Digital Forensics and Incident Response
Establish an incident-response workflow and investigate evidence across desktop, mobile, browser, removable-media, and malware sources.
Incident responders, Forensic analysts, Blue team practitioners
Establish an incident-response workflow and investigate evidence across desktop, mobile, browser, removable-media, and malware sources.
Courses in this path
Launch the canonical Truth Surge open course for this step in the path.
Launch Course What Is Incident Response LifecycleLaunch the canonical Truth Surge open course for this step in the path.
Launch Course Building A DFIR ToolkitLaunch the canonical Truth Surge open course for this step in the path.
Launch Course Windows Forensics FundamentalsLaunch the canonical Truth Surge open course for this step in the path.
Launch Course Linux Forensics FundamentalsLaunch the canonical Truth Surge open course for this step in the path.
Launch Course macOS Forensics FundamentalsLaunch the canonical Truth Surge open course for this step in the path.
Launch Course Android Forensics FundamentalsLaunch the canonical Truth Surge open course for this step in the path.
Launch Course iPhone Forensics FundamentalsLaunch the canonical Truth Surge open course for this step in the path.
Launch Course Browser Forensics FundamentalsLaunch the canonical Truth Surge open course for this step in the path.
Launch Course USB and Removable Media AnalysisLaunch the canonical Truth Surge open course for this step in the path.
Launch Course Static Malware Analysis FundamentalsLaunch the canonical Truth Surge open course for this step in the path.
Launch CourseContinue from here
Move from telemetry and adversary models into detection development, exposure prioritization, and proactive hunting.
View Path Cloud Security OperationsOperate cloud defenses across identity, containers, exposure management, resilience, and incident response.
View Path OSINT FoundationsDevelop a disciplined public-information investigation workflow from digital-footprint concepts through technical collection and verification.
View Path