Practical Guideline For Digital Forensics Laboratory Accreditation - A Case Study
Practical Guideline For Digital Forensics Laboratory Accreditation - A Case Study
1 ISSN 2636-9680
eISSN 2682-9266
OIC-CERT Journal of Cyber Security
Volume 3, Issue 1 (April 2021)
3 ISSN 2636-9680
eISSN 2682-9266
OIC-CERT Journal of Cyber Security
Volume 3, Issue 1 (April 2021)
gaps between current practices and can they be assigned with forensic
ISO requirements were identified and cases. The test took a week. All the
presented in a report. This process analysts of the Client’s organization
took 2 weeks. have passed the test.
The next phase was to develop the With the process there and the
forensic process in writing. The analysts have been trained with the
documents that need to be developed process, next was to implement the
were quality manuals, policies, process. During this period, the Client
procedures, technical procedures, and must implement the forensic
forms. Input from analysts were processes by themselves. Records
heavily sought in order to create an must be created in order for the
adaptable process flow. Creativity in accrediting body to assess the
developing a short process flow, and implementation.
covers all essential forensic elements
was crucial. The whole process took 8 Phase 6 was the Client undergoing
weeks to complete. an internal audit. Three (3) auditors
have been assigned to audit the
Client’s laboratory to ensure
compliance with the ISO standard.
The audit took 1 week, and the auditor
took another week to produce the
audit report. At the end of 2 weeks,
the report was submitted to the Client.
issued to our Client. This whole documented so that the auditors and
process took 2 months to settle. In assessors could evaluate the works.
overall, it took our Client 14 months
to obtain accreditation from the first The fourth observation was strong
engagement with CyberSecurity commitment and cooperation from
Malaysia. the Client in order to keep up with the
planned schedule. In this case, the
Client had provided full commitment
IV. DISCUSSION towards the plan and hence the success
in obtaining accreditation in short
Based on the observation of the period of time.
whole accreditation process, it was
found that it was doable to get
accreditation in a short period of time, V. CONCLUSION
provided the lab is coached by
experience personnel. The This paper presented a practical
observations on other labs, particularly guide in obtaining ISO 17025 digital
CyberSecurity Malaysia, on average it forensic lab accreditation. The
took between 3 to 5 years before a lab is methodology as well as the lessons
awarded an accreditation. With the learnt throughout the whole journey
developed methodology, were listed. Future work would be to
CyberSecurity Malaysia was able to measure the effectiveness of having
shorten the duration to get the Client’s accreditation in a DFL.
lab accredited.
5 ISSN 2636-9680
eISSN 2682-9266
OIC-CERT Journal of Cyber Security
Volume 3, Issue 1 (April 2021)