Universiti Teknologi Malaysia Institutional Repository

Towards the development of an integrated incident response model for database forensic investigation field

Al-Dhaqm, Arafat and Abd. Razak, Shukor and Siddique, Kamran and Ikuesan, Richard Adeyemi and Kebande, Victor R. (2020) Towards the development of an integrated incident response model for database forensic investigation field. IEEE Access, 8 . 145018 -145032. ISSN 2169-3536

[img]
Preview
PDF
3MB

Official URL: http://dx.doi.org/10.1109/ACCESS.2020.3008696

Abstract

For every contact that is made in a database, a digital trace will potentially be left and most of the database breaches are mostly aimed at defeating the major security goals (Confidentiality, Integrity, and Authenticity) of data that reside in the database. In order to prove/refute a fact during litigation, it is important to identify suitable investigation techniques that can be used to link a potential incident/suspect to the digital crime. As a result, this paper has proposed suitable steps of constructing and Integrated Incident Response Model (IIRM) that can be relied upon in the database forensic investigation field. While developing the IIRM, design science methodology has been adapted and the outcome of this study has shown significant and promising approaches that could be leveraged by digital forensic experts, legal practitioners and law enforcement agencies. This is owing to the fact, that IIRM construction has followed incident investigation principles that are stipulated in ISO guidelines.

Item Type:Article
Uncontrolled Keywords:database security, during-incident response, post-incident response, pre-incident response
Subjects:Q Science > QA Mathematics > QA75 Electronic computers. Computer science
Divisions:Computing
ID Code:91030
Deposited By: Yanti Mohd Shah
Deposited On:31 May 2021 13:44
Last Modified:31 May 2021 13:44

Repository Staff Only: item control page