A framework to guide the implementation of proactive digital forensics in organizations

C. P. Grobler, C. P. Louwrens, S. H. Von Solms

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

46 Citations (Scopus)

Abstract

Most organizations underestimate the demand for digital evidence [1]. Often, when evidence is required to prove fraudulent transactions, not enough or trustworthy evidence is available to link the attacker to the incident. It is essential for organizations to prepare themselves for Digital Forensic (DF) investigations and ensure that entire organizational operating environment is prepared for example for an investigation (criminal or internal) or a compliance tests. The accepted literature on DF readiness concentrates mainly on evidence identification, handling and storage, first line incident response and training requirements [2]. It does not consider the proactive application of DF tools to enhance the corporate governance structures (specifically Information Technology (IT) governance). Pro-active DF (ProDF) as defined in this paper will enable an organization to take the initiative by implementing adequate measures to become DF ready, demonstrate due diligence for good corporate Governance, specifically IT Governance and provide a mechanism to assess and improve IT Governance frameworks. The purpose of this paper is to define, identify goals, steps, and deliverables of ProDF, identify dimensions of DF, and propose a theoretical DF management framework to guide the implementation of ProDF in an organization.

Original languageEnglish
Title of host publicationARES 2010 - 5th International Conference on Availability, Reliability, and Security
Pages677-682
Number of pages6
DOIs
Publication statusPublished - 2010
Event5th International Conference on Availability, Reliability, and Security, ARES 2010 - Krakow, Poland
Duration: 15 Feb 201018 Feb 2010

Publication series

NameARES 2010 - 5th International Conference on Availability, Reliability, and Security

Conference

Conference5th International Conference on Availability, Reliability, and Security, ARES 2010
Country/TerritoryPoland
CityKrakow
Period15/02/1018/02/10

Keywords

  • Comprehensive digital evidence
  • Digital forensics management framework
  • IT governance
  • Proactive digital forensics

ASJC Scopus subject areas

  • Computational Theory and Mathematics
  • Safety, Risk, Reliability and Quality

Fingerprint

Dive into the research topics of 'A framework to guide the implementation of proactive digital forensics in organizations'. Together they form a unique fingerprint.

Cite this