Evidence collection policy

Assignment Help Basic Computer Science
Reference no: EM132857222

Evidence Collection Policy

Scenario

After the recent security breach, Always Fresh decided to form a computer security incident response team (CSIRT). As a security administrator, you have been assigned the responsibility of developing a CSIRT policy that addresses incident evidence collection and handling. The goal is to ensure all evidence collected during investigations is valid and admissible in court.

Consider the following questions for collecting and handling evidence:

1. What are the main concerns when collecting evidence?

2. What precautions are necessary to preserve evidence state?

3. How do you ensure evidence remains in its initial state?

4. What information and procedures are necessary to ensure evidence is admissible in court?

Tasks

Create a policy that ensures all evidence is collected and handled in a secure and efficient manner. Remember, you are writing a policy, not procedures. Focus on the high-level tasks, not the individual steps.

Address the following in your policy:

 Description of information required for items of evidence

 Documentation required in addition to item details (personnel, description of circumstances, and so on)

 Description of measures required to preserve initial evidence integrity

 Description of measures required to preserve ongoing evidence integrity

 Controls necessary to maintain evidence integrity in storage

 Documentation required to demonstrate evidence integrity.

Reference no: EM132857222

Questions Cloud

General computer sciences : How communication and leadership is incorporated into your job. What communication and leadership roles you have at your job.
Research apple home pod : Research Apple Home Pod. How does it interact with smart home devices?
Review employment challenge in digital era : What are some methods to assimilate new generations into the workforce to think about competitive advantage?
Excel and your career : Excel and Your Career. Today's companies are looking for employees to be proficient in Microsoft applications, including Word, PowerPoint, and Excel.
Evidence collection policy : After the recent security breach, Always Fresh decided to form a computer security incident response team (CSIRT).
Regulatory compliance frameworks : Compare and contrast audit trail requirements or recommendations in various regulatory compliance frameworks
Defense-in-depth principle to ensure protection : Microsoft adheres to a defense-in-depth principle to ensure protection of its cloud services, such as Microsoft Office 365
Discuss what performance management : Discuss what performance management is and how it influences effective teams.
What are the tradeoffs : When arriving at a crime scene, is it better to shut down the computer immediately or insure it stays on? What are the tradeoffs?

Reviews

Write a Review

Basic Computer Science Questions & Answers

  Advantages of flash memory over hard disk storage

What are the advantages of flash memory over hard disk storage? Compare and contrast the advantages of hard disk storage and flash memory. What are the advantages of both over RAM?

  Parameters of demand and supply functions

Derive equilibrium quantity and price as functions of the parameters of demand and supply functions. Show your work.

  Effective code of ethics and business conduct

Craft your response as a "recipe" for an effective code of ethics and business conduct (e.g. two portions professional conduct, half a portion of fairness, one portion respect for others, etc.)

  Issue related to information systems and digital privacy

The article on IRB discusses broad consent under the revised Common Rule. How is this issue related to information systems and digital privacy?

  Projects design and testing

Along with your program, you should also submit an Approach Document for this assignment. This is a short document (two to five pages long) explaining the project's design and testing.

  Work for a mid-sized manufacturer

Consider this scenario. You work for a mid-sized manufacturer. You have been asked to develop a guide which could be used by new employees who will be involved in document production. The guide must help the employees to select the appropriate softwa..

  Generate the same hash value

1. A 2,000-bit message is used to generate a 256-bit hash. One the average, how many other messages could be expected to generate the same hash value? What does this tell us about the length of a hash as compared to the length of the message?

  What impact do you believe the economy

What impact do you believe the economy should have (or does have) on the need for a balanced governmental budget?

  What is the regulatory response thus far regarding bitcoin

What is the regulatory response thus far regarding bitcoin? How should Brown factor in potential regulation into his investment thesis?

  Discuss briefly the supply schedule and the various factors

Discuss briefly the supply schedule and the various factors affecting the supply in the market.

  The psychological drivers of bureaucracy

The Psychological Drivers of Bureaucracy: Protecting the Societal Goals of an Organization

  What is aprogram that determines the english-language

For example, given an integer 1, return the string "one"; given an integer 2, return the string "two"; and so on, up through the integer 10.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd