Title :
A Framework to Guide the Implementation of Proactive Digital Forensics in Organisations
Author :
Grobler, CP ; Louwrens, CP ; Von Solms, SH
Author_Institution :
Acad. for Inf. Technol., Univ. of Johannesburg, Johannesburg, South Africa
Abstract :
Most organizations underestimate the demand for digital evidence [1]. Often, when evidence is required to prove fraudulent transactions, not enough or trustworthy evidence is available to link the attacker to the incident. It is essential for organizations to prepare themselves for digital Forensic (DF) investigations and ensure that entire organizational operating environment is prepared for example for an investigation (criminal or internal) or acompliance tests. The accepted literature on DF readiness concentrates mainly on evidence identification, handling and storage, first line incident response and training requirements [2]. It does not consider the proactive application of DF tools to enhance the corporate governance structures (specifically Information Technology (IT) governance). Pro-active DF (ProDF) as defined in this paper will enable an organization to take the initiative by implementing adequate measures to become DF ready,demonstrate due diligence for good corporate Governance, specifically IT Governance and provide a mechanism to assess and improve IT Governance frameworks. The purpose of this paper is to define, identify goals, steps, and deliverables of ProDF, identify dimensions of DF, and propose a theoretical DF management framework to guidethe implementation of ProDF in an organization.
Keywords :
computer forensics; organisational aspects; IT governance; acompliance test; corporate governance; investigation test; organisations; proactive digital forensics; Africa; Availability; Business continuity; Digital forensics; Environmental economics; Information management; Information security; Information technology; Risk management; Testing; Comprehensive Digital Evidence; Digital Forensics Management Framework; IT Governance; Proactive Digital Forensics; Proactive digital forensics;
Conference_Titel :
Availability, Reliability, and Security, 2010. ARES '10 International Conference on
Conference_Location :
Krakow
Print_ISBN :
978-1-4244-5879-0
DOI :
10.1109/ARES.2010.62