• Classroom
  • Online, Instructor-Led
  • Online, Self-Paced
Course Description

This course will introduce you to the principals and practices required to obtain and preserve evidence in a computer forensics investigation. The topics covered in this course include a survey of current computer forensics tools, incident/crime scene processing, digital evidence control, and reporting.

Learning Objectives

  • Explain the essential elements of forensic analysis to include forensic evidentiary containment
  • Manage hardware involving imaging and data collection activities
  • Analyze common file systems
  • Describe and demonstrate how to complete Process Logs and Event Logs

    Framework Connections

    The materials within this course focus on the NICE Framework Task, Knowledge, and Skill statements identified within the indicated NICE Framework component(s):

    Specialty Areas

    • Cyber Investigation
    • Digital Forensics
    • Threat Analysis

    Feedback

    If you would like to provide feedback for this course, please e-mail the NICCS SO at NICCS@hq.dhs.gov.