Network Forensics - NIST SP 800-86 Anaysis
Subject
Writing
Course
Network Forensics
School
University of Michigan
Question Description
This assignment will strengthen your understanding of the network forensics process by providing insight from external sources to read and analyze.
1. Download and Read the National Institute of Standards and Technology Special Publication 800-86 (Links to an external site.) - "Guide to Integrating Forensic Techniques into Incident Response".
2. Write a FOUR (4) page, double spaced essay based on ONE of the four following topics from SP 800-86. Provide ONE quote from the NIST document in your response. Cite all sources used in your writing in APA FORMAT.
Remember: Writing style, grammar, punctuation and formatting is a big part of your work and your grade. The document should use one font for entire content and contain title and reference citations pages (not included in the 4 page length requirement)
Questions for the paper (Just two, Please don't give random answers not relating to the questions)
1) Based on NIST 800-86 Sections 2.2 and 2.3, Discuss the benefits and limitations of utilizing out-sourced versus on-staff forensics experts to respond to a data breach security incident. How does the size of the organization in terms of multiple globally-dispersed network connected offices affect this scenario?
2) Based on NIST 800-86 Section 2.6, Imagine you have just been hired as I.T. Security Operations Manager by a growing national corporation with no existing forensic security resources. Use your paper to make a business case to your Chief Executive Officer for the establishment of appropriate forensic personnel, policies and resources for the company based on NIST recommendations.