Information technology. Security techniques. Guidelines for the analysis and interpretation of digital evidence

Information technology. Security techniques. Guidelines for the analysis and interpretation of digital evidence

Regular price
£232.00
Sale price
£232.00
Regular price
£116.00
Sold out
Unit price
per 

What is ISO/IEC 27042 - Security techniques — Guidelines for the analysis and interpretation of digital evidence about?  

ISO/IEC 27042provides guidance on the analysis and interpretation of digital evidence in a manner which addresses issues of continuity, validity, reproducibility, and repeatability.  

ISO/IEC 27042 encapsulates best practice for selection, design, and implementation of analytical processes and recording sufficient information to allow such processes to be subjected to independent scrutiny when required.  

ISO/IEC 27042 provides guidance on appropriate mechanisms for demonstrating proficiency and competence of the investigative team. 

Analysis and interpretation of digital evidence can be a complex process. In some circumstances, there can be several methods which could be applied and members of the investigative team will be required to justify their selection of a particular process and show how it is equivalent to another process used by other investigators. In other circumstances, investigators may have to devise new methods for examining digital evidence which has not previously been considered and should be able to show that the method produced is “fit for purpose”. 

Application of a particular method can influence the interpretation of digital evidence processed by that method. The available digital evidence can influence the selection of methods for further analysis of digital evidence which has already been acquired. 

ISO/IEC 27042 provides a common framework, for the analytical and interpretational elements of information systems security incident handling, which can be used to assist in the implementation of new methods and provide a minimum common standard for digital evidence produced from such activities. 

Who is ISO/IEC 27042 - Security techniques — Guidelines for the analysis and interpretation of digital evidence for? 

ISO/IEC 27042 on Security techniques — Guidelines for the analysis and interpretation of digital evidence is useful for: 

  • Security systems handling department 
  • Risk mitigation department 
  • Information technology industry 
  • Investigation agencies 

Why should you use ISO/IEC 27042 - Security techniques — Guidelines for the analysis and interpretation of digital evidence? 

ISO/IEC 27042 provides guidance on the conduct of the analysis and interpretation of potential digital evidence in order to identify and evaluate digital evidence which can be used to aid understanding of an incident. The exact nature of the data and information making up the potential digital evidence will depend on the nature of the incident and the digital evidence sources involved in that incident. 

ISO/IEC 27042 is intended to complement other standards and documents which give guidance on the investigation of, and preparation to investigate, information security incidents. It is not a comprehensive guide, but lays down certain fundamental principles which are intended to ensure that tools, techniques, and methods can be selected appropriately and shown to be fit for purpose should the need arise. 

ISO/IEC 27042 describes the means by which those involved in the early stages of an investigation, including initial response, can assure that sufficient potential digital evidence is captured to allow the investigation to proceed appropriately.