Digital Forensics & Incident Response
0 of 18 lessons complete (0%)
Exit Course
Digital Evidence and Chain of Custody
Principles of Sound Digital Evidence Handling
Preview
Maintaining an Unbroken Chain of Custody
Forensic Imaging and Write Protection
3 lessons
Disk and Memory Forensics
How File Systems Store and Hide Data
Examining Disk Images with Analysis Platforms
Memory Forensics and Volatile Evidence
3 lessons
Log Analysis and Timeline Reconstruction
Reading Logs as Investigative Evidence
Building an Investigative Timeline
Interpreting Findings and Avoiding Bias
3 lessons
Malware Triage and Behavioral Analysis
Safe Handling of Suspicious Files
Static and Behavioral Analysis Concepts
From Triage to Defensive Action
3 lessons
Incident Response Frameworks
The NIST Incident Response Lifecycle
The SANS Approach and Comparing Frameworks
Coordinating an Incident Response
3 lessons
Forensic Reporting and Communication
Documenting an Investigation Defensibly
Writing the Technical Forensic Report
Communicating Findings to Executives
3 lessons
Incident Response Frameworks
The NIST Incident Response Lifecycle
You don’t have access to this lesson
Please register or sign in to access the course content.
Take course
Sign in
Previous
Next