Forensic Focus - Computer Forensics, Computer Forensic Training, Digital Forensics
LoginRegisterForumsColumnistsPapersEducationGraduatesReviewsInterviewsNewsletterJobsEventsBlogAdvertise
Search Forensic Focus
Custom Search

Find us on Facebook
Follow Forensic Focus on Twitter
Columnists
"I erred." "I was mistaken."
Craig Ball
Single Sign On
Simon Biles
Copyright and games console modification
Dan Gaskell
To GUI or not to GUI?
Chris Hargreaves
'Web 2.0' as evidence
Sean McLinden
Sometimes it’s all about timing
Sam Raincock
Avoiding common job application errors
David Sullivan
Scalability: A Big Headache
Dominik Weber
Graduate Recruitment

computer forensics graduate jobs

Main Menu
MY ACCOUNT
COMMUNITY
EMPLOYMENT
EDUCATION
RESOURCES
MISC
Follow Forensic Focus

Join newsletter

Join LinkedIn group

Follow on Twitter

Subscribe to news

Subscribe to forums

Subscribe to blog

Subscribe to tweets

Members' blogs

External feeds

Bookmark & share: Bookmark and Share

Computer Forensics Newsletter
Newsletter

You must be a
registered user
to receive our newsletter

Register Now!

Enterprise Computer Forensics: A defensive and offensive strategy to fight computer crime

Page: 1/8

Fahmid Imtiaz
School of Computer and Information Science
Edith Cowan University
fahmidimtiaz@gmail.com

Abstract

As days pass and the cyber space grows, so does the number of computer crimes. The need for enterprise computer forensic capability is going to become a vital decision for the CEO's of large or even medium sized corporations for information security and integrity over the next couple of years. Now days, most of the companies don't have in house computer/digital forensic team to handle a specific incident or a corporate misconduct, but having digital forensic capability is very important and forensic auditing is very crucial even for small to medium sized organizations. Most of the corporations and organizations are still not aware of the risks and this can be very harmful in the long run. This paper will particularly focus on examining different aspects of enterprise computer forensics with in-house forensics capability. It will also try to clarify some of the issues that surround enterprise computer forensics.

Keywords

Enterprise computer forensics, computer crime, digital forensics.

INTRODUCTION

In today's fast growing economy, a company's IT infrastructure controls a significant part of business and communication needs. The needs are obvious but often companies misunderstand or sometimes deliberately ignore the need for proper security measures to secure the company's network resources and intellectual property. A single security breach or an attack can cause great financial and reputation loss, which can be devastating for a well-known organization. As security experts are trying their best to defend against the latest forms of attacks, attackers are moving on devising plans and potentials for more sophisticated attacks. This causes growing concerns for security experts around the world. That is why organizations really have to realize the risks before an actual attack or security breach. Therefore, both internal and external threats should be considered and a significant portion of the IT budget of an organization needs to be devoted for hiring security experts and taking proper security measures. Now days, security experts prefer detecting and tracing attacks before an actual attack and they also try to motivate the organizations to think about the post attack scenario. A certain security breach can leave different trails and clues, which helps forensic experts to identify the person/s responsible for the incident. Of course, external forensic teams can be brought in and they can solve a certain case/security breach. Nevertheless, companies have to understand that this is an ongoing problem and it repeats over time. Often the company looses control of the case or hide information from the third party forensics examiners as sensitive internal issues/secrets can be revealed. Having in-house forensic team can save both time and money and it would reduce the chance of information leakage about any internal matters. Therefore, having an in-house forensic team to validate and gather information that can have forensic value will help a company to defend against attacks and prosecute attackers; as a result, save the company from financial loss. Companies and organizations that deal with sensitive customer information like credit card numbers; health records, mortgage information etc. are particularly vulnerable to attacks. Other companies no matter what type of business they do are not safe because IT is almost an essential part of every business now days. Every company deals with sensitive business information no matter how small and regardless of what business they do. Attacks and intellectual property theft is more common these days as it was couple of years ago. A company would be fortunate if they were able to recover the financial loss caused by an attack/ breach but their reputation will be at stake and what if the attack comes from an external source, which sometimes makes prosecuting the attacker even more difficult. This is where enterprise computer forensics comes in with in-house forensic experts and save a company from disaster. Forensic audits can reveal information that would be some intruder's nightmare. To be very specific, in-house forensic teams can save a company from both financial and intellectual property losses in most cases. Forensic audits are vital to analyze and validate information that enables experts to scientifically and forensically analyze and reconstruct the events that took place. This paper examines how enterprise computer forensics can help to trace and deal with attacks and intellectual property thefts when applied in-house. It will also identify some important issues related to enterprise computer forensics.






Next Page (2/8) Next Page


Forensic Education

computer forensics education choices COURSE DIRECTORY

User Info

Welcome Anonymous

Nickname

Membership:
Latest: vanya66
New Today: 7
New Yesterday: 19
Overall: 15536

People Online:
Members: 6
Visitors: 27
Bots: 6
Staff: 0
Staff Online:

No staff members are online!
Latest Jobs

Computer Forensic - Associate - London - £45,000-£55,000pa+
Last post by ForensicsRecruiter in Computer Forensics Job Vacancies on Sep 01, 2010 at 14:34:53

Computer Forensic Specialist - Team Lead - London £55-£80k+
Last post by ForensicsRecruiter in Computer Forensics Job Vacancies on Sep 01, 2010 at 14:23:04

COMPUTER FORENSIC/EDISCOVERY CONTRACT ROLE, LONDON 4-8 WEEKS
Last post by ScottBurkeman in Computer Forensics Job Vacancies on Aug 27, 2010 at 16:29:03

Computer Forensic Vacancy South Wales
Last post by stezer2000 in Computer Forensics Job Vacancies on Aug 19, 2010 at 09:41:54

CF Investigator (LE experience). London
Last post by DavidSullivan in Computer Forensics Job Vacancies on Aug 18, 2010 at 17:00:41

Computer/Video Forensic Examiners (Fredericksburg, VA, USA)
Last post by snorris in Computer Forensics Job Vacancies on Aug 18, 2010 at 00:09:50

Senior Forensic Computer Examiner - London
Last post by pgro in Computer Forensics Job Vacancies on Aug 17, 2010 at 13:26:19

Phd studentship available at University of Surrey.
Last post by apurva.rustagi in Computer Forensics Job Vacancies on Aug 16, 2010 at 22:52:52

Consultant- London- £25K-£40K
Last post by Teval in Computer Forensics Job Vacancies on Aug 05, 2010 at 07:37:45

Forensic Consultant - Singapore
Last post by darrencerasi in Computer Forensics Job Vacancies on Aug 05, 2010 at 01:00:18

Computer Forensics Blog
· 'Web 2.0' as evidence
· Scalability: A Big Headache
· Single Sign On
· Authentication and Authorisation
· UK student competition: Win free training on "Investigating Connection Records" course
· 10% Discount on Connection Records/Intro to CSA Training (UK)
· Mobile Forensics Training: Investigating Connection Records (UK, Aug 23/24)
· Windows Search forensics
· Computer Forensics - sometimes it’s all about timing
· Forensic Focus 2010 survey

read more...
Members' Blogs

Start Blogging

What is Computer Forensics?
Computer forensics (or forensic computing) is the use of specialized techniques for recovery, authentication, and analysis of electronic data with a view to presenting evidence in a court of law.
Computer Forensics Downloads
  1: Forensic Examination of Digital Evidence: A Guide for Law Enforcement (pdf)
  2: ACPO Good Practice Guide for Computer based Electronic Evidence
  3: Electronic Crime Scene Investigation: A Guide for First Responders (pdf)
  4: Ancysoft Data Recovery Software
  5: Forensics Plan Guide & Forensic Cookbook
  6: HELIX incident response CD
  7: PDA Forensic Tools:An Overview and Analysis
  8: Recover My Files
  9: Autopsy Forensic Browser Version 2.03 (source code)
  10: Handy Recovery
Forensic Focus

Forensic Focus

Copy and paste the text below to insert the button displayed above on your site. Thanks for your support!


Use of this website signifies your agreement to the Terms of Use/Privacy Policy available here.

All logos and trademarks in this site are property of their respective owner. The comments are property of their posters, all the rest © 2010 Forensic Focus


Interactive software released under GNU GPL, Code Credits, Privacy Policy
.: fisubsilver shadow phpbb2 style by Daz :: CPG-Nuke port by norseman :: ported to CPG-Dragonfly by jamin :.