Professionalising the science of Digital Forensics - Policy Logging and audit-able record keeping as a Life-long record

Robert Bird, Diana Hintea, Mandeep Kaur Pannu

Research output: Contribution to conferencePaper

Abstract

This paper proposes that there is the potential to create the means by which Investigators might enhance the professionalism of their work, their employability (in certain circumstances) and create a framework within which their robust evidential recovery might be complemented. The concept of extending the current practise of incident and investigation record keeping to something akin to an Aeronautical Pilots Logbook: i.e. a record of all matters to do with their flying history. In respect of how that translates in the Digital Investigation realm, a comprehensive record of all elements that might constitute an individual’s record of work and development. Although the natural environment of debating note taking for digital forensic evidential purposes is legal in nature, the origins of this paper relate less to Law than the processes involved in investigation and are a good deal more fundamental than examining forensic artefacts. They also reflect the concepts of professionalising practise and establishing an understanding of what constitutes evidential sufficiency for the purposes of court proceedings, but how this process can be applied to individual development and progress. By taking the rationale that governs the investigative note taking employed by Senior Investigating Officers (SIOs), investigating the most serious and complex of criminal offences there is an opportunity to enhance current contemporaneous note taking and keeping. The object in so doing is twofold: codify current practices and give them a framework that is consistent and well understood; and secondly, to establish the recorded decision making processes to make the auditing of an investigation a much more transparent, obvious and sequential process. Inevitably, there is a need to consider the legal aspects of how note taking has relevance to proceedings and whilst the paper refers to Association of Chief Officers (ACPO) Principles regarding Digital Evidence, the universal application of these concepts should be understood.
Original languageEnglish
Pages(in press)
Publication statusAccepted/In press - 2 Apr 2017
EventEuropean Conference on Cyber Warfare and Security - Dublin, Ireland
Duration: 29 Jun 201730 Jun 2017
Conference number: 16
http://www.academic-conferences.org/conferences/eccws/

Conference

ConferenceEuropean Conference on Cyber Warfare and Security
Abbreviated titleECCWS
CountryIreland
CityDublin
Period29/06/1730/06/17
Internet address

Fingerprint

audit
science
employability
decision making process
auditing
incident
artifact
offense
Law
history
evidence

Cite this

Bird, R., Hintea, D., & Pannu, M. K. (Accepted/In press). Professionalising the science of Digital Forensics - Policy Logging and audit-able record keeping as a Life-long record. (in press). Paper presented at European Conference on Cyber Warfare and Security, Dublin, Ireland.

Professionalising the science of Digital Forensics - Policy Logging and audit-able record keeping as a Life-long record. / Bird, Robert; Hintea, Diana; Pannu, Mandeep Kaur.

2017. (in press) Paper presented at European Conference on Cyber Warfare and Security, Dublin, Ireland.

Research output: Contribution to conferencePaper

Bird, R, Hintea, D & Pannu, MK 2017, 'Professionalising the science of Digital Forensics - Policy Logging and audit-able record keeping as a Life-long record' Paper presented at European Conference on Cyber Warfare and Security, Dublin, Ireland, 29/06/17 - 30/06/17, pp. (in press).
Bird R, Hintea D, Pannu MK. Professionalising the science of Digital Forensics - Policy Logging and audit-able record keeping as a Life-long record. 2017. Paper presented at European Conference on Cyber Warfare and Security, Dublin, Ireland.
Bird, Robert ; Hintea, Diana ; Pannu, Mandeep Kaur. / Professionalising the science of Digital Forensics - Policy Logging and audit-able record keeping as a Life-long record. Paper presented at European Conference on Cyber Warfare and Security, Dublin, Ireland.
@conference{12e4ec88b8ed4a40a83b846973154118,
title = "Professionalising the science of Digital Forensics - Policy Logging and audit-able record keeping as a Life-long record",
abstract = "This paper proposes that there is the potential to create the means by which Investigators might enhance the professionalism of their work, their employability (in certain circumstances) and create a framework within which their robust evidential recovery might be complemented. The concept of extending the current practise of incident and investigation record keeping to something akin to an Aeronautical Pilots Logbook: i.e. a record of all matters to do with their flying history. In respect of how that translates in the Digital Investigation realm, a comprehensive record of all elements that might constitute an individual’s record of work and development. Although the natural environment of debating note taking for digital forensic evidential purposes is legal in nature, the origins of this paper relate less to Law than the processes involved in investigation and are a good deal more fundamental than examining forensic artefacts. They also reflect the concepts of professionalising practise and establishing an understanding of what constitutes evidential sufficiency for the purposes of court proceedings, but how this process can be applied to individual development and progress. By taking the rationale that governs the investigative note taking employed by Senior Investigating Officers (SIOs), investigating the most serious and complex of criminal offences there is an opportunity to enhance current contemporaneous note taking and keeping. The object in so doing is twofold: codify current practices and give them a framework that is consistent and well understood; and secondly, to establish the recorded decision making processes to make the auditing of an investigation a much more transparent, obvious and sequential process. Inevitably, there is a need to consider the legal aspects of how note taking has relevance to proceedings and whilst the paper refers to Association of Chief Officers (ACPO) Principles regarding Digital Evidence, the universal application of these concepts should be understood.",
author = "Robert Bird and Diana Hintea and Pannu, {Mandeep Kaur}",
year = "2017",
month = "4",
day = "2",
language = "English",
pages = "(in press)",
note = "European Conference on Cyber Warfare and Security, ECCWS ; Conference date: 29-06-2017 Through 30-06-2017",
url = "http://www.academic-conferences.org/conferences/eccws/",

}

TY - CONF

T1 - Professionalising the science of Digital Forensics - Policy Logging and audit-able record keeping as a Life-long record

AU - Bird, Robert

AU - Hintea, Diana

AU - Pannu, Mandeep Kaur

PY - 2017/4/2

Y1 - 2017/4/2

N2 - This paper proposes that there is the potential to create the means by which Investigators might enhance the professionalism of their work, their employability (in certain circumstances) and create a framework within which their robust evidential recovery might be complemented. The concept of extending the current practise of incident and investigation record keeping to something akin to an Aeronautical Pilots Logbook: i.e. a record of all matters to do with their flying history. In respect of how that translates in the Digital Investigation realm, a comprehensive record of all elements that might constitute an individual’s record of work and development. Although the natural environment of debating note taking for digital forensic evidential purposes is legal in nature, the origins of this paper relate less to Law than the processes involved in investigation and are a good deal more fundamental than examining forensic artefacts. They also reflect the concepts of professionalising practise and establishing an understanding of what constitutes evidential sufficiency for the purposes of court proceedings, but how this process can be applied to individual development and progress. By taking the rationale that governs the investigative note taking employed by Senior Investigating Officers (SIOs), investigating the most serious and complex of criminal offences there is an opportunity to enhance current contemporaneous note taking and keeping. The object in so doing is twofold: codify current practices and give them a framework that is consistent and well understood; and secondly, to establish the recorded decision making processes to make the auditing of an investigation a much more transparent, obvious and sequential process. Inevitably, there is a need to consider the legal aspects of how note taking has relevance to proceedings and whilst the paper refers to Association of Chief Officers (ACPO) Principles regarding Digital Evidence, the universal application of these concepts should be understood.

AB - This paper proposes that there is the potential to create the means by which Investigators might enhance the professionalism of their work, their employability (in certain circumstances) and create a framework within which their robust evidential recovery might be complemented. The concept of extending the current practise of incident and investigation record keeping to something akin to an Aeronautical Pilots Logbook: i.e. a record of all matters to do with their flying history. In respect of how that translates in the Digital Investigation realm, a comprehensive record of all elements that might constitute an individual’s record of work and development. Although the natural environment of debating note taking for digital forensic evidential purposes is legal in nature, the origins of this paper relate less to Law than the processes involved in investigation and are a good deal more fundamental than examining forensic artefacts. They also reflect the concepts of professionalising practise and establishing an understanding of what constitutes evidential sufficiency for the purposes of court proceedings, but how this process can be applied to individual development and progress. By taking the rationale that governs the investigative note taking employed by Senior Investigating Officers (SIOs), investigating the most serious and complex of criminal offences there is an opportunity to enhance current contemporaneous note taking and keeping. The object in so doing is twofold: codify current practices and give them a framework that is consistent and well understood; and secondly, to establish the recorded decision making processes to make the auditing of an investigation a much more transparent, obvious and sequential process. Inevitably, there is a need to consider the legal aspects of how note taking has relevance to proceedings and whilst the paper refers to Association of Chief Officers (ACPO) Principles regarding Digital Evidence, the universal application of these concepts should be understood.

M3 - Paper

SP - (in press)

ER -