CrDFI Certification

Being a Cer­ti­fied Digital Forensic Investigator (CrDFI)

THE SKILLS YOU WILL LEARN

You will learn the following:

  • The principles and guidelines for static digital forensic investigations
  • The process of evidence continuity
  • The fundamentals of the complete forensic investigation process
  • The forensic acquisition of an electronic device
  • How data is stored on electronic media
  • How to work with key forensic investigation products
  • How to identify Windows based OS forensic artifacts

The course will also provide answers to many questions including:

  • What skills and qualifications do I need to practice digital forensics?
  • How and where is data actually stored on a device?
  • What is the difference between forensic imaging and cloning?
  • Is keyword searching an effective way to identify data on a device?
  • What is hashing and how can it be used in digital forensics?
  • What happens when a user deletes a file or empties a recycle bin?
  • How does ‘Private’ web-browsing work?
  • Can data be recovered after 7 pass overwrite?
  • Is there a backdoor to passwords and encryption?
  • Who was using a computer on a particular occasion?
  • How can I identify if and when a user edited or accessed a file?

KEY BENEFITS

The course will give you:

  • An understanding of each stage of a forensic investigation, from evidence seizure through to data investigation and interpretation, to report and presentation of findings.
  • The skills to allow you to undertake the forensic acquisition of an electronic device
  • Confidence in working with key forensic investigation products
  • An industry-recognized qualification in forensic investigation and ideal preparation for the CrDFI advanced course

WHO SHOULD ATTEND

Those responsible or eager to become responsible for computer forensic investigations, including:

  • Cyber Forensic & Network Investigators
  • IT Security Officers
  • Law Enforcement Officials

Course Overview

Gain an understanding of digital forensics analysis by learning about forensic principles, evidence continuity and methodology to employ when conducting a digital forensic investigation.

This five-day course will provide you with a practical base understanding of the legalities, best practice and methodologies used in the current digital forensic investigation environment. The course content covers seizure, evidence handling and data preservation, through to investigation and interpretation, and finally the reporting and presentation of findings.

SYLLABUS

1. Introduction to Digital Forensics

2. Investigation Guidelines and Process

3. Identification & Seizure

4. Forensic Acquisition

5. Understanding Electronic Data

  • Understand how data is stored on electronic devices
  • Analyze the functionality of a computer file system

6. Physical and Logical Disks

7. File Systems and Data Storage

8. Dates, Times and Metadata

9. Forensic Analysis Techniques

10. Windows Artifacts

  • Function, structure and operation of the Windows registry
  • Internet history
  • Recycle bins

11. Forensic Challenges

12. Reporting

  • Collating results
  • Contents and layout of forensic reports

13. Electronic data

  • Hardware and Software
  • Addressing hardware employed during a forensic investigation
  • Familiarization with forensic software

14. Investigating Windows artifacts

15. Reporting

CrDFI Course

Being a Cer­ti­fied Digital Forensic Investigator (CrDFI)

This core-level technical course is designed for people looking to develop their computer forensics investigation skills, either

for a career in digital investigations or as part of their current cyber role.

What will I learn?

  • You will learn the principles and guidelines for static computer forensic investigations; the fundamentals of the complete forensic investigation process; how to preserve evidence and the methodology for conducting a forensic investigation
  • You will use practical, hands-on exercises to help you understand how data is stored on electronic media, how to work with key
  • forensic investigation tools and how to identify Windows-based OS forensic artifact

How will I benefit?

The course will give you:

  • An understanding of each stage of a forensic investigation, from evidence seizure through to data investigation and interpretation, to report and presentation of findings.
  • The skills to allow you to undertake the forensic acquisition of an electronic device
  • Confidence in working with key forensic investigation products
  • An industry-recognized qualification in forensic investigation and ideal preparation for the CrDFI advanced course

Who should attend?

Anyone who is or wants to be responsible for computer forensic investigations, including:

  • Cyber forensic and network investigators
  • IT security officers
  • Law enforcement officials
  • Experience with Microsoft
  • Windows OS and, ideally, a general appreciation of forensic principles, practices and software.
Contact Us

We're not around right now. But you can send us an email and we'll get back to you, asap.

Not readable? Change text. captcha txt