Real-Time Interactive Secure Forensic System (RTISFS)
Abstract
RTISFS will support identifying and defending against malicious insiders functionalities through: a wider range of access limitations; dynamic environment supporting interactions with users without revealing the depth of forensic and enforcement capabilities; scripted interrogatories to assist separating anomalies attributed to malicious insiders from those of honest intent; ability to increase levels of surveillance or limitation of access as increasing suspicion dictates to minimize dame; and extendable scripting language for handling various types of anomalies tailored for the subject domain. RTISFS will accomplish this according to all applicable legal procedures in such a way that all potential response options are maintained: legal action, turning , use of insider as unwitting communication channel, and collection and penetration of the adversary actor.
Document Details
- Document Type
- Technical Report
- Publication Date
- Nov 29, 2011
- Accession Number
- ADA552992
Entities
People
- Frank J. Sauer
- G. Hunter
- Miles D. Townes
- Neal Pollard
- Rebecca Givner-forbes
- Sharon S. Smith
- Stephen J. Lucasik
- Ted Russell
- W. E. Fritz
- William C. Yengst