• DocumentCode
    1957599
  • Title

    A Framework to Guide the Implementation of Proactive Digital Forensics in Organisations

  • Author

    Grobler, CP ; Louwrens, CP ; Von Solms, SH

  • Author_Institution
    Acad. for Inf. Technol., Univ. of Johannesburg, Johannesburg, South Africa
  • fYear
    2010
  • fDate
    15-18 Feb. 2010
  • Firstpage
    677
  • Lastpage
    682
  • Abstract
    Most organizations underestimate the demand for digital evidence [1]. Often, when evidence is required to prove fraudulent transactions, not enough or trustworthy evidence is available to link the attacker to the incident. It is essential for organizations to prepare themselves for digital Forensic (DF) investigations and ensure that entire organizational operating environment is prepared for example for an investigation (criminal or internal) or acompliance tests. The accepted literature on DF readiness concentrates mainly on evidence identification, handling and storage, first line incident response and training requirements [2]. It does not consider the proactive application of DF tools to enhance the corporate governance structures (specifically Information Technology (IT) governance). Pro-active DF (ProDF) as defined in this paper will enable an organization to take the initiative by implementing adequate measures to become DF ready,demonstrate due diligence for good corporate Governance, specifically IT Governance and provide a mechanism to assess and improve IT Governance frameworks. The purpose of this paper is to define, identify goals, steps, and deliverables of ProDF, identify dimensions of DF, and propose a theoretical DF management framework to guidethe implementation of ProDF in an organization.
  • Keywords
    computer forensics; organisational aspects; IT governance; acompliance test; corporate governance; investigation test; organisations; proactive digital forensics; Africa; Availability; Business continuity; Digital forensics; Environmental economics; Information management; Information security; Information technology; Risk management; Testing; Comprehensive Digital Evidence; Digital Forensics Management Framework; IT Governance; Proactive Digital Forensics; Proactive digital forensics;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability, and Security, 2010. ARES '10 International Conference on
  • Conference_Location
    Krakow
  • Print_ISBN
    978-1-4244-5879-0
  • Type

    conf

  • DOI
    10.1109/ARES.2010.62
  • Filename
    5438018