Security Incidents mailing list archives

RE: REVIEW: "Incident Response", Douglas Schweitzer


From: "Chain, David (NA ITRC Team Lead)" <david.chain () hp com>
Date: Wed, 25 Jan 2006 14:19:22 -0800

I've read the last three and liked them. 

-----Original Message-----
From: Volker Tanger [mailto:vtlists () wyae de] 
Sent: Tuesday, January 24, 2006 11:59 PM
To: incidents () securityfocus com
Subject: Re: REVIEW: "Incident Response", Douglas Schweitzer

On Tue, 24 Jan 2006 16:45:07 -0700
"Stephen J. Smoogen" <smooge () gmail com> wrote:

On 1/24/06, Meadows, Chip <chip.meadows () usaa com> wrote:
Do not forget Brian Carrier's EXCELLENT book, "File System Forensic 
Analysis".
 This book and "Real Digital Forensics" were VERY HIGHLY recommended

by my mentors...


I found the O'Reilly book was good on setting up an Incident Response 
team versus Forensics work.
http://www.oreilly.com/catalog/incidentres/index.html


There are obviously more than one book with the title "Incident
Response" (according to Amazon):

1.) -reviewed here-
    "Incident Response: Computer Forensics Toolkit"
        by Douglas Schweitzer
        Wiley, 2003
        ISBN: 0-764526367

2.) "Incident Response"
        by Kenneth R. van Wyk, Richard Forno
        O'Reilly, 2001 
        ISBN 0-596-00130-4

3.) "Incident Response: A Strategic Guide to Handling System and Network
     Security Breaches"
        by E. Eugene Schultz, Russell Shumway 
        Sams, 2002
        ISBN 1578702569

4.) "Incident Response and Computer Forensics"
        by Chris Prosise, Kevin Mandia, Matt Pepe 
        McGraw-Hill Osborne Media, 2003
        ISBN 0-07222696X


-- 

Volker Tanger    http://www.wyae.de/volker.tanger/
--------------------------------------------------
vtlists () wyae de                    PGP Fingerprint
378A 7DA7 4F20 C2F3 5BCC  8340 7424 6122 BB83 B8CB


Current thread: