Description
The Digital Evidence Collection in an Enterprise Environment (DECEE) is designed to train criminal investigators (or those that routinely serve as part of the investigative team) to identify, search, seize and acquire digital media in a network environment. Investigators are routinely finding that the evidence they need in the furtherance of any investigation may be found on servers regardless of the type of investigation they are conducting. The purpose of this program is to give investigators an understanding of how to identify the server software in question, navigate this system, and collect evidence in a forensically sound manner.
The software and hardware issued during DECEE has been researched and tested in the classroom and in the field. Students will be trained on the use of this equipment during class. At the conclusion of this two-week program, the training participant will have demonstrated, through the successful completion of several practical exercises that they have a functional knowledge of Digital Evidence Collection in an Enterprise Environment.
Prerequisites
Applicant must be a law enforcement officer/agent with arrest authority in the prevention, detection, apprehension, detention and/or investigation of felony and/or misdemeanor violations of federal, state, local, tribal, or military criminal laws; or Direct Law Enforcement Support Personnel (DLESP); or employees of a federal, state, local, tribal or international agency who perform functions directly related to a law enforcement or Department of Homeland Security (DHS) mission but do not necessarily have the authority to carry and use firearms, make arrests and/or conduct searches with or without a warrant. This category of personnel may also include military personnel preparing for deployment. Must have successfully completed the Digital Forensics Investigator (DF-I) and the Digital Forensics Examiner (DF-E) Training Program or equivalent for admission to the DECEE.
Required Training Materials
None.
Program Syllabus/Curriculum
Network Investigations
Forensic acquisition of digital data in a Microsoft Windows, OSX and Linux environment
Program Contact Info
Glynco: 912-267-3447
State and Local: 912-261-4566