Skip to content
wiki.fftac.org

Lawful Intelligence Collection And Reporting - Source Excerpt 04 - 13. Sources

Back to Lawful Intelligence Collection And Reporting

Summary

This source excerpt begins near 13. Sources and preserves the surrounding evidence from 2IA.org/agent-file-handoff/Archive/2026-05-16-lawful-intelligence-improvement/Lawful Intelligence Collection and Reporting.md.

**Source path:** 2IA.org/agent-file-handoff/Archive/2026-05-16-lawful-intelligence-improvement/Lawful Intelligence Collection and Reporting.md

This statement (or similar) fulfills legal disclosure requirements (e.g. GDPR Articles 13–14).  

**SOP for Handling Tips:** A sample Standard Operating Procedure for incoming tips might include:  
1. **Receive Tip:** Ensure the tip is recorded (in writing or secure email) immediately.  
2. **Acknowledge Receipt:** Send an automated or personal acknowledgement if appropriate.  
3. **Initial Triage:** Quickly assess credibility and urgency. Discard frivolous or irrelevant submissions.  
4. **Legal Check:** Determine if the tip involves sensitive jurisdictions or data; consult counsel if needed.  
5. **Assign Case Number:** Log the tip in the intel system and assign to an analyst.  
6. **Secure Data:** Classify (label TLP or internal tier), encrypt the entry, and store in the secure database.  
7. **Investigate:** Analyst conducts further research or passes to the relevant investigative team.  
8. **Report Findings:** If actionable intelligence emerges, draft an official report using the template and distribute per policy.  
9. **Close or Monitor:** Mark the tip as closed when resolved; if ongoing, schedule reviews.  
10. **Retention/Deletion:** Archive data according to policy, and delete it when retention expires.  

This SOP ensures a consistent, lawful workflow from tip intake to resolution.  

## 13. Sources  
All legal and best-practice recommendations above are drawn from primary sources and standards.  Examples include US and EU laws, NIST guidelines, and expert analyses. For instance, NIST’s threat intelligence guide emphasizes protecting PII and consulting legal experts in intelligence workflows【19†L373-L382】, while NIST incident response guidance highlights encrypting data and restricting access【33†L2647-L2655】.  Privacy regulators (GDPR, ICO) mandate data minimization and retention limits【44†L159-L168】【45†L15-L22】, and privacy commentators note the need to balance open-source data use with consent and data protection【95†L214-L222】【95†L233-L242】.  These sources underpin the practices and templates recommended herein.