procedure disputes
  • Technology implementation disputes
  • Identity / access-control disputes
  • Security architecture disputes

Evaluation of cybersecurity practices and controls against recognized frameworks and industry practices.

Expert Witness & Litigation Support Services

Case Assessment and Technical Consulting

Review allegations, evidence, and technical issues to help counsel understand the cybersecurity aspects of a matter.

Document and Evidence Review

Analyze policies, logs, configurations, architecture documentation, incident reports, vulnerability reports, audit materials, assessments, and technical documentation.

Security-Control Analysis

Evaluate controls against documented policies, recognized frameworks, vendor recommendations, and generally accepted security practices.

Incident Analysis

Analyze attack paths, authentication, network activity, logging, controls, detection, and response.

Expert Reports and Declarations

Provide clearly documented technical findings and opinions when appropriate.

Deposition and Trial Testimony

Explain complex cybersecurity and technology concepts to attorneys, judges, juries, executives, and nontechnical audiences.

Experienced Technical Communicator

Jim has presented complex cybersecurity and network-security topics at more than 20 industry conferences, including RSA Conference, DEF CON, and BSides. This extensive speaking experience translates directly into explaining highly technical concepts clearly to attorneys, executives, and nontechnical audiences.

View speaking history & recordings

Related Insights

Discuss a Matter

Attorneys and litigation-support professionals seeking cybersecurity or technology expertise may contact Jim to discuss the technical issues involved in a matter, potential conflicts, availability, and scope of engagement.

Discuss a Case