Download presentation
Presentation is loading. Please wait.
Published byLesley Sims Modified over 9 years ago
1
FORZA – Digital Forensics Investigation Framework that Incorporate Legal Issues Eric Ly
2
Digital Forensics? What is it? - It is a process, not an elephant, and it is not just one single process, but a group of tasks and processes in an investigation.
3
Fundamental Principles -IT Security - Confidentiality - Integrity - Availability -Digital Forensic - Reconnaissance - Reliability - Relevancy
4
RRR Reconnaissance - Collect, recover, decode, discover, extract, analyze and convert data that is kept on different storage media to readable evidence. Reliability - If the integrity of the evidence and the person relationship with the evidence is accepted as digital forensics, then it can be reliable in court. Relevancy - Even if evidence is admissible, relevancy of the evidence with the case affects the weight and usefulness of the evidence. Use a legal practitioner to advise what should be collected, to reduce time and cost in investigation.
5
FORZA Framework Eight Roles o Case leader o System/business owner o Legal advisor o Security/system architect/auditor o Digital forensics specialist o Digital forensics investigator/system administrator/operator o Digital forensics analyst o Legal prosecutor
6
FORZA Framework cont.
7
To bind roles, responsibilities and procedures together, a technology- independent digital forensics investigation framework would be required. Created by Zachman: FORensics ZAchman framework (FORZA) Each role or layers in this framework are interconnected to each other through sets of six categories of questions: o What o Why o How o Who o Where o When
9
Role example: Legal Advisor Legal objectives (Why) o What is the purpose of the dispute? Legal background and preliminary issues (What) o What data should be collected? Legal procedures for further investigation (How) o Is any warrant, search warrant required? Legal geography (Where) o Is that within jurisdiction of the country? Legal entities and participants (Who) o Who is/are the claimant/respondent? Legal timeframe (When) o What is the time limit of the case?
10
End Web hacking case Questions?
11
Reference Ieong, Ricci S.C. "FORZA – Digital Forensics Investigation Framework That Incorporate Legal Issues." Digital Investigation 3 (2006): 29-36. Web. 31 Oct. 2013..
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.