A Blueprint for Implementing Best Practice Procedures in a Digital Forensic Laboratory: Meeting the Requirements of ISO Standards and Other Best Practices - Softcover

Watson, David Lilburn; Jones, Andrew

 
9780128194799: A Blueprint for Implementing Best Practice Procedures in a Digital Forensic Laboratory: Meeting the Requirements of ISO Standards and Other Best Practices

Synopsis

Digital Forensic Processing and Procedures: Meeting the Requirements of ISO 17020, ISO 17025, ISO 27001 and Best Practice Requirements, Second Edition provides a one-stop shop for a set of procedures that meet international best practices and standards for handling digital evidence during its complete lifecycle. The book includes procedures, forms and software, providing anyone who handles digital evidence with a guide to proper procedures throughout chain of custody--from incident response straight through to analysis in the lab. This book addresses the whole lifecycle of digital evidence.

  • Provides a step-by-step guide on designing, building and using a digital forensic lab
  • Addresses all recent developments in the field
  • Includes international standards and best practices

"synopsis" may belong to another edition of this title.

About the Authors

David Lilburn Watson heads up Forensic Computing Ltd, a specialist forensic recovery and investigation company. He is responsible for the coordination and efficient delivery of the computer forensic and electronic evidence recovery services, digital investigations, and provides support for a broad range of investigative, security and risk consulting assignments. He is a Certified Fraud Examiner (CFE) and a Certified Information Forensic Investigator (CIFI), a Certified Computer Crime Investigator (CCCI), an Advanced Certified Computer Forensics Technician (CCFT). In addition to specialised forensic certifications he is a Certified Information Security Systems Professional (CISSP), a Certified Information Systems Manager (CISM) and a Certified Information Systems Auditor (CISA). David has also led Forensic Computing Ltd to ISO 27001 and ISO 9001 certification, making FCL one of very few consultancies to hold such important credentials in the field of forensic services.

Dr. Andrew Jones is a digital forensic and information security researcher and academic and has developed several tools and processes for the efficient and effective recovery of data from a range of devices. He has also participated and led a number of forensic investigations for criminal and civil cases.

Andrew has been involved in several information security projects for the Government Communications Electronic Security Group (CESG), the Office of the E-Envoy, the police and a defense contractor. He acted as the technical advisor for the then National Crime Squad Data Acquisition and Recovery Team and he is currently on the committees for five information security and computer forensic conferences. He also sat on two working groups of the governments Central Sponsor for Information Assurance National Information Assurance Forum. He holds posts as an adjunct professor at Edith Cowan University in Perth, Australia and the University of South Australia in Adelaide.

He has authored six books in the areas of Information Warfare, Information Security and Digital Forensics, including co-authoring Digital Forensics Processing and Procedures, First Edition.

From the Back Cover

A Blueprint for Implementing Best Practice Procedures in a Digital Forensic Laboratory:
Meeting the Requirements of ISO Standards and Other Best Practices, Second Edition
provides a one stop shop for a set of procedures that meet international best practice and international standards for handling digital evidence for its complete lifecycle. The procedures apply to ‘first responders’, forensic laboratories, individual staff and management whether they are law enforcement, government or civilian. The procedures are distilled from best practice from international standards, government procedures, corporate procedures, police and law enforcement procedures and generally accepted best practice. The procedures are jurisdiction independent and will need to be reviewed for specific jurisdictions.

There are currently are no specific procedures for handling evidence but there are some codes of practice and best practice and some international standards that address part of the issue. The new edition will provide procedures, forms and software to address this shortfall. This comprehensive second edition will follow the same format as the first edition, however will be thoroughly revised and updated with the latest requirements of the new standards.

Written by world-renowned digital forensics experts, this book is a must for any digital forensics lab. It provides anyone who handles digital evidence with a guide to proper procedure throughout the chain of custody--from incident response through analysis in the lab. This book will address the whole lifecycle of digital evidence.

"About this title" may belong to another edition of this title.