Credits
7.5 ECTS
Semester
2 Semester
Delivery
Online
Duration
13 weeks
Language
About This Course
This course introduces students to digital forensics and modern Security Operations Centre practices as they are applied in real-world environments. It focuses on evidence acquisition and analysis, disk and memory forensics, incident response, SIEM operations, threat intelligence, and detection engineering. Through hands-on exercises and realistic scenarios, students learn how to investigate cyber incidents, support active defence operations, and communicate findings clearly and responsibly.
What You Will Learn
Your 13-Week Journey
Week 1 – Digital Forensics Foundations
Core principles of digital forensics, evidence lifecycle, and chain of custody.
Week 3 – Windows Native Artifacts I
Key Windows artefacts including Registry, Event Logs, and Prefetch files.
Week 5 – Web Browser Forensics
Analysis of Chrome and Firefox history, downloads, and user activity.
Week 7 – Security Operations Centre Fundamentals
SOC structure, analyst roles, workflows, and core security tooling.
Week 9 – Incident Response Lifecycle
Incident handling processes and forensic triage image analysis.
Week 11 – Threat Intelligence and CTI
Threat intelligence lifecycles, platforms, and adversary profiling.
Week 13 – AI and SOC Automation
Applying AI and automation to alert triage, phishing detection, and SOC workflows.
