********** Forensics ********** .. contents:: Table of contents Introduction ============= For more information about the purposes of this site view the `about`_ page. This page is meant to provide the neccessary info pertaining to Blue Team activities occured in the 7th semester, the minor. For more information relating to the context of why this page exists visit the `personal learning plan`_. .. _about: /about.html .. _personal learning plan: /personal%20learning%20plan.html Learning focuses ================ In order to shape the upcoming curriculum, I've chosen various learning focuses for the blue team side. These are work in progress, and have to be developed out further. ------------- .. sidebar:: Forensics .. image:: security.svg Category ^^^^^^^^^ | In the tables below the category tab depicts the nature of the skill concercning the listed task. | The duration is not something I came up with; it is derived from the Personal Learning Plan assignment template. | Additionally to the standard, I've expanded with a custom table with tasks I came up with. - T = Technical skills - N = Non-technical skills - R = Research & development skills - P = Professional skills Learning tasks --------------- +-----------------------------------------------+----------+----------+-------------+ | Task summary | Category | Duration | Requirement | +===============================================+==========+==========+=============+ | Follow workshops related to digital forensics | T | 0.5day | Should | +-----------------------------------------------+----------+----------+-------------+ | Study forensic methodologies and practices | N | 1day | Must | +-----------------------------------------------+----------+----------+-------------+ | Work out forensic challenges | T | 1-3days | Must | +-----------------------------------------------+----------+----------+-------------+ | Write a forensic report on a complex case | N+P | 2days | Must | +-----------------------------------------------+----------+----------+-------------+ | Study typical forensics cases | T | 2days | Must | +-----------------------------------------------+----------+----------+-------------+ Research & development tasks ----------------------------- +------------------------------------------------+----------+----------+-------------+ | Task summary | Category | Duration | Requirement | +================================================+==========+==========+=============+ | Visit digital forensic conferences/seminars | R | 1day | Should | +------------------------------------------------+----------+----------+-------------+ | Organize/join a session to analyze a new vuln. | T+P | 1-2days | Should | +------------------------------------------------+----------+----------+-------------+ | Set up your personal toolbox environments | R+T | 2days | Must | +------------------------------------------------+----------+----------+-------------+ | Learn how cryptography works | R+T | 2-3days | Should | +------------------------------------------------+----------+----------+-------------+ Professional application tasks ------------------------------- +---------------------------------------------------------+----------+----------+-------------+ | Task summary | Category | Duration | Requirement | +=========================================================+==========+==========+=============+ | Get digital forensic assignments or a realistic case | P+T+N | 4days | Must | +---------------------------------------------------------+----------+----------+-------------+ | Perform malware analysis | P+T+N | 4days | Must | +---------------------------------------------------------+----------+----------+-------------+ | Analyse, design and implement forensics | P+T+N | 2days | Must | +---------------------------------------------------------+----------+----------+-------------+ | Learn how cryptography works | R+T | 2-3days | Should | +---------------------------------------------------------+----------+----------+-------------+ | Perform forensic analysis on a new device or technology | P+T+N | 3days | Must | +---------------------------------------------------------+----------+----------+-------------+ Learning tasks execution ^^^^^^^^^^^^^^^^^^^^^^^^^ .. toctree:: :maxdepth: 2 learning/forensics/forensicsworkshop