BEC102 Advanced Computer-based Investigations Course

This course is designed to provide local/federal law enforcement, military investigative personnel, and private sector security professionals training on the knowledge and skills required to leverage Windows resources and artifacts to perform a comprehensive timeline-based examination.

Category:

Description

During this course activities and exercises, participants will demonstrate the ability to perform forensically sound investigations and efficiently analyze digital artifacts pertaining to items of evidentiary value. Upon completion of this course, participants will be able to draft an effective report on findings detailing the analysis process followed to locate pertinent evidence.

 
MODULES

  1. Introduction 1 Hour
  2. The Case Jacket 1 Hour
  3. Windows Registry Artifacts 2 Hour
  4. Parsing Windows Prefetch 1 Hour
  5. Parsing Link Files 1 Hour
  6. Windows 10 Timeline and Event Logs 2 Hour
  7. Understanding Metadata 1 Hour
  8. Final Practical 3 Hour

 

COURSE DETAILS

Language: English

Duration: 2 days

Delivered by: online or onsite

 
The Belkasoft X certification course design, objectives, practical exercises, and scenarios are written based on over fifteen years of field experience from working with LE officers and CCU examiners both international and domestic. The techniques taught in this course – while based on Belkasoft X functionality and workflow – have been curated from extensive research, testing, and use on live systems involved in actual cyber crimes investigated around the world where DSI examiners were actively involved as contracted analysts, instructors, and/or mentors.

Datasheets

Video



Categories


Partners: Belkasoft


Available Training: Online – Instructor Led | Vendor Site – Instructor Led