Chapter 2: Concepts of Digital Forensics and Incident Response

"You know my method. It is founded upon the observation of trifles."

— Arthur Conan Doyle, The Boscombe Valley Mystery – a Sherlock Holmes Short Story

One of the fastest-growing cybersecurity fields is Digital Forensic and Incident Response (DFIR). The impact of cybercrime and the reporting of attacks on individuals and organizations have created a significant demand for specialized professionals in these areas to support the investigation of cases from a legal point of view and to ascertain specific details regarding the attacks' context.

Incident response and digital forensic investigation are two activities that are nearly related and should be done in a coordinated manner. Responding ...

Get Incident Response with Threat Intelligence now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.