Discuss how you prepare your team for court testimony

Assignment Help Computer Engineering
Reference no: EM131721640

You are the lead forensics investigator for XYZ, Inc. -- an industry leading cyber forensic company. You have just been notified that a top 5 health care company (HCC Partners in Life) has hired your company to investigate a potential breach of their medical records system.

The HCC Security Operations Center (SOC) identified some "inconsistencies" in the intrusion detection system (IDS) logs that caused the reliability to be questioned. HCC uses Snort IDS' running on Linux systems. In addition, the lead HCC database administrator received a strange e-mail from Human Resources (HR), which contained a benefits attachment. When she opened the attachment, the document was blank. She noticed that her system has been acting "strangely" after opening the attachment. She operates a Microsoft Windows XP workstation.

Your team has been tasked with analyzing the HCC network, database server, and any workstations you suspect to determine if there was a breach and any potential patient data leakage. The database server is a Microsoft Windows 2003 Server running Microsoft SQL Server 2008.
If there is any evidence of a breach, HHC has a history of taking these types of incidents to court for prosecution to the full extent of the law.

. Discuss how you prepare your team to be expert witnesses or support any expert testimony court requirements. (600 word answer).

· Include the steps you take in the documentation phases of your investigation.

· How you prepare your team for court testimony.

· Ethics responsibilities you follow and require in your team's performance.

Reference no: EM131721640

Questions Cloud

Evaluate the need for different types of spread spectrum : Evaluate the need for different types of spread spectrum models in wireless technologies
Digital equipment and media that would have been seized : What additional sources of evidence might there be besides the digital equipment and media that would have been seized
Cost of new common stock : If the after-tax cost of debt is 7%, cost of preferred stock is 9%, the cost of retained earnings is 14%, and the cost of new common stock is 17%.
Calculate the utlization at this company : Another 30 min of time is used in bathroom breaks and small talk. Calculate the utlization at this company.
Discuss how you prepare your team for court testimony : Ethics responsibilities you follow and require in your team's performance
How would this impact other aspects of the promotional mix : How would this impact other aspects of the promotional mix? Does brand play any roll in this process?
Describe the major problems facing the key person : Briefly describe the major problems facing the manager/key person. Identify and link the symptoms and root causes of the problems.
Explain which charting method you would select to display : Critical to ensure that the fundamental structure of data is understood. If data are only presented in a summarized, narrative form, misinterpretation
Why should cash flow be projected for a new product : Why should cash flow be projected for a new product and what other factors should be included in the analysis?

Reviews

Write a Review

Computer Engineering Questions & Answers

  Mathematics in computing

Binary search tree, and postorder and preorder traversal Determine the shortest path in Graph

  Ict governance

ICT is defined as the term of Information and communication technologies, it is diverse set of technical tools and resources used by the government agencies to communicate and produce, circulate, store, and manage all information.

  Implementation of memory management

Assignment covers the following eight topics and explore the implementation of memory management, processes and threads.

  Realize business and organizational data storage

Realize business and organizational data storage and fast access times are much more important than they have ever been. Compare and contrast magnetic tapes, magnetic disks, optical discs

  What is the protocol overhead

What are the advantages of using a compiled language over an interpreted one? Under what circumstances would you select to use an interpreted language?

  Implementation of memory management

Paper describes about memory management. How memory is used in executing programs and its critical support for applications.

  Define open and closed loop control systems

Define open and closed loop cotrol systems.Explain difference between time varying and time invariant control system wth suitable example.

  Prepare a proposal to deploy windows server

Prepare a proposal to deploy Windows Server onto an existing network based on the provided scenario.

  Security policy document project

Analyze security requirements and develop a security policy

  Write a procedure that produces independent stack objects

Write a procedure (make-stack) that produces independent stack objects, using a message-passing style, e.g.

  Define a suitable functional unit

Define a suitable functional unit for a comparative study between two different types of paint.

  Calculate yield to maturity and bond prices

Calculate yield to maturity (YTM) and bond prices

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd