CS Professional · Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice · Cyber Security
In a forensic investigation, the term 'chain of custody' refers to which of the following?
Chain of custody is the documented, chronological record of everyone who handled the evidence, with dates and purposes, from seizure until production in court. It shows the evidence was protected from tampering and helps establish its authenticity and admissibility.
- AThe hierarchy of officers authorised to approve a cyber audit
- BThe encryption sequence used to protect stored evidence
- CThe list of servers connected in a network
- DDocumented record of who handled the evidence, when, and for what purpose, from seizure to productionCorrect
Explanation
Chain of custody is a chronological record of seizure, transfer, storage and analysis of evidence. It demonstrates that the evidence was not tampered with and supports its admissibility. The other options describe unrelated concepts.
Did you get it right without looking?
One question tells you little. A timed set on Cyber Security shows your real accuracy, how long you take and where you lose marks.
More Cyber Security questions
- A company detects ransomware encrypting files on one finance-department server connected to the corporate network. The incident team must ac…
- Kaveri Retail Pvt Ltd, an Indian company, suffers a ransomware attack that encrypts its servers. Under the CERT-In Directions of April 2022,…
- A hacker in a foreign country, using a computer located outside India, gains unauthorised access to a server located in Hyderabad belonging …
- A forensic investigator must collect evidence from a running server suspected of a breach. Following the order of volatility, which item sho…
- In digital forensics, what is the purpose of maintaining a chain of custody document for a seized mobile phone?
- Which of the following best describes 'two-factor authentication' as a cyber security control?