Nowadays, forensic analysis has become a cornerstone of IT security, given the rise in cybercrime and the increasing complexity of security incidents. With the Forensic Analysis Course, you will be able to acquire essential skills for detecting, manage and resolve incidents effectively. This course is designed to provide you with a comprehensive understanding of the collection and analysis of digital evidence, as well as best practice in security audit. The demand for qualified professionals in this field is constantly rising, making this training a valuable investment in your future career. What’s more, it will allow you to develop your skills in a flexible and accessible environment that adapts to your needs. Don’t miss the opportunity to excel in a booming sector and contribute to the digital security.
Forensic Analysis
Introduction
Objectives
-
Understanding the response process to security incidents and its importance in data protection.
-
Identify techniques and tools for the analysis and correlation of security events in digital environments.
-
Apply the Lockard’s principle in the collection and analysis of digital evidence in forensic cases.
-
Establishing an effective process notification and management of intrusion attempts in computer systems.
-
To assess the importance of data collection in the digital forensics and its impact on research.
-
To know the regulations protection of relevant data in audits IT security and compliance.
-
Use the right tools for systems auditing and to ensure the integrity of the information analysed
Table of Contents
TEACHING UNIT 1. RESPONSE TO SECURITY INCIDENTS
1. Procedure for gathering information relating to security incidents
2. An overview of the various techniques and tools used for the analysis and correlation of security information and events
3. Intrusion verification process
4. The nature and functions of national and international CERT-type incident management organisations
TEACHING UNIT 2. THE PROCESS OF NOTIFICATION AND MANAGEMENT OF INTRUSION ATTEMPTS
1. Definition of responsibilities
2. Classification of incidents arising from intrusion attempts
3. Establishment of the incident detection process and incident logging tools
4. Determining the required level of intervention based on the foreseeable impact
5. Establishing the process for resolving and restoring systems
6. Procedure for reporting the incident to third parties
TEACHING UNIT 3. COMPUTER FORENSICS
1. General concepts and objectives of forensic analysis
2. An Explanation of Lockard’s Principle
3. Guide to the collection of electronic evidence
4. Guidance on the analysis of electronic evidence collected
5. Guide to selecting forensic analysis tools
TEACHING UNIT 4. DATA STORAGE
1. Data acquisition: its importance in digital forensics
2. Layered model
3. Recovering deleted files
4. File analysis
TEACHING UNIT 5. IT SECURITY AUDIT
1. General Criteria
2. Application of personal data protection regulations
3. Tools for systems auditing
4. Description of firewall-related aspects in information systems audits
5. Guidelines for carrying out the various stages of an information systems audit