ABSTRACT

Digital forensics has been a discipline of Information Security for decades now. Its principles, methodologies, and techniques have remained consistent despite the evolution of technology, and, ultimately, it and can be applied to any form of digital data. However, within a corporate environment, digital forensic professionals are particularly challenged. They must maintain the legal admissibility and forensic viability of digital evidence in support of a broad range of different business functions that include incident response, electronic discovery (ediscovery), and ensuring the controls and accountability of such information across networks.

Digital Forensics and Investigations: People, Process, and Technologies to Defend the Enterprise provides the methodologies and strategies necessary for these key business functions to seamlessly integrate digital forensic capabilities to guarantee the admissibility and integrity of digital evidence. In many books, the focus on digital evidence is primarily in the technical, software, and investigative elements, of which there are numerous publications. What tends to get overlooked are the people and process elements within the organization.

Taking a step back, the book outlines the importance of integrating and accounting for the people, process, and technology components of digital forensics. In essence, to establish a holistic paradigm—and best-practice procedure and policy approach—to defending the enterprise. This book serves as a roadmap for professionals to successfully integrate an organization’s people, process, and technology with other key business functions in an enterprise’s digital forensic capabilities.

part I|78 pages

Enabling digital forensics

chapter 1|15 pages

Introduction to Digital Forensics

chapter 2|16 pages

Investigative Process Methodologies

chapter 3|17 pages

Education, Training, and Awareness

chapter 4|15 pages

Laws, Standards, and Regulations

chapter 5|10 pages

Ethics and Professional Conduct

part II|139 pages

Enhancing digital forensic capabilities

chapter 6|25 pages

The Business of Digital Forensics

chapter 7|25 pages

Controlling Mobile Devices

chapter 8|23 pages

Cloud Computing Enablement

chapter 9|17 pages

Combatting Antiforensics

chapter 10|28 pages

Digital Evidence Management

chapter 11|15 pages

Digital Forensic Readiness

part III|73 pages

Integrating digital forensic capabilities

chapter 12|20 pages

Incident Management and Response

chapter 13|24 pages

Electronic Discovery and Litigation Support

chapter 14|27 pages

Information Security and Cybersecurity