Posts

Showing posts from September, 2017

COMPUTER FORENSIC EVIDENCE COLLECTION AND MANAGEMENT

Source: http://slideplayer.com/slide/3462754/ Introduction Computer and electronic evidence consists of data and information that is stored on or transmitted by some device. It is fragile and can be easily damaged, modified, or destroyed. All activities at an incident scene must be in compliance with official departmental or corporate policies and procedures. First responders must visually identify potential evidence, whether conventional physical evidence or electronic evidence. Network and telephone connections must be identified. The objective of an electronic forensic investigation is usually to provide digital evidence of a specific or general activity. Rigid recovery procedures are required when conducting computer and electronic forensic investigations. There are numerous situations involving corporate security issues and criminal activities that might profit from an electronic forensic investigation. The physical environment of the incident scene in a business setting ca