1 (888) 999-9712 |
Customer Service
|
Customer Portal
Products
EnCase® Enterprise Platform
EnCase® eDiscovery
EnCase® Cybersecurity
EnCase® Forensic
EnCase® Portable
Tableau Forensic
Services
Professional Services
Advisory Program
Implementation
Casework
Security Assessment
Data Mapping
Legal Hold & ECA Jump-Start
Integration
Staff Augmentation
Training
Training Overview
Course Offerings
Course Schedule
Training Programs
Certification Programs
Certifying Organizations
Training Partners
Resources
Webinars & Demos
Whitepapers & Briefs
Events Calendar
Digital Forensics Today Blog
Threat Response Blog
Guidance on E-Discovery Blog
Real eDiscovery Magazine
EnCase® Legal Journal
CEIC Conference 2012
CISO Conference 2012
Customer Center
Customer Service
Technical Support
CEIC Conference
Training
Professional Services
Product Registration
Partners
Channel Partner Program
Channel Partners
Channel Partner Portal
Service Providers
Law Firms
About Us
Company Overview
Management
eDiscovery Legal Team
Newsroom
Careers
Investors
Contact Us
Home
/
This hands-on course focuses on the use of EnCase® Enterprise version 7 (Enterprise v7) to conduct investigations in a live network environment as well as the administration and advanced use of Enterprise v7. Students will learn how to use Enterprise v7 to address internal investigations, electronic discovery, and audits in a manner consistent with recognized standards as well as integrate Enterprise v7 with intrusion detection systems.
The students will learn about EnScript® programming for the creation and use of filters and conditions. The EnCase® Snapshot function will be introduced and used throughout the course, giving the students a thorough familiarity with this key feature. The attendees will learn about preferred enterprise acquisition techniques and e-discovery collection concepts. The students will use their new-found knowledge and skills to identify and decrypt encrypted files. The students will expand on their knowledge of the function of the EnCase® Enterprise servlet.
Delivery method: Group-Live. NASBA defined level: basic to intermediate.
32
Introductory to Intermediate
None. It is highly recommended that students attend EnCase® Computer Forensics I and II. This live course is designed for senior corporate security professionals, auditors, legal professionals and investigators. Students should currently be working with EnCase® Enterprise or employed by an organization that plans to purchase EnCase Enterprise.
This course is intended for senior corporate security professionals, auditors, legal professionals, corporate and private investigators, and network security personnel. A basic understanding of the concepts of computer forensics is required. The class curriculum builds upon the foundation of the EnCase Computer Forensics II, continuing with a focus on the use of EnCase Enterprise for live, enterprise-wide investigations.
Tuition is $2,995.00 USD per student.
See Class Details for Actual Tuition Costs
Students will learn how to install and configure the Secure Authentication for EnCase® (SAFE)
Students will learn how data flows in the Enterprise v7 environment; the built-in security features of the product will also be discussed
Students will learn about the administration of the SAFE, including the management of network nodes (clients) and Enterprise v7 roles and users
Students will learn how to deploy servlets to supported operating systems (Windows®, *nix, Mac)
Students will learn enterprise-wide versus ad-hoc servlet deployment methods and benefits
Students will optimize network acquisitions in Enterprise v7 security
Students will learn how the Snapshot function and the capture of volatile data can be used to gain a more complete picture of the status of a machine or machines during an incident investigation
Students will learn how to acquire data at a physical and logical level
Students will learn to use the Snapshot function to capture and analyze enterprise-wide volatile data
Students will learn how to create filters and conditions to streamline investigations of all kinds
Students will learn how to create filters and conditions to streamline investigations of all kinds
Students will utilize Enterprise v7 for compromise assessment and process analysis
Students will understand how Enterprise v7 can rapidly identify and retain data across the network using a set of criteria provided by the examiner
Students will learn the advanced use of the servlet and servlet deployment
Students will learn to automate the e-discovery process using Enterprise v7
Students will learn encryption techniques and how to use Enterprise v7 to decrypt data
Students will learn how to bookmark data and prepare evidence for proper report creation
SELECT LOCATION 
SELECT DATE
COURSE INFORMATION
Chicago, IL
Houston, TX
Pasadena, CA
Switzerland (City TBA)
United Kingdom
Washington, DC
DIRECTIONS
For more information regarding refund concerns and program cancellation policies, contact Guidance Software Training at
training@guidancesoftware.com
or call 626.229.9191 ext. 566.