fticonsulting.com

.com crawl

First seen 2026-04-11 · Last seen 2026-05-19 · ok HTTP/1.1 200 3042 ms crawled 2026-05-18

US · 20.119.16.33 · AS8075 Microsoft Corporation

Reputation 94/100 dmarc monitor-only

sector b2b services type homepage

HTML metadata

Title
Business Consulting Firm & Global Management Advisory | FTI
Description
FTI Consulting, a trusted business consulting firm providing expert advisory services to optimize performance and navigate complex challenges.
Language
en
Canonical
https://www.fticonsulting.com/

Open Graph

url
https://www.fticonsulting.com/sitecore/api/layout/render/default
title
Business Consulting Firm & Global Management Advisory | FTI
description
FTI Consulting, a trusted business consulting firm providing expert advisory services to optimize performance and navigate complex challenges.

Technology

CDN
Azure Front Door
CMS
Next.js
Cookie consent
  • OneTrust

Third-party hosts loaded (1)

  • cdn-ukwest.onetrust.com×2

Social

Registration

Registrar
CSC Corporate Domains, Inc.
Created
1998-04-28
Expires
2027-04-27 342 days left
Updated
2026-04-23
Name servers
  • udns1.cscdns.net
  • udns2.cscdns.uk

DNS records live

NS
  • udns1.cscdns.net
  • udns2.cscdns.uk
MX
  • 10 de-smtp-inbound-1.mimecast.com
  • 10 de-smtp-inbound-2.mimecast.com
TXT
Show 10 TXT records
  • MS=ms25833280
  • MS=ms32178288
  • y7qjj9d72tpd31487p0nlq8gwtzxng3t
  • canva-site-verification=PnEknQrCEwxMiRZrri16rA
  • onetrust-domain-verification=e3bc67e592ba454299b6c2512cbf74e9
  • yahoo-verification-key=ncuw4EtsGEUhD6kyU3Q932fUnmpvvQQaTpiAUvKqHOo=
  • bMqnW98k79axClua2L1b8Uye4vXBVdLHNj10ZSjslPZHTSMgihKsTWPxhwzxiWcYcehl8salbdpNuUsD+RQ+Dg==
  • box-domain-verification=f1b994f65b30868daa53dd0092bf9ed3ac0aeb079e8f6b785c3c20fd13d9101f
  • atlassian-domain-verification=2n2IBNQ7Pj59d92tsuWq9GDdiUz7/UnAjPlBRol1lpuYHlaIYcY9052sphyZy/z2
  • successfactors-site-verification=MmZlYmU4MWQ2N2FkN2JmZDY5NDE1ZDlhOTkzMDQwYjkwZjQ4OTM3MmNhZTUxNDQwN2E4OTRkODE5ODU1YjM1NQ==

Email authentication partial

SPF
v=spf1 ip4:167.89.22.42 ip4:52.22.72.191 ip4:129.145.74.0/23 ip4:68.233.76.14 ip4:168.245.26.83 ip4:138.1.127.67 include:de._netblocks.mimecast.com include:de._extnetblocks.mimecast.com include:spf.mandrillapp.com include:_spf.salesforce.com include:_trustedips2.eloqua.com include:_trustedips1.eloqua.com include:_netblocks.sparkpostmail.com include:spf.pressfile.de a:c.spf.service-now.com ~all
softfail (~all)
DMARC
v=DMARC1; p=none; rua=mailto:dmarc_info@fticonsulting.com; ruf=mailto:dmarc_stats@fticonsulting.com; fo=1;
policy: none (monitoring only)
DKIM
  • k2: v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv2aC2KjGKLOwTweBY5A9RpjsxaBXR9r7OAU6U8/zn92ivImI75naUujWbItRI/QmL1jy5PWGqLwoUA…
selectors probed

Certificate (current)

GeoTrust TLS RSA CA G1
from 2026-02-21 to 2026-08-22
Expires in 94 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.fticonsulting.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • cross-origin-opener-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
no-referrer-when-downgrade
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src 'self' 'unsafe-inline' 'unsafe-eval' blob: *.fticonsulting.com *.brightcovecdn.com *.boltdns.net *.media.brightcove.com *.llnw.net *.llnwd.net *.akafms.net *.akamaihd.net *.cf.brightcove.com graph.instagram.com *.ceros.com code.jquery.com www.google.com static.cloud.coveo.com cdn.linkedin.oribi.io script.crazyegg.com z.moatads.com edge.api.brightcove.com oauth.brightcove.com cms.api.brightcove.com vjs.zencdn.net players.brightcove.net www.googletagmanager.com siteimproveanalytics.com static.addtoany.com stats.addtoany.com vidassets.terminus.services www.googleadservices.com googleads.g.doubleclick.net *.demandbase.com *.company-target.com snap.licdn.com www.google-analytics.com *.google-analytics.com *.analytics.google.com www.gstatic.com stats.g.doubleclick.net api.company-target.com maps.googleapis.com graphql.contentful.com images.ctfassets.net videos.ctfassets.net *.n.dps.sh *.onetru
strict-transport-security
max-age=31536000; includeSubDomains
cross-origin-opener-policy
same-origin

Links to (5)

Linked from (15)