Students in this course explore techniques for cyber incident investigation, digital evidence gathering and cybersecurity threat response. Coursework presents strategies for cybercrime investigation and for forensic analysis and incident response. The course prepares students for managing security incidents, as well as for defending and responding to attacks.
Learning Objectives
- Students learn to understand the principles of digital forensics and the impact of computer crime, apply forensic methodologies to collect, seize, and preserve digital evidence, analyze data recovery methods, steganography techniques, and incident response processes, examine forensic techniques used for Windows, Linux, and Mac OS environments, analyze forensics techniques for emails and mobile devices, evaluate network and memory forensics techniques for evidence extraction, and assess emerging trends and future directions in digital forensics.
Framework Connections
The materials within this course focus on the NICE Framework Task, Knowledge, and Skill statements identified within the indicated NICE Framework component(s):