This course will introduce you to the principals and practices required to obtain and preserve evidence in a computer forensics investigation. The topics covered in this course include a survey of current computer forensics tools, incident/crime scene processing, digital evidence control, and reporting.
Learning Objectives
- Explain the essential elements of forensic analysis to include forensic evidentiary containment
- Manage hardware involving imaging and data collection activities
- Analyze common file systems
- Describe and demonstrate how to complete Process Logs and Event Logs
Framework Connections
Specialty Areas
- Cyber Investigation
- Digital Forensics
- Threat Analysis
Feedback
If you would like to provide feedback for this course, please e-mail the NICCS SO at NICCS@hq.dhs.gov.