Hands-on Incident Response and Digital Forensics

By (author) Mike Sheward

Publication date: 12 Jul 2018

Incident response is the method by which organisations take steps to identify and recover from an information security incident, with as little impact as possible on business as usual. Digital forensics is what follows - a scientific investigation into the causes of an incident with the aim of bringing the perpetrators to justice. These two disciplines have a close but complex relationship and require a balancing act to get right, but both are essential when an incident occurs. In this practical guide, the relationship between incident response and digital forensics is explored and you will learn how to undertake each and balance them to meet the needs of an organisation in the event of an information security incident. Best practice tips and real-life examples are included throughout.
Mike Sheward is the Director of Information Security at Accolade Inc and runs a digital investigation consultancy, Secure Being LLC. He has worked in information security, primarily in Incident Response and Digital Forensics, in the UK and USA. In 2017, Mike published a book based on his own adventures in digital forensics, 'Digital Forensic Diaries.'

Dimensions: 244x170mm

Print ISBN-13: 9781780174204

Ebook ISBN-13: 9781780174228

232 pages

Imprint: BCS, The Chartered Institute for IT

Preface
Introduction

Part 1: Incident Response
Chapter 1: Understanding Information Security Incidents
Chapter 2: Before The Incident
Chapter 3: The Incident Response Process
Chapter 4: Things To Avoid During Incident Response
Chapter 5: After The Incident
Chapter 6: The Business of Incident Response

Part 2: Digital Forensics
Chapter 7: Introducing The Digital Forensics Investigation
Chapter 8: The Laws and Ethics of Digital Forensics
Chapter 9: Digital Forensic Tools
Chapter 10: Evidence Acquisition Basics
Chapter 11: Capturing A Moving Target
Chapter 12: Memory Forensics
Chapter 13: Cloud Forensics
Chapter 14: Mobile Device Forensics
Chapter 15: Reporting and Presenting Your Findings
Chapter 16: The Human Elements of Investigation

‘A great book which I could see on the shelf of any investigator or included in the book lists of digital forensic and cyber security students at university’.

Dale McGleenon
Cyber Forensics & Network Incident Response

'A fantastic summary of cyber incident response and digital forensics for existing practitioners and managers which covers the all-important impact on people! This a great book to whet the appetite of those aspiring to get into the field.'

Martin Heyde
Senior Manager - Cyber Incident Response, Deloitte LLP