COMF 1110 Introduction to Computer Forensics
Knowledge of the specific procedures for maintaining and preserving all evidence at the scene of a cybercrime involving the preservation of volatile memory tests, detection of interventions in the system under analysis and application of solutions to possible situations in which it could destroy the evidence. It includes first response procedures and techniques to maintain system integrity, contain intrusion, protection of existing tests, and instructions for creating reports.