Legal and Compliance Flashcards

1
Q

What is the Cloud Act

A

Mandates how long electronic communications are kept for such as telephone records etc. The cloud act extends this to cover data stored outside of the US. It prohibits US companies not complying with a data request or warrant by claiming the data is stored outside of the US. It places the responsibility on the company on providing some means of access that is in the US - duplicate copies.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is FedRamp ?

A

US Federal act detailing the best practice for getting into the cloud.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

When does chain of custody start ?

A

As soon as the term evidence is used

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the main problem with forensics in the cloud ?

A

Locating where the data is

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is Virtual Machine Inspection ?

A

Software on hypervisor that allows you to inspect a running vm memory.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the first step in e-discovery

A

identification

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the seven steps to e-discovery ?

A

Identification, Preservation, Collection,Processed,Review,Production,Presentation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What stage of e-discovery is legal hold enforced ?

A

Preservation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

List the volatility order for evidence collection ?

A

Screen
RAM
Cache
Storage Drives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the three types of case e-discovery could be used for ?

A

Operational, Civil and Criminal

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is risk appetite ?

A

The amount of risk in terms of amount and money an organisation is willing to take on

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is risk profile ?

A

How well or not an organisation can withstand risk events

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is risk tolerance ?

A

For any particular risk event it is the positive or negative variance around our usual risk choice

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly