Incident Handling and Information Security Law
Thursday, December 11th, 2008Recall from the Policy lecture that we referenced a number of laws, but didn’t investigate.
http://www.massachusetts.edu/SecurityAwareness/datasecuritylaws.html
A good resource for computer policy and law for Universities is ICPL Recommended Links.
For federal law, the Department of Justice maintains a good reference at: http://www.cybercrime.gov/cclaws.html
However, more interesting is material aimed at prosecutors working in the field. We will review this in class:
http://www.cybercrime.gov/ccmanual/index.html
For a reasonable summary on Information Security law, it is worth looking at the security focus four part series:
Part 1, Part 2, Part 3, Part 4.
To find the actual text of US Federal Law, a helpful resource is THOMAS.
Note that all the above references federal law. There is also an extensive body of state law concerning information security. A good reference on state law for Massachusetts is available from http://www.lawlib.state.ma.us/ . We will review a small amount of the state material, but the focus will be on federal law. Recall that the protections afforded under state law vary greatly.