Information technology -- Security techniques -- Incident investigation principles and processes
(Only available in English)
ISO/IEC 27043:2015 provides guidelines based on idealized models for common incident investigation processes across various incident investigation scenarios involving digital evidence. This includes processes from pre-incident preparation through investigation closure, as well as any general advice and caveats on such processes. The guidelines describe processes and principles applicable to various kinds of investigations, including, but not limited to, unauthorized access, data corruption, system crashes, or corporate breaches of information security, as well as any other digital investigation.
In summary, this International Standard provides a general overview of all incident investigation principles and processes without prescribing particular details within each of the investigation principles and processes covered in this International Standard. Many other relevant International Standards, where referenced in this International Standard, provide more detailed content of specific investigation principles and processes.
Document published on: 2015-03-01 Edition: 1 (Monolingual) ICS: 35.040 Status: Published Stage: 60.60 (2015-03-04) TC/SC: ISO/IEC JTC 1/SC 27 Number of Pages: 30
This standard has not been revised
No corrigenda or amendments available