Many challenges that confront today’s society are complex and dynamic and require new perspectives to arrive at solutions that could not be found before. Finding such new perspectives is part of a process called reframing and one of its key stages is theme investigation. Understanding a problem thoroughly is crucial for creating effective solutions and theme investigation offers insight into human and social themes that underlie complex challenges. This article discusses how to investigate such themes, to deepen our understanding, to find a starting point for reframing and creating innovative solutions. This work explicitly experiments with variation (conceptual, personal, and methodological) as a guiding principle for investigating human themes in real life cases. A process, best practices, instruments and tools for theme investigation are presented and discussed.
MULTIFILE
In the present study, how crime scene investigators are informed before going to a crime scene was investigated. In order to gain more insight in the flow of information from emergency call to crime scene, semi-structured interviews were conducted in three different police regions with six crime scene investigators, six forensic team leaders, and six crime scene investigators.Results indicate that information that crime scene investigators receive before going to a crime scene is usually limited. Most information is provided on-site by the uniformed police officers, forensic medical examiner, and tactical investigation team. This information flow is underexposed, and there are no guidelines about how it is recorded.Even though all parties are provided with limited information, incidents are quickly labelled by emergency call responders and forensic team leaders. The influence of the framing process that occurs as a result is underestimated. Furthermore, emergency call responders and forensic team leaders have different goals in the investigative process and hardly take into account the specific needs of the crime scene investigator. In order to better meet the needs of crime scene investigators, further research about the content of the provided information, as well as at what moment it should be shared, is needed. Also, in order to determine afterward what role information may have played in the decision-making at the crime scene the recording of information should be better safeguarded.
DOCUMENT
In case of a major cyber incident, organizations usually rely on external providers of Cyber Incident Response (CIR) services. CIR consultants operate in a dynamic and constantly changing environment in which they must actively engage in information management and problem solving while adapting to complex circumstances. In this challenging environment CIR consultants need to make critical decisions about what to advise clients that are impacted by a major cyber incident. Despite its relevance, CIR decision making is an understudied topic. The objective of this preliminary investigation is therefore to understand what decision-making strategies experienced CIR consultants use during challenging incidents and to offer suggestions for training and decision-aiding. A general understanding of operational decision making under pressure, uncertainty, and high stakes was established by reviewing the body of knowledge known as Naturalistic Decision Making (NDM). The general conclusion of NDM research is that experts usually make adequate decisions based on (fast) recognition of the situation and applying the most obvious (default) response pattern that has worked in similar situations in the past. In exceptional situations, however, this way of recognition-primed decision-making results in suboptimal decisions as experts are likely to miss conflicting cues once the situation is quickly recognized under pressure. Understanding the default response pattern and the rare occasions in which this response pattern could be ineffective is therefore key for improving and aiding cyber incident response decision making. Therefore, we interviewed six experienced CIR consultants and used the critical decision method (CDM) to learn how they made decisions under challenging conditions. The main conclusion is that the default response pattern for CIR consultants during cyber breaches is to reduce uncertainty as much as possible by gathering and investigating data and thus delay decision making about eradication until the investigation is completed. According to the respondents, this strategy usually works well and provides the most assurance that the threat actor can be completely removed from the network. However, the majority of respondents could recall at least one case in which this strategy (in hindsight) resulted in unnecessary theft of data or damage. Interestingly, this finding is strikingly different from other operational decision-making domains such as the military, police and fire service in which there is a general tendency to act rapidly instead of searching for more information. The main advice is that training and decision aiding of (novice) cyber incident responders should be aimed at the following: (a) make cyber incident responders aware of how recognition-primed decision making works; (b) discuss the default response strategy that typically works well in several scenarios; (c) explain the exception and how the exception can be recognized; (d) provide alternative response strategies that work better in exceptional situations.
DOCUMENT
Aims and objectives. The Forensic Early Warning Signs of Aggression Inventory (FESAI) was developed to assist nurses and patients in identifying early warning signs and constructing individual early detection plans (EDP) for the prevention of aggressive incidents. The aims of this research were as follows: First, to study the prevalence of early warning signs of aggression, measured with the FESAI, in a sample of forensic patients, and second, to explore whether there are any types of warning signs typical of diagnostic subgroups or offender subgroups. Background. Reconstructing patients’ changes in behaviour prior to aggressive incidents may contribute to identify early warning signs specific to the individual patient. The EDP comprises an early intervention strategy suggested by the patient and approved by the nurses. Implementation of EDP may enhance efficient risk assessment and management. Design. An explorative design was used to review existing records and to monitor frequencies of early warning signs. Methods. Early detection plans of 171 patients from two forensic hospital wards were examined. Frequency distributions were estimated by recording the early warning signs on the FESAI. Rank order correlation analyses were conducted to compare diagnostic subgroups and offender subgroups concerning types and frequencies of warning signs. Results. The FESAI categories with the highest frequency rank were the following: (1) anger, (2) social withdrawal, (3) superficial contact and (4) non-aggressive antisocial behaviour. There were no significant differences between subgroups of patients concerning the ranks of the four categories of early warning signs. Conclusion. The results suggest that the FESAI covers very well the wide variety of occurred warning signs reported in the EDPs. No group profiles of warning signs were found to be specific to diagnosis or offence type. Relevance to clinical practice. Applying the FESAI to develop individual EDPs appears to be a promising approach to enhance risk assessment and management.
DOCUMENT
Producing evidence that can be used in court is a central goal of criminal investigations. Forensic science focuses with considerable success on the production of pieces of evidence from specific sources. However, less is known about how a team of investigating police officers progressively produces a body of evidence during the course of a criminal investigation. This literature review uses Weickian sensemaking to analyse what is known about this process in criminal investigations into organised crime. Focusing on the criminal investigation team, collective sensemaking is used as a lens through which to place the reasoning processes used in constructing evidence in a social context. In addition to describing three constituent parts of collective sensemaking relevant for criminal investigations, six factors are identified that influence the quality of collective sensemaking. Building on these results, nine focal points are presented for analysing the sensemaking processes in a criminal investigation team, aimed at advancing knowledge about the production of evidence in criminal investigations of organised crime. Furthermore, a definition of evidence is developed that is suitable for studying sensemaking in the context of an ongoing criminal investigation.
DOCUMENT
Modern safety thinking and models focus more on systemic factors rather than simple cause-effect attributions of unfavourable events on the behaviour of individual system actors. This study concludes previous research during which we had traced practices of new safety thinking practices (NSTPs) in aviation investigation reports by using an analysis framework that includes nine relevant approaches and three safety model types mentioned in the literature. In this paper, we present the application of the framework to 277 aviation reports which were published between 1999 and 2016 and were randomly selected from the online repositories of five aviation authorities. The results suggested that all NSTPs were traceable across the sample, thus followed by investigators, but at different extents. We also observed a very low degree of using systemic accident models. Statistical tests revealed differences amongst the five investigation authorities in half of the analysis framework items and no significant variation of frequencies over time apart from the Safety-II aspect. Although the findings of this study cannot be generalised due to the non-representative sample used, it can be assumed that the so-called new safety thinking has been already attempted since decades and that recent efforts to communicate and foster the corresponding aspects through research and educational means have not yet yielded the expected impact. The framework used in this study can be applied to any industry sector by using larger samples as a means to investigate attitudes of investigators towards safety thinking practices and respective reasons regardless of any labelling of the former as “old” and “new”. Although NSTPs are in the direction of enabling fairer and more in-depth analyses, when considering the inevitable constraints of investigations, it is more important to understand the perceived strengths and weaknesses of each approach from the viewpoint of practitioners rather than demonstrating a judgmental approach in favour or not of any investigation practice.
DOCUMENT
This paper aims to address the research gap in ethical design frameworks for self-sovereign identity (SSI) solutions. We present a case study of value sensitive design (VSD) conceptual investigation applied in the context of SSI-based solutions for the sharing of medical credentials uNLock. We evaluate the applicability and quality of VSD application on the basis of 5 criteria. We validate these findings by comparing the results of the original report with the studies presenting empirically informed insights from the deployment of SSI solutions for the presentation of medical credentials. We identify a problem of “value branching” particular to SSI solutions that can lead to the overinflation of the set of relevant values. We outline the affordances and limitations of the conceptual VSD investigation in our case study. We further reflect on the limits of general SSI principles and argue that the ethical design of SSI solutions always requires context-specific evaluative frameworks.
LINK
Currently, a series of promising new tools are under development that will enable crime scene investigators (CSIs) to analyze traces in situ during the crime scene investigation or enable them to detect blood and provide information on the age of blood. An experiment is conducted with thirty CSIs investigating a violent robbery at a mock crime scene to study the influence of such technologies on the perception and interpretation of traces during the first phase of the investigation. Results show that in their search for traces, CSIs are not directed by the availability of technologies, which is a reassuring finding. Qualitative findings suggest that CSIs are generally more focused on analyzing perpetrator traces than on reconstructing the event. A focus on perpetrator traces might become a risk when other crime‐related traces are overlooked, and when analyzed traces are in fact not crime‐related and in consequence lead to the identification of innocent suspects.
DOCUMENT
Technological innovations enable rapid DNA analysis implementation possibilities. Concordantly, rapid DNA devices are being used in practice. However, the effects of implementing rapid DNA technologies in the crime scene investigation procedure have only been evaluated to a limited extent. In this study a field experiment was set up comparing 47 real crime scene cases following a rapid DNA analysis procedure outside of the laboratory (decentral), with 50 cases following the regular DNA analysis procedure at the forensic laboratory. The impact on duration of the investigative process, and on the quality of the analyzed trace results (97 blood and 38 saliva traces) was measured. The results of the study show that the duration of the investigation process has been significantly reduced in cases where the decentral rapid DNA procedure was deployed, compared to cases where the regular procedure was used. Most of the delay in the regular process lies in the procedural steps during the police investigation, not in the DNA analysis, which highlights the importance of an effective work process and having sufficient capacity available. This study also shows that rapid DNA techniques are less sensitive than regular DNA analysis equipment. The device used in this study was only to a limited extent suitable for the analysis of saliva traces secured at the crime scene and can mainly be used for the analysis of visible blood traces with an expected high DNA quantity of a single donor.
DOCUMENT
Currently, promising new tools are under development that will enable crime scene investigators to analyze fingerprints or DNA-traces at the crime scene. While these technologies could help to find a perpetrator early in the investigation, they may also strengthen confirmation bias when an incorrect scenario directs the investigation this early. In this study, 40 experienced Crime scene investigators (CSIs) investigated a mock crime scene to study the influence of rapid identification technologies on the investigation. This initial study shows that receiving identification information during the investigation results in more accurate scenarios. CSIs in general are not as much reconstructing the event that took place, but rather have a “who done it routine.” Their focus is on finding perpetrator traces with the risk of missing important information at the start of the investigation. Furthermore, identification information was mostly integrated in their final scenarios when the results of the analysis matched their expectations. CSIs have the tendency to look for confirmation, but the technology has no influence on this tendency. CSIs should be made aware of the risks of this strategy as important offender information could be missed or innocent people could be wrongfully accused.
DOCUMENT