Investigation Playbooks
VANTOS Automated Investigative Playbooks provide a consistent strategy for repeatability of any investigation. Playbooks contain Essential Practices that allow investigators to run a large set of commonly occurring investigations out of the box. Playbooks may also be customized or new playbooks created by either an enterprise or a VANTOS Certified Integrator.
VANTOS has developed several Investigative Playbooks that are included in the V-Flexim product. They are based on the following Investigative Essential Practices we have developed in collaboration with prestigious audit and law firms:
- Unauthorized Access - Prepare for investigating a computer security breach involving unauthorized access. Such investigations could include root compromise of a server, web server defacement, password cracking, viewing sensitive data (i.e. payroll records) without authorization, using an unattended, logged-in workstation without permission, etc.
- Physical Security - Prepare for investigating suspected incidents that have bypassed the enterprise physical security measures. Such investigations could include workstation or laptop theft, defacement of enterprise property, theft of personal belongings from offices/cubicles, breaking and entering to offices or fenced areas, etc.
- Sexual Harassment - Prepare for investigating reported incidents of sexual harassment.
- E-Discovery - Prepare for gathering and discovering electronically stored data for possible civil and criminal litigations. Additionally, this could be used for Management Hold-Order investigations, legal discoveries, and digital forensic investigations.
- Digital Personnel - Prepare for investigating personnel/employee computer based wrongdoing. Such investigations could include HR violations, corporate security policy violations, and intellectual property theft.
- Malicious Code - Prepare for investigating a computer security breach involving malicious code. Such investigations could include e-mail virus infections, Trojan horse installation, and worm attacks.
