the importance of using digital forensics in a cybercrime
Forensic investigators are essential because they are the ones who find information that has been
hidden or deleted to solve crimes. They typically follow these three steps: data collection, analysis, and
presentation. Collected data needs to be stored in a way that keeps its integrity. By doing this, "it ensures
it cannot be accidentally contaminated or tampered with" (Lutkevich, 2021). Investigators analyze digital
copies of the storage media in a sterile environment to gather information for the cases. They then
present their findings in legal proceedings, where a judge or jury uses it to help determine the results of
a case or lawsuit.
how a cyber professional uses a forensics kit to collect digital data using software
There are many tools that a cyber professional use to collect data. Some tools used are reverse
steganography, stochastic, cross-drive analysis, live analysis, and deleted file recovery. A few steps
involved are obtaining a digital copy of the system being used, authenticating, and verifying the
reproduction, recovering deleted files using Autopsy Tool, and establishing a technical report.
what a cyber professional should do with the data that has been collected via a penetration test
Cyber professionals should take the data from penetration and vulnerability tests and use them to
correct any holes in the system. Without that data, no one would know what needs to be patched,
leaving the system and data vulnerable. I spoke with the head of cyber security for the City of Chandler,
and he said that since the breach, he has been doing nothing but running these scans to ensure the city's
network is secure.