Investigating Cybercrimes
摘要
This chapter supports you to achieve your fifth milestone (Investigate Cybercrimes) of Phase C (Security Incident and Breach Response Management). It contains a seven-step methodology that may be used to investigate cybercrimes, such as step 1: conduct initial assessment; step 2: confirm investigator readiness, etc. These investigation steps support the actions of step 10 (preserve evidence) of “Managing Information Security Incidents” (see Chapter 4 ) and step 3 (investigate data breaches) of “Managing Data Breaches” (see Chapter 6 ).