Understanding Digital Profession Investigations Flashcards

1
Q

Digital Forensics

A

application of computer science and investigative procedures for a legal purpose involving the analysis of digital evidence after proper search authority, chain of custody, validation with mathematics, use of validated tools, repeatability, reporting, and possible expert presentation (also encompasses research and incident response)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Federal Rules of Evidence

A

created to ensure consistency in federal proceedings

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Fourth Amendment

A

protects everyone’s right to be secure from search and seizure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Investigating digital devices

A

includes:
-Collecting data securely
-Examining suspect data to determine details
-Presenting digital information in legal proceedings
-Applying laws to digital device practices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Data recovery

A

involves retrieving information that was deleted by mistake or lost during a power surge or server crash

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Threat assessment & risk management

A

tests and verifies the integrity of stand-along workstations and network servers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Network intrusion detection & incident response

A

detects intruder attacks by using automated tools and monitoring network firewall logs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Digital investigations

A

manages investigations and conducts forensics analysis of systems suspected of containing evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Understanding Case Law

A

-Existing laws can’t keep up with the rate of technological change
-When statutes don’t exist, case law is used
+Allows legal counsel to apply previous similar cases to current one in an effort to address ambiguity in laws
-Examiners must be familiar with recent court rulings on search and seizure in the electronic environment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Developing Digital Forensics Resources

A

-To supplement your knowledge:
+Develop and maintain contact with computing, network, forensic and investigative professionals
+Join technology investigative user groups in both the pubic and private sectors
+Attend training, workshops and seminars to engage in knowledge-sharing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Preparing for Digital Investigations

A

-Public-sector investigations involve government agencies responsible for criminal investigations and prosecution
-Private-sector investigations focus more on policy violations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Understanding Law Enforcement Agency Investigations

A

-When conducting public-sector investigations, you must understand laws on computer-related crimes including:
+Standard legal processes
+Guidelines on search and seizure
+How to build a criminal case

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Following Investigative Processes

A

-A criminal investigation usually begins when someone finds evidence of or witnesses a crime
+Witness/victim makes an allegation or suspicion of crime
-Police interview the complainant, investigate and writes a report about the investigation
-Investigation has to identify that a violation of law is suspected, may occur or has occurred.
+An arrest is made and/or search warrant executed
+If no violation of law, then investigation is closed
-Prosecution occurs
+ Guilt beyond reasonable doubt

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

First Responder

A

Responds to an incident/crime scene, assesses the situation and takes precautions to identify and preserve physical evidence.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Digital Evidence First Responder

A

Arrives on an incident/crime scene, assesses the situation, and takes precautions to collect and preserve digital evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Digital Evidence Specialist

A

has the skill to analyze collected-aquired data pursuant to investigative, forensic and legal parameters. (on scene and laboratory)