Digital Forensics Concepts (Coursera)

Offered by Infosec,
Digital Forensics Concepts (Coursera)

In the Digital Forensics Concepts course, you will learn about legal considerations applicable to computer forensics and how to identify, collect and preserve digital evidence. This course dives into the scientific principles relating to digital forensics and gives you a close look at on-scene triaging, keyword lists, grep, file hashing, report writing and the profession of digital forensic examination.

Class Deals by MOOC List - Click here and see Coursera's Active Discounts, Deals, and Promo Codes.

What You Will Learn

  • The student will learn how to identify, collect and preserve digital evidence.
  • The student will be able to understand scientific principles relating to digital forensics.
  • The student will be able to understand concepts like keyword lists, grep, file hashing, and report writing.

Course 1 of 3 in the Computer Forensics Specialization.

Syllabus

WEEK 1
Introduction to Digital Forensics
This introductory course provides a broad overview of computer forensics as an occupation by exploring methodologies used surrounding digital forensics. In addition, the student acquires open-source forensic tools to use throughout this path.

WEEK 2
Legal Considerations and search authority
In this module, you'll explore the laws that apply to digital forensics. Multiple state and federal laws apply to the field of digital forensics, as well as ethical concerns. This module demonstrates information commonly needed in a search warrant and a preservation request. The scope of search authority is covered, as well as the limitations of a consent search and guidelines surrounding wiretaps.

WEEK 3
The Investigation Process
An introduction to the scientific principles of digital forensics. This module covers scientific principles that apply to digital forensics. The student learns about transfer of evidence, the difference between a witness and an expert witness and "big data" concerns and solutions.

WEEK 4
Recognizing and Collecting Digital Evidence
Prepare for the practical side of forensic examinations with this module on physical evidence handling. In addition to forensic examinations, most digital investigators must understand how to manage physical evidence before, during and after leaving the scene. This module explores what to bring to a scene and how to prepare and label digital evidence for documentation purposes. You'll also examine how to collect and preserve the evidence for transportation and secure storage.

WEEK 5
Preservation of evidence/On scene triage
Explore the details of digital device triage. Triaging a digital device is essential knowledge. Proper on-scene triage prevents the loss of volatile data and the collection of unnecessary devices. This module discusses capturing RAM, recognizing and dealing with encryption and destructive processes and triaging devices with a forensic boot media.

WEEK 6
Hash values and file hashing
A look at hash values and hash algorithms. In this module, the student learns how to use hash values as a way to include or exclude files from an investigation. This includes a discussion of different types of hash algorithms and how to hash individual files versus hashing drives.

WEEK 7
Creating a disk image
In this module, you'll explore the importance of creating a disk image. Forensic examiners need to be meticulous in their work to avoid cross-contamination when creating a bit-stream copy. This module explains the importance of sterilizing media, how to validate tools, proper application of the write-blocker and validating the forensic bit-stream copy.

WEEK 8
Keyword and grep searches
Explore the details of keyword and grep searches. How to conduct a keyword search using automated tools and how to establish a keyword list is covered in this module. The student receives an overview of grep, as well as completing a grep search using an automated tool.

WEEK 9
Network Basics
A look at network basics for the computer forensics investigator. This module describes what a network is, how it functions, what IP addresses are and an IP address’s function on the network. This module also explores what a MAC address is and why it is vital to network forensics. Internet protocols are also covered.

WEEK 10
Reporting and Peer Review
A look at the importance of reporting and peer review. Report writing and peer review are of utmost importance. In this module, the student examiner learns what information to include and what does not belong in a final report. The student views several example reports, as well as generates a report using forensic software.

WEEK 11
Digital Forensics Project

Go to Class
MOOC List is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Related Courses

Penetration Testing and Incident Response (edX) EdX
IBM

Penetration Testing and Incident Response (edX)

Learn about the various phases of penetration testing, incident response, and the forensic process. This course is part of the IBM Cybersecurity Analyst Professional Certificate! This course is suitable for individuals seeking a fundamental grasp of Cybersecurity or as the fifth installment in a series of courses to develop the skills essential for a career as a Cybersecurity Analyst.

Self Paced
Self-Paced
Governmental Accounting II and Nonprofit Accounting (Coursera) Coursera
University of Illinois at Urbana-Champaign

Governmental Accounting II and Nonprofit Accounting (Coursera)

In this comprehensive course, you will cover a range of topics related to financial reporting for state and local governments. You'll explore fiduciary funds, reconciliation statements, government-wide financial statements, and financial performance analysis. These modules provide a deep dive into the financial reporting requirements and analysis for state and local governments.

Aug 3rd 2026
5-12 Weeks
Forensic Facial Reconstruction: Finding Mr. X (FutureLearn) FutureLearn
The University of Sheffield

Forensic Facial Reconstruction: Finding Mr. X (FutureLearn)

Learn about the forensic technique of facial reconstruction from the experts involved in a real crime case. On Saturday 22 January 2000, two men found a small holdall, abandoned on an industrial estate in the north of Sheffield. Upon opening the bag they made a gruesome discovery. A badly decomposed body. Who was this person? Why did they die? Where had the body been stored all of this time? On this course from The University of Sheffield, you’ll learn alongside the experts who worked to determine the identity of Mr. X. You’ll discover the forensic science techniques that were used to identify the body and understand the circumstances surrounding their death.

Sep 21st 2020
2 Weeks
Digital Forensics Essentials (DFE) (edX) EdX
EC-Council

Digital Forensics Essentials (DFE) (edX)

Digital Forensics Essentials (DFE) is a first-of-its-kind MOOC certification that offers foundational knowledge and skills on digital forensics with add-on labs for hands-on experience. The rapid evolution of computers has brought technical devices as an active weapon to criminals. Cybercriminals have enjoyed the pleasure of being able to combine a large array of complex technologies to be successful in their mission. Due to the complexity of the attack, investigating a crime in the cyber world has become increasingly difficult to do.

Self Paced
Self-Paced
Investigating a Murder with Forensic Psychology (FutureLearn) FutureLearn
The Open University

Investigating a Murder with Forensic Psychology (FutureLearn)

Experience what it’s like to be a detective in a murder investigation as you learn how psychology can help crack the case. Explore applied psychology in the context of a criminal case. Psychology plays an important role in police enquiries. It can help build rapport, plan interviews, detect deception, and understand cognitive bias.

Self Paced
4 Weeks
Accounting Cycle: The Foundation of Business Measurement and Reporting (Canvas.net) Canvas Network
Utah State University

Accounting Cycle: The Foundation of Business Measurement and Reporting (Canvas.net)

This course introduces the basic financial statements used by most businesses, as well as the essential tools used to prepare them. This course will serve as a resource to help business students succeed in their upcoming university-level accounting classes, and as a refresher for upper division accounting students who are struggling to recall elementary concepts essential to more advanced accounting topics.

Aug 5th 2013
4 Weeks
La science forensique au tribunal: témoin digne de foi? (Coursera) Coursera
University of Lausanne

La science forensique au tribunal: témoin digne de foi? (Coursera)

L’objectif de ce cours est d’encourager la réflexion critique en ce qui concerne la « science forensique », également appelée police technique et scientifique ou criminalistique. À l’heure actuelle, de manière générale, la plupart des gens sont fascinés par les possibilités techniques qu’offre la police scientifique. Ils sont bercés par une certaine illusion que les preuves de la science forensique sont infaillibles et fournissent des résultats factuels sûrs à 100 %. Ce cours – dispensé par des spécialistes du domaine – dépasse l’image conventionnelle véhiculée par des séries télévisées comme « Les Experts ».

Aug 10th 2026
5-12 Weeks
Penetration Testing, Incident Response and Forensics (Coursera) Coursera
IBM

Penetration Testing, Incident Response and Forensics (Coursera)

This course gives you the background needed to gain Cybersecurity skills as part of the Cybersecurity Security Analyst Professional Certificate program. You will learn about the different phases of penetration testing, how to gather data for your penetration test and popular penetration testing tools. Furthermore, you will learn the phases of an incident response, important documentation to collect, and the components of an incident response policy and team. Finally, you will learn key steps in the forensic process and important data to collect.

Jun 29th 2026
4 Weeks
Digital Governance (Coursera) Coursera
Erasmus University Rotterdam

Digital Governance (Coursera)

Big data, artificial intelligence, machine learning, autonomous cars, chatbots, just a few terms that have become a part of our professional legal and political vocabulary. Emerging technologies and technological advancement have confronted us in our daily practice and will continue to do so in the future. Whether we’re buying something online, taking part in an election, or chatting with friends across the globe. Technology is here and it is here to stay.

Jul 27th 2026
5-12 Weeks
Incident Detection and Response (Coursera) Coursera
(ISC)²

Incident Detection and Response (Coursera)

Course 7: Incident Detection and Response. Welcome to course seven, Incident Detection and Response. Having an intruder inside your systems for months unnoticed by your systems, administrators, security specialists, and end-users is tantamount to giving the intruder, the keys to your business or organization. In many cases, organizations discover that they have been subjected to a data breach when they are told by others that their private data has been offered for sale on the dark web.

Dec 2nd 2024
3 Weeks