Reference no: EM13468741
Research current events related to the course topics covered in Units 1 - 4 and post at least 2 of these events to the Discussion Board. Within your posting, describe how your chosen items tie into a review of the course thus far. Be sure to use proper citation.
Some of the topics covered:
-Computer Forensics and Investigations as a Profession
In the United States, the fourth amendment guides how evidence is gathered. Similar laws exist in other countries. In most corporations, the computer belongs to the company and therefore can be seized without a warrant.
Following a systematic approach when seizing evidence cuts down on mistakes. Chain of custody helps to insure that evidence is not tampered with. And having a good reputation for being an honest individual is critical to being a success in this field.
-The Investigator's Lab and Processing an Incident Scene
Policies and procedures along with documentation will make or break a case. You should always review a case once you are done to determine what went right or wrong and how you can do it better in the future. It is important that you stay current on any certifications, both for the lab and for yourself as an investigator.
-Data Acquisition
The world of digital forensics is changing quickly and it is a relatively new field. As a result, a lot of tools are on the market, some of which are compatible with each other, some are not. It is critical for you as an investigator to verify any tool you use and to validate any image you take of a digital device.
Documentation of what you do is extremely important. You need to note what software you use and what version. In many cases, it may be several years before you go to court. Most of us are not going to remember exactly what we did on each individual case without our notes.
-Understanding Windows and DOS along with Current Forensics Tools
In this unit, you were introduced to the following critical areas of forensic knowledge.
· How Windows stores information
· File slack
· The FAT and MFT
· The Windows Registry
· What happens during the start-up sequence for the popular versions of Windows
· DOS
· Virtual machines
· Validation of forensic tools
· Selection of forensics tools