Certified Ekasi Digital Forensics Investigator
Cybersecurity
Advanced
Certified Ekasi Digital Forensics Investigator
Learn to collect, preserve, and analyze digital evidence for investigations. Covers forensic imaging, memory analysis, and chain of custody.
Course Description
Learn to collect, preserve, and analyze digital evidence for investigations. Covers forensic imaging, memory analysis, and chain of custody.
Learning Outcomes
Create forensic images, recover deleted data, analyze file systems, document evidence, testify as expert witness.
Target Audience
Forensics analysts, law enforcement, incident responders, legal professionals.
9 Modules
63 Lessons
25h 0m
Learn forensic principles, legal considerations, chain of custody, and forensic readiness planning.
-
1.1: What is Digital Forensics? (45 min)
-
1.2: History and Evolution of Digital Forensics (50 min)
-
1.3: Forensic Principles and Methodologies (55 min)
-
1.4: Legal and Ethical Considerations (50 min)
-
1.5: Types of Digital Evidence (45 min)
-
1.6: Forensic Readiness and Incident Response (50 min)
-
1.7: Practical Workshop - Case Scenario Analysis (60 min)
Learn to create forensic images using dd, FTK Imager, preserve evidence, and verify hashes.
-
2.1: Introduction to Forensic Imaging (45 min)
-
2.2: Write Blockers and Forensic Bridges (40 min)
-
2.3: Disk Imaging with dd and dc3dd (50 min)
-
2.4: FTK Imager - GUI Forensic Imaging (45 min)
-
2.5: Live Acquisition and Memory Capture (55 min)
-
2.6: Cloud and Remote Acquisition (50 min)
-
2.7: Practical Workshop - Imaging Scenarios (60 min)
Learn NTFS, FAT, ext4 analysis, recover deleted files, analyze MFT, and parse file system artifacts.
-
3.1: Introduction to File Systems (50 min)
-
3.2: NTFS Forensics Deep Dive (60 min)
-
3.3: FAT and exFAT Forensics (45 min)
-
3.4: Ext4 Forensics (55 min)
-
3.5: APFS Forensics (Apple File System) (55 min)
-
3.6: Deleted File Recovery and File Carving (50 min)
-
3.7: Practical Workshop - File System Analysis (60 min)
Learn to capture RAM, analyze memory dumps using Volatility, find malware artifacts, and recover processes.
-
4.1: Introduction to Memory Forensics (45 min)
-
4.2: Memory Acquisition - Tools and Techniques (50 min)
-
4.3: Volatility Framework Overview (55 min)
-
4.4: Process Analysis with Volatility (55 min)
-
4.5: Network and Malware Analysis in Memory (50 min)
-
4.6: Credential Extraction and Registry Analysis (50 min)
-
4.7: Practical Workshop - Memory Analysis Scenarios (60 min)
Learn to capture and analyze network traffic, reconstruct sessions, extract evidence from PCAPs.
-
5.1: Introduction to Network Forensics (45 min)
-
5.2: Packet Capture with Wireshark and Tcpdump (50 min)
-
5.3: Network Protocol Analysis (HTTP, DNS, SMTP, FTP) (50 min)
-
5.4: Network Log Analysis (Firewall, IDS/IPS, Proxy) (50 min)
-
5.5: NetFlow Analysis (45 min)
-
5.6: TLS/SSL Forensics and Decryption (55 min)
-
5.7: Practical Workshop - Network Forensics Scenarios (60 min)
Learn to analyze email headers, recover deleted messages, extract evidence from mobile devices.
-
6.1: Introduction to Email Forensics (45 min)
-
6.2: Email Header Analysis (55 min)
-
6.3: Forensic Analysis of Email Attachments (50 min)
-
6.4: Mobile Forensics Overview (50 min)
-
6.5: iOS Forensics Deep Dive (55 min)
-
6.6: Android Forensics Deep Dive (55 min)
-
6.7: Practical Workshop - Email and Mobile Forensics (60 min)
Learn to write forensic reports, document findings, present evidence in court, and testify as expert witness.
-
7.1: Introduction to Forensic Reporting (45 min)
-
7.2: Forensic Report Structure and Components (55 min)
-
7.3: Writing Clear and Defensible Findings (50 min)
-
7.4: Visual Evidence and Exhibits (45 min)
-
7.5: Expert Witness Preparation (55 min)
-
7.6: Dealing with Opposing Experts and Peer Review (50 min)
-
7.7: Practical Workshop - Report Writing and Testimony (60 min)
Learn research techniques for forensics: investigating new file systems, studying anti-forensics techniques, researching forensic tools, and analyzing case studies.
-
8.1: Introduction to Research Methods in Digital Forensics (50 min)
-
8.2: Research Design and Methodology (55 min)
-
8.3: Literature Review and Critical Analysis (55 min)
-
8.4: Data Collection and Analysis in Forensic Research (55 min)
-
8.5: Tool Validation and Testing (50 min)
-
8.6: Publishing and Disseminating Research (50 min)
-
8.7: Practical Workshop - Research Methods (60 min)
Develop critical thinking, reasoning, communication, and workplace conflict resolution skills for forensics roles.
-
9.1: What is Integrated Thinking in Digital Forensics? (45 min)
-
9.2: Connecting Forensic Findings to Legal Requirements (55 min)
-
9.3: Cross-Functional Collaboration in Forensic Investigations (50 min)
-
9.4: Forensic Risk Management and Prioritization (55 min)
-
9.5: Ethical Decision-Making in Digital Forensics (55 min)
-
9.6: Communicating Forensic Findings to Non-Experts (50 min)
-
9.7: Practical Workshop - Integrated Thinking Scenarios (60 min)
Certification Exam
Final certification exam for Digital Forensics Investigator. Tests knowledge of forensic imaging, file system analysis, memory forensics, network forensics, and expert testimony.
Passing Score:
70%
Time Limit:
120 minutes
Attempts Allowed:
3
Camera Required:
No
To earn your certificate, you must complete all course materials and pass the final exam with a score of 70% or higher.
Enroll in this Course
Certificate included
27 hours content
Downloadable resources
Mobile access
Duration
27 hours
Skill Level
Advanced
Learning Method
Self Study
Category
Cybersecurity
Modules
9
Total Lessons
63
Last Updated
May 2026
Practical skills guarantee