Mark van Houten
Head of Digital Forensics
Fifteen-plus years leading mobile and computer forensics engagements for European law enforcement and regulators. Speaks at EU forensics conferences on chain-of-custody and remote-acquisition tradecraft.
DataExpert is the team you call when an investigation has to hold up — in court, in front of a regulator, or in front of your own board. We are senior practitioners, not a brand layered over a partner network, and the operators who scope your case are the operators who deliver it.
DataExpert BV is a Dutch private limited company headquartered in Veenendaal, with operating offices in Rijswijk, Linköping, Slangerup, and Copenhagen. We serve law enforcement, financial institutions, public-sector agencies, and large regulated enterprise — most often where digital evidence, cryptocurrency, or live incident handling are at the heart of the matter.
Our work spans the full investigation lifecycle. We acquire and preserve digital evidence to courtroom standard. We trace financial flows on-chain and off-chain. We assist clients with open-source intelligence collection that surfaces what matters without tipping off the subject. And when a breach is in motion, our incident-response team supports the people inside the organisation who are running the response.
We are deliberately independent. We are not a Big-4 advisory firm with a forensics practice attached, and we are not a single-vendor integrator selling one platform. We work across the EU forensics ecosystem and we are direct with clients about what each tool does well, what it does badly, and which approach the case actually needs. That posture costs us some deals — and earns us the ones that matter.
Every engagement starts with the same question: what is the operator on your side actually trying to accomplish? Once we understand that, we choose the partner stack, the tooling, and the working rhythm that fits — and we make those choices visible to you, not buried inside a methodology document.
We partner with the major forensics, OSINT, and cryptocurrency-intelligence vendors — Cellebrite, OpenText, Magnet Forensics, Chainalysis, TRM Labs, Maltego, Exterro, Oxygen Forensics, Amped, and Elastic — and we maintain active practitioner certifications across that stack. Where a client is already invested in one platform, we work within it. Where a project benefits from a different tool, we say so and explain why.
We do not arrive with a fixed methodology that everyone else has to adapt to. When you already run a SOC, an investigation case-management platform, a SIEM, or a compliance-reporting workflow, we slot in beside what you have. Our deliverables — case notes, evidence registers, reports — flow into your existing systems, in the format your downstream consumers expect.
Wherever our clients allow it, we prefer open standards and interoperable formats: structured data over screenshots, signed evidence packages over PDFs, scriptable interfaces over locked-down GUIs. That preference is operational, not ideological — it means the case file outlives any single tool, any single analyst, and any single vendor contract. Your investigation belongs to you.
The team you actually work with — senior forensics, OSINT, incident-response, and cryptocurrency-investigation practitioners. Each card below describes a representative role on the team. We will introduce the specific people who will be on your engagement during scoping.
Head of Digital Forensics
Fifteen-plus years leading mobile and computer forensics engagements for European law enforcement and regulators. Speaks at EU forensics conferences on chain-of-custody and remote-acquisition tradecraft.
Head of Cryptocurrency Investigations
Leads cross-chain tracing work for banks, regulators, and law enforcement using Chainalysis Reactor and TRM Labs. Background in financial-crime compliance and on-chain analytics.
Director, Nordic Region
Runs DataExpert's Swedish and Danish operations from Linköping. Specialises in cross-border investigations for Nordic law-enforcement and intelligence customers.
Head of Incident Response
Twelve years inside enterprise SOCs and IR retainers before joining DataExpert. Leads the 24/7 incident-response practice and the IR retainer programme.
Principal OSINT Analyst
Designs and delivers OSINT collection workflows for law-enforcement and corporate-investigation clients. Co-authors the OSINT curriculum at the DataExpert Academy.
Head of Academy
Runs the DataExpert Academy curriculum across forensics, OSINT, and crypto investigations. Former trainer at a national-police digital-evidence unit.
[VERIFY: real team member details · LinkedIn URLs · headshots will replace placeholders]
Get in touch and we'll introduce you to the practitioners who match the work you have in mind.
or call +31 (0)318 543173