Syllabus - ISEC375

ISEC375 - Digital Forensics & Incident Response

Description:
The prevalence of data breaches, identity theft, and the darknet today makes the study of digital forensics and cybercrime highly relevant to information security. Identifying, acquiring, preserving, analyzing, and reporting evidence to business and law enforcement is a much-needed skill. This course will cover those topics as well as the live versus dead-box techniques, appropriate legal and regulatory issues, open-source and commercial tools, and the special challenges represented by new and emerging technologies.

Outcomes:

  • Identify relevant evidence on a computer, mobile device, or network
  • Acquire evidence using the appropriate recovery methods
  • Preserve the chain of custody to ensure evidence is admissible, authentic, complete, and reliable
  • Analyze the evidence to narrow the search criteria and draw conclusions
  • Report the status of analysis to the appropriate audience
  • Employ commercial and open source tools to perform forensic analysis
  • Explore contemporary issues in digital forensics

Required Text(s):

Nelson, B., Phillips, A., & Steuart, C. (2019). Guide to computer forensics and investigations (6thed.). Cengage Learning: Boston. ISBN: 9781337568944.