This paper discusses the development of a South African model for Live Forensic Acquisition Liforac. The Liforac model is a comprehensive model that presents a range of aspects related to Live Forensic Acquisition. The model provides forensic investigators with guidelines on how to proceed during an investigation. It provides forensic investigators with a robust foundation to understand what needs to happen during an investigation, the order in which these actions need to take place and the reasoning behind these actions. It supports forensic soundness.
Information Security South Africa (ISSA) Conference 2008, School of Tourism & Hospitality (STH), University of Johannesburg, South Africa, 7-9 July 2008
IT Incident Management & IT Forensics (IMF 2008), Mannheim, Germany, 23 - 25 September 2008
The lack of a fully inclusive guideline document to assist the functioning of sufficient Information Security Governance is common in the business environment. This article focuses on developing such a guideline document, based on a number of best practice documents. The resulting model covers all the relevant aspects on strategic, management and technical level when implemented altogether. This model includes the related aspects of Corporate Governance, Information Technology Governance and Information Security Governance. By applying a best practice driven Information Security Governance model, an organisation ensures that all aspects regarding Information Security Governance are covered in detail. Additionally, the implementation of the best practice driven Information Security Governance model allows organisations to conform to major best practice documents, standards and legal documents.
The lack of a fully inclusive guideline document to assist the functioning of sufficient Information Security Governance is common in the business environment. This article focuses on developing such a guideline document, based on a number of best practice documents. The resulting model covers all the relevant aspects on strategic, management and technical level when implemented altogether. This model includes the related aspects of Corporate Governance, Information Technology Governance and Information Security Governance. By applying a best practice driven Information Security Governance model, an organisation ensures that all aspects regarding Information Security Governance are covered in detail. Additionally, the implementation of the best practice driven Information Security Governance model allows organisations to conform to major best practice documents, standards and legal documents.