Title :
Embedding Forensic Capabilities into Networks: Addressing Inefficiencies in Digital Forensics Investigations
Author :
Endicott-Popovsky, Barbara E. ; Frincke, Deborah A.
Author_Institution :
Center of Inf. Assurance & Cybersecurity, Washington Univ., Seattle, WA
Abstract :
When incident responders collect network forensic data, they must often decide between expending resources collecting forensically sound data, and restoring the network as quickly as possible. Organizational network forensic readiness has emerged as a discipline to support these choices, with suggested checklists, procedures and tools. This paper proposes a life cycle methodology for "operationalizing" organizational network forensic readiness. The methodology, and the theoretical analysis that led to its development, are offered as a conceptual framework for creating more efficient, proactive approaches to digital forensics on networks
Keywords :
security of data; digital forensics investigations; forensic data; life cycle methodology; Computer hacking; Computer security; Costs; Digital forensics; History; Intelligent networks; Law; Legal factors; Productivity; Transfer functions;
Conference_Titel :
Information Assurance Workshop, 2006 IEEE
Conference_Location :
West Point, NY
Print_ISBN :
1-4244-0130-5
DOI :
10.1109/IAW.2006.1652087