Unpatched, unprotected computers connected to the internet are compromised in less than three days! In the commercial sector, TJ Maxx, Hannaford, and TD Ameritrade are victims of large-scale data breaches and intrusions. From these attacks, personal or account information of more than 100 million individuals has been compromised. In the government sector, cyber attacks on government agencies and contractors, originating from China, have proved difficult to suppress. In both situations, incident response and mitigation, class action lawsuits, and fines place remediation costs in the billions of dollars.
Security 508: Computer Forensics, Investigation, and Response will give you a firm understanding of computer forensics tools and techniques to investigate data breach intrusions, tech-savvy rogue employees, advanced persistent threats, and complex digital forensic cases.
Utilizing advances in spear phishing, web application attacks, and persistent malware these new sophisticated attackers advance rapidly through your network. Forensic investigators must master a variety of operating systems, investigation techniques, incident response tactics, and even legal issues in order to solve challenging cases. Security 508: Computer Forensics, Investigation, and Response will teach you critical forensic analysis techniques and tools in a hands-on setting for both Windows- and Linux-based investigations.
We will examine various investigation methodologies and techniques, discovering new places to find evidence and discover the tracks of a cyber criminal or hacker, who is trying to stay hidden inside your network.
Learning more than just how to use a forensic tool, you will be able to demonstrate how the tool functions step-by-step. You will become skilled with new tools, such as the Sleuthkit, Foremost, and the HELIX3 Pro Forensics Live CD. SANS hands-on technical course arms you with a deep understanding of the forensic methodology, tools, and techniques to solve advanced computer forensics cases.
FIGHT CRIME. UNRAVEL INCIDENTS... ONE BYTE AT A TIME. We not only teach a firm understanding of the computer forensics tools and techniques, we also teach you the legally approved forensic methodology that will result in success.
Strong recommendation: Each student should attend Security 408: Computer Forensic Essentials prior to taking this course or have equivalent digital forensic experience in the field. This course is a designed to be a perfect follow on for those that have already attended Security 408: Computer Forensic Essentials.
If you are just beginning in computer forensics or information security, then this course is not appropriate for you as the basics of computer forensics, system administration, and hacker techniques will not be covered.
As a part of this course you will receive a SANS Investigative Forensic Toolkit (SIFT) Advanced, you will gain first-hand experience in collecting and analyzing evidence recovered from a system under investigation. The toolkit consists of:
The learning does not end when class is over. SANS Computer Forensic Website is a community-focused site offering digital forensics professionals a one-stop forensic resource to learn, discuss and share current developments in the field. It also provides information regarding SANS forensics training, GIAC certification, and upcoming events. Visit http://forensics.sans.org. New content is added regularly, so please visit often. In addition, do not forget to share this information with your fellow forensic professionals.
| SECURITY 508 Upcoming Events | |||
| Event | Location | Dates | Delivery Method |
| SANS SelfStudy | Books & MP3s Only | Anytime | Self Paced |
| SANS OnDemand | Online | Anytime | Self Paced |
| SANS London 2009 | London, United Kingdom | Nov 28, 2009 - Dec 06, 2009 | Live Event |
| Community SANS Tucson 2009 | Tucson, AZ | Nov 30, 2009 - Dec 05, 2009 | Community SANS |
| Community SANS Colorado Springs 2009 | Colorado Springs, CO | Nov 30, 2009 - Dec 05, 2009 | Community SANS |
| Mentor Session - SEC508 | Atlanta, GA | Dec 02, 2009 - Feb 17, 2010 | Mentor |
| Mentor Session - SEC508 | Medellín, Colombia | Dec 02, 2009 - Dec 04, 2009 | Mentor |
| SANS CDI East 2009 | Washington DC | Dec 11, 2009 - Dec 18, 2009 | Live Event |
| Mentor Session - Security 508 | Charlotte, NC | Jan 14, 2010 - Mar 18, 2010 | Mentor |
| Mentor Session - Security 508 | Denver, CO | Jan 19, 2010 - Mar 23, 2010 | Mentor |
| Community SANS Lake Tahoe 2010 | Lake Tahoe, CA | Jan 25, 2010 - Jan 30, 2010 | Community SANS |
| SANS Phoenix 2010 | Phoenix, AZ | Feb 14, 2010 - Feb 20, 2010 | Live Event |
| SANS India 2010 | Bangalore, India | Feb 22, 2010 - Feb 27, 2010 | Live Event |
| SANS 2010 | Orlando, FL | Mar 06, 2010 - Mar 15, 2010 | Live Event |
| Mentor Session - SEC508 | Greeley, CO | Mar 11, 2010 - May 13, 2010 | Mentor |
| Community SANS Boston 2010 | Boston, MA | Mar 15, 2010 - Mar 20, 2010 | Community SANS |
| SANS vLive! - SEC 508 - Rob Lee | SANS vLive! SEC508 - 201003, VA | Mar 23, 2010 - Apr 29, 2010 | |
| SANS Northern Virginia Bootcamp 2010 | Reston, VA | Apr 06, 2010 - Apr 13, 2010 | Live Event |
| Mentor Session - SEC508 | Boise, ID | Sep 28, 2010 - Nov 30, 2010 | Mentor |