Note / Price varies according to the selected city
Price per participant, per week $4500 - $6500 (depends on the city)
Register 3 participants on the same course and pay for 2 only
The decisions a team makes in the first hour after discovering a suspicious login or a strange process on a server often determine whether the resulting evidence will still be usable weeks later. Rebuild the system too soon and the trail disappears; handle a drive carelessly and the chain of custody breaks. The Digital Forensics and Cyber Incident Investigation Training Course by Arab British Fellowship Training Academy is built around that pressure point – giving professionals a repeatable process for preserving, analysing, and reporting on digital evidence without compromising it.
Delivered within the Information Technology and Programming Courses portfolio, the programme moves from evidence acquisition and chain of custody through disk imaging, log analysis, and malware artefact examination, and ends with the forensic reporting that investigation findings ultimately depend on. Throughout, it treats investigation not as a purely technical exercise but as a function that has to coordinate cleanly with incident response, compliance, legal, and executive stakeholders.
By the end of this course, participants will be able to:
Target Audience
Module 1: The First Hour – Why Early Decisions Decide the Case
Module 2: Foundations and Scope of Digital Forensic Investigation
Module 3: Acquiring Evidence Without Destroying It
Module 4: Chain of Custody and Keeping Evidence Defensible
Module 5: Disk Imaging and Storage-Level Analysis
Module 6: Reading the System – Endpoint, OS and Log Artefacts
Module 7: Malware Traces and Network/Cloud Evidence
Module 8: Building the Timeline – Correlation and Analysis
Module 9: Writing Forensic Reports That Hold Up
Module 10: From Investigation to Organisational Learning
Digital Forensics and Cyber Incident Investigation Training Course (Online / Remote)
2026-11-02
2027-02-01
2027-05-03
2027-08-02