Home > Security Tips > Risk Management Strategies > Discovering e-discovery services: How information security pros should prepare
Security Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

RISK MANAGEMENT STRATEGIES

Discovering e-discovery services: How information security pros should prepare


Perry Carpenter
05.10.2007
Rating: -3.82- (out of 5)


Enterprise IT tips and expert advice
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


This tip is part of SearchSecurity.com's Data Protection Security School lesson on enterprise strategies for protecting data at rest. Visit the Enterprise strategies for protecting data at rest lesson page for additional learning resources.

Chances are that you've recently been hearing quite a lot of buzz about e-discovery services. That's because amendments to sections of the Federal Rules of Civil Procedure took effect as of Dec. 1, 2006. Sections of these amendments set forth rules governing how companies prepare for litigation in regard to the collection of electronic evidence/information.

The rule changes are intended to recognize that companies manage and maintain electronically stored information (ESI) in fundamentally different ways than physical documents. The new e-discovery rules formally codify much of the preexisting case law related to e-discovery.

Fortunately, there's no need to panic as a result of the changes. Keep in mind that e-discovery is part of the litigation process, and should be driven by the corporation's legal team or outside council, not by IT. However, the e-discovery effort will involve several groups within the organization, such as legal, IT -- including



security, storage and messaging -- and others as needed.

Preparing for e-discovery
Before there is ever a need to comply with an e-discovery request, there are several tasks that information security professionals should perform.

Last thoughts
Compliance with the new e-discovery rules will require the participation and cooperation of multiple groups within a company. Information security and audit teams need to be involved in the creation of e-discovery processes and procedures. It could be argued that at no time are confidentiality, integrality and availability more important than during litigation.

For further study
The following materials were consulted during the creation of this essay.

About the author
Perry Carpenter has spent nearly a decade working in IT and information security. Currently serving as the information security manager for a large wireless carrier, he has expertise in identity management, application security and data encryption and privacy. Earlier in his career he specialized in application development and Active Directory implementations. He maintains a security resource Web site at SecurityRenaissance.com.

Rate this Tip
To rate tips, you must be a member of SearchSecurity.com.
Register now to start rating these tips. Log in if you are already a member.




BROWSE BY TAG
Data Protection Security School,   Enterprise strategies for protecting data at rest,   Risk Management Strategies,   VIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


RELATED CONTENT
Enterprise strategies for protecting data at rest
Quiz: Enterprise strategies for protecting data at rest

Risk Management Strategies
Cloud computing security: Choosing a VPN type to connect to the cloud
Cloud computing security: Routing and DNS security threats
Cloud computing security model overview: Network infrastructure issues
How to align an information security framework to your business model
When to use open source security tools over commercial products
Vulnerability test methods for application security assessments
Security book chapter: Applied Security Visualization
The 100-day plan: Achieving success as a new security manager
Recovering stolen laptops one step at a time
How to get information security buy-in from the executive team

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Research Solutions for Network Security, Access Control and Security Threats
More Security Resources for Resellers, VARs and OEMs
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts