This course will introduce you to the principals and practices required to obtain and preserve evidence in a computer forensics investigation. The topics covered in this course include a survey of current computer forensics tools, incident/crime scene processing, digital evidence control, and reporting.
- Explain the essential elements of forensic analysis to include forensic evidentiary containment
- Manage hardware involving imaging and data collection activities
- Analyze common file systems
- Describe and demonstrate how to complete Process Logs and Event Logs