This course will introduce you to the principals and practices required to obtain and preserve evidence in a computer forensics investigation. The topics covered in this course include a survey of current computer forensics tools, incident/crime scene processing, digital evidence control, and reporting.
Explain the essential elements of forensic analysis to include forensic evidentiary containment
Manage hardware involving imaging and data collection activities
Analyze common file systems
Describe and demonstrate how to complete Process Logs and Event Logs
The materials within this course focus on the Knowledge Skills and Abilities (KSAs) identified within the Specialty Areas listed below. Click to view Specialty Area details within the interactive National Cybersecurity Workforce Framework.