How you prepare your team for court testimony

Assignment Help Business Management
Reference no: EM13806868

Scenario

You are the lead forensics investigator for XYZ, Inc. -- an industry leading cyber forensic company. You have just been notified that a top 5 health care company (HCC Partners in Life) has hired your company to investigate a potential breach of their medical records system.

The HCC Security Operations Center (SOC) identified some "inconsistencies" in the intrusion detection system (IDS) logs that caused the reliability to be questioned. HCC uses Snort IDS' running on Linux systems. In addition, the lead HCC database administrator received a strange e-mail from Human Resources (HR), which contained a benefits attachment. When she opened the attachment, the document was blank. She noticed that her system has been acting "strangely" after opening the attachment. She operates a Microsoft Windows XP workstation.

Your team has been tasked with analyzing the HCC network, database server, and any workstations you suspect to determine if there was a breach and any potential patient data leakage. The database server is a Microsoft Windows 2003 Server running Microsoft SQL Server 2008.

If there is any evidence of a breach, HHC has a history of taking these types of incidents to court for prosecution to the full extent of the law.

Note: You are representing the forensic team in this case scenario. The final exam is individual work with no collaboration permitted. 

Your Tasking-

  • Describe your plan for processing the potential crime/incident scene. (30 points). Some of the items you will want to cover include (not all inclusive):
  1. How will your team c?
  2. How will you prepare for the search?
  3. What steps will your team take if you need to seize any digital evidence?
  4. What documentation processes will you follow to help support any potential legal proceedings?
  5. How will your team/company ensure proper storage/chain of evidence processes are followed?
  • Discuss how your team will approach and process the database administrator's computer -- considering the potential malware on her system.
  1. Include the steps you will use to image her drive.
  2. The areas on her system you will analyze for potential evidence of infection and/or modification.
  3. Other items.
  4. Discuss how your team will approach and process the database server -- as this is the location for patient medical records. (15 points).
  5. Include the steps you will use to image the server's hard drive.
  6. The areas on the server's system you will analyze for potential evidence of infection and/or modification.
  7. Other items.
  • Discuss how you prepare your team to be expert witnesses or support any expert testimony court requirements.
  1. Include the steps you take in the documentation phases of your investigation.
  2. How you prepare your team for court testimony.
  3. Ethics responsibilities you follow and require in your team's performance.

Reference no: EM13806868

Questions Cloud

Define organization incorporates affirmative action policies : the task of ensuring that your organization properly incorporates Affirmative Action policies into your hiring practices
Containerization and intermodalism : What is the difference between containerization and intermodalism? Explain in detail and provide sources to support your discussion. Minimum of 250 words APA format.
The central limit theorem application issues : Concerning your answers to parts a through c, what assumptions did you make (if any)? Does the Central Limit Theorem apply? Why or why not?
Write a review paper about the movie the great gatsby : Write a review paper about the movie "The Great Gatsby" by F Scott Fitzgerald.
How you prepare your team for court testimony : How you prepare your team for court testimony. Ethics responsibilities you follow and require in your team's performance
Elements of organizational effectiveness : Research and address the elements of organizational effectiveness that will improve interactions in a presentation for senior leaders:
How do you define competitiveness and strategy : Based on your research, how would you define Operations Management? How do you define Competitiveness and Strategy? How does Productivity impact the entire organization? Explain how Forecasting is integral to every organization.
Research health care interdisciplinary relationships : Such as radiology working with the emergency room, or working in a pharmaceutical company, that the marketing department needs to collaborate with the development department.
The world of internet search engines related issues : What would you say is a top product or service today? Explain why you see them as such and also why they are better than the competition

Reviews

Write a Review

Business Management Questions & Answers

  Does exetron use of a similar device infringe on the doney

Given that the Doney had not used their device for automobile wheel balancing, does Exetron use of a similar device infringe on the Doney patent?

  Economics multiple choice compute output increase profit

economics multiple choice compute output increase profit marginal revenuet-shirt enterprises is selling in a purely

  Current policy issues on energyshow current policy issues

current policy issues on energy.show current policy issues regarding consumption of fossil fuels the creation of

  Explain restrictions on multinational corporations

Explain Restrictions on Multinational Corporations and What are few more common restrictions on the activities of multinational corporations in host countries?

  Create a professional development plan

Create a professional development plan to address the characteristics of the Learning Team members both individually and as a group and your ability to lead them

  Department efficiency review committee taskscommittees can

department efficiency review committee taskscommittees can either hinder or help an organizations quest for optimum

  How much revenue is recognized on the march income

How much revenue is recognized on the March income

  Employment in security services

Workplace Security - what are the prerequisites for employment in security services?

  Program and portfolio selection

Program and Portfolio Selection

  Important information about leaders versus managersif you

important information about leaders versus managersif you are leading people are you not a leader? a leader cannot be

  Explain the scenerios for organizational psychology

Organizations often consider new employees to be a liability and compare and contrast productive and counterproductive work behavior and organizational citizenship behavior

  Every country in the world is constructed around the same

Every country in the world is constructed around the same set of institutional frameworks that differ only in how governments manage them. Identify the specific components of an institution. Next, use two (2) examples of institutions -such as ..

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd