Welcome to computer forensic portal - your online resources to all computer foreniscs
 
Knowledge Articles
Books Database
Legal Cases
Forensic Dictionary
PDF documents
Web Resources
FAQ

 

Incident Response & Computer Forensics
Computer Forensics Jump Start
Computer forensics handbook
Computer Forensics for Dummies
Official EnCase Certified Examiner Study Guide
iPhone Forensics
cybercrime and digital forensics book
Hacking Exposed Computer Forensics
SQL Server Forensic Analysis

 

  Home > Book Reviews> Incident Response: Computer Forensics Toolkit

Incident Response: Computer Forensics Toolkit


Title Incident Response: Computer Forensics Toolkit
Author Douglas Schweitzer
Publisher Wiley Publishing, Inc
Year Published 2003

After an incident of computer intrusion has occurred, it often takes far longer time to analyze what is happening than the perpetrator committing the crime. Therefore, it is important that an organisation is prepared to response to any incidents that occurred. As preparing yourself or the organisation to response to computer security incidents is not your usual daily task, it requires technical knowledge, communication and coordination among personnel in charge of the incident response process to ensure that proper incident response is put in place and carried out correctly.

This book is written for everybody. Computer users who want to know more about acquiring and handling digital evidences. It is the “must have” book for network administrators, security personnel and executives. Basically, it is an introductory book to computer forensics and incident response. The book serves as both a guide and a tool to preparing you when an incident occurs.

Some of the key points you will learn include:

  • How to detect and analyze malicious codes when it enters the system.
  • Detect signs of an incident about to occur and specific response measures
  • Steps to searching, identifying and collecting evidences from network devices and data from memory
  • Prevent espionage, insider attacks and inappropriate use of the network
  • Develop policies and procedures to carefully audit the system

 

A look at the table of contents

  • Computer Forensics and Incident Response Essentials
  • Addressing Law Enforcement Considerations
  • Forensic Preparation and Preliminary Response
  • Windows Registry, Recycle Bin, and Data Storage
  • Analyzing and Detecting Malicious Code and Intruders
  • Retrieving and Analyzing Clues
  • Procedures for Collecting and Preserving Evidence
  • Incident Containment and Eradication of Vulnerabilities
  • Disaster Recovery and Follow-up
  • Responding to Different Types of Incidents
  • Assessing System Security to Prevent Further Attacks
  • Putting it All Together

Find this book at the national library:

http://catalogue.nlb.gov.sg/cgi-bin/cw_cgi?fullRecord+14348+3002+11875203+1+1

Call number: 364.168 SCH

 

 

© 2009
Computer Forensics Portal
All Rights Reserved

Disclaimer | Privacy Policy

Home | Contact | Sitemap

Knowledge Articles | Books Database | Legal Cases | Forensic Dictionary | Web Resources | Frequently Asked Questions