FTK Imager is a widely used tool in forensic investigation. In this course, AccessData Forensic Toolkit (FTK) Imager, you’ll learn to how to quickly and accurately acquire and examine evidence as part of a computer related investigation. First, you’ll explore how to install and configure FTK Imager. Next, you’ll discover how to acquire a variety of image types and maintain the integrity of the original data. Finally, you’ll learn how to safely mount and examine the collected data and analyze captured evidence. When you’re finished with this course, you’ll have the skills and knowledge of using FTK Imager needed to be confident in the process of forensically imaging and analyzing collected data as part of an investigation.
Phil Chapman is a senior instructor. He is responsible for the delivery of a range of courses including official Microsoft, CompTIA, EC Council and BCS official certifications. He is also the subject matter expert and project lead for the bespoke Law Enforcement Cyber Security training packages which are delivered to UK Law Enforcement agencies and forces.
Course Overview Hi everyone. My name is Phil Chapman and welcome to my course, AccessData Forensic Toolkit. I'm a senior instructor at Firebrand Training UK and a project lead for cybercrime training. FTK Imager is a widely used tool in the world of forensic investigation and acquisition and has a variety of useful features which can enhance your capabilities both at the live scene and in a forensic lab. In this course, we're going to introduce you to the FTK Imager tool and discuss some of the functions and techniques used in imaging and forensic analysis of data. Some of the major topics that we will cover include installing FTK Imager on a forensic work station and a USB drive for use in the field, acquiring live images at the scene of an incident, creating custom content images to quickly assist in triage an analysis, add evidence items and mount images in order to analyze captured data. By the end of this course, you will be confident to install and utilize FTK Imager, both in a live environment and a forensic lab, and you'll be able to use several features to enhance your capabilities in a forensic investigation. Before beginning the course, you should be familiar with Windows and Linux operating systems, disk and file systems, and have a foundation understanding of first response or investigation handling. I hope you'll join me on this journey to learn the fundamental skills of using FTK Imager with the AccessData FTK Imager course, here at Pluralsight.