Incident response and digital forensics require a balancing act to get right, but both are essential when an information security incident occurs.
In this practical guide, the relationship between incident response and digital forensics is explored and you will learn how to undertake each and balance them to meet the needs of an organisation in the event of an information security incident. Best practice tips and real-life examples are included throughout.
Arvustused
A great book which I could see on the shelf of any investigator or included in the book lists of digital forensic and cyber security students at university. -- Dale McGleenon * Cyber Forensics & Network Incident Response * 'A fantastic summary of cyber incident response and digital forensics for existing practitioners and managers which covers the all-important impact on people! This a great book to whet the appetite of those aspiring to get into the field.' -- Martin Heyde * Senior Manager - Cyber Incident Response, Deloitte LLP *
Preface
Introduction
Part 1: Incident Response
Chapter 1: Understanding Information Security Incidents
Chapter 2: Before The Incident
Chapter 3: The Incident Response Process
Chapter 4: Things To Avoid During Incident Response
Chapter 5: After The Incident
Chapter 6: The Business of Incident Response
Part 2: Digital Forensics
Chapter 7: Introducing The Digital Forensics Investigation
Chapter 8: The Laws and Ethics of Digital Forensics
Chapter 9: Digital Forensic Tools
Chapter 10: Evidence Acquisition Basics
Chapter 11: Capturing A Moving Target
Chapter 12: Memory Forensics
Chapter 13: Cloud Forensics
Chapter 14: Mobile Device Forensics
Chapter 15: Reporting and Presenting Your Findings
Chapter 16: The Human Elements of Investigation
Mike Sheward is the Director of Information Security at Accolade Inc and runs a digital investigation consultancy, Secure Being LLC. He has worked in information security, primarily in Incident Response and Digital Forensics, in the UK and USA. In 2017, Mike published a book based on his own adventures in digital forensics, 'Digital Forensic Diaries.'