Course Overview:
The Computer Hacking Forensic Investigator (CHFI) course delivers the security discipline of digital forensics from a vendor-neutral perspective. CHFI is a comprehensive course covering major forensic investigation scenarios and enabling students to acquire necessary hands-on experience with various forensic investigation techniques and standard forensic tools necessary to successfully carry out a computer forensic investigation leading to the prosecution of perpetrators.
The CHFI certification gives participants the necessary skills to perform an effective digital forensics investigation. CHRI presents a methodological approach to computer forensics including searching and seizing, chain-of-custody, acquisition, preservation, analysis and reporting of digital evidence
What’s Included:
- 5 days of instructor-led in classroom training
- Detailed Labs for hands-on learning experience; approximately 50% of training is dedicated to labs
- Hundreds of investigation tools including EnCase, Access Data FTL, & ProDiscover
- Huge cache of evidence files for analysis including RAW, .dd images, video & audio files, MS Office files, systems files, etc.
- CHFI Courseware
- Exam Voucher
- CHFI onsite exam scheduling
Course Objectives:
- Establish threat intelligence and key learning points to support pro-active profiling and scenario modeling
- Perform anti-forensic methods detection
- Perform post-intrusion analysis of electronic and digital media to determine the who, where, what, when, and how the intrusion occurred
- Extract and analyze of logs from various devices like proxy, firewall, IPS, IDS, Desktop, laptop, servers, SIM tool, router firewall, switches AD server, DHCP logs, Access Control Logs & conclude as part of investigation process
- Identify & check the possible source/ incident origin
- Recover deleted files and partitions in Windows, MAC OS X, and Linux
- Conduct reverse engineering for known and suspected malware files
- Collect data using forensic technology methods in accordance with evidence handling procedures, including collection of hard copy and electronic documents
Dates/Locations:
| Date/Time | Event |
|---|---|
|
06/29/2026 - 07/03/2026 08:00 -16:00 |
TN-415: Computer Hacking Forensics Investigator (CHFI) TechNow, Inc, San Antonio TX |
|
09/28/2026 - 10/02/2026 08:00 -16:00 |
TN-415: Computer Hacking Forensics Investigator (CHFI) TechNow, Inc, San Antonio TX |
Duration: 5 Days
Course Content:
-
- Module 01. Computer Forensics in Today’s World
- Module 02. Computer Forensics Investigation Process
- Module 03. Understanding Hard Disks and File Systems
- Module 04. Data Acquisition and Duplication
- Module 05. Defeating Anti-forensics Techniques
- Module 06. Operating System Forensics (Windows, Mac, Linux)
- Module 07. Network Forensics
- Module 08. Investigating Web Attacks
- Module 09. Database Forensics
- Module 10. Cloud Forensics
- Module 10. Malware Forensics
- Module 11. Investigating Email Crimes
- Module 12. Investigating Email Crimes
- Module 13. Mobile Forensics
- Module 14. Forensics Report Writing and Presentation
Prerequisites:
-
-
- 2+ years of proven information security work experience
- Educational background with digital security specialization
Target Audience:
-
- Law Enforcement
- Defense & Military
- E-Business Security
- Systems Administrators
- Legal Professionals
- Banking & Insurance professionals
- Government Agencies
- IT Managers
-
-
Comments
Latest comments from students
Liked the class? Then let everyone know!
TechNow provides an array of courses to meet our customer's requirements. Courses that do not fit into our major course categories and custom or specialized courses appear here.
Here are courses about specilaized Software or Hardware:
- CL-218: Introduction to Cloud Infrastructure and Operations Bootcamp
- IT-113: IT Infrastructure Library (ITIL) v4 – Foundations Course
- N-495: Voice-over IP (VoIP) Foundations
- PA-212: Palo Alto Networks Firewall Configure Extended Features (EDU-205)
- PA-213: Palo Alto Networks Firewall Install, Configure, and Manage (EDU-201)
- PA-215: Palo Alto Networks Firewall Essentials FastTrack
- PA-222: Palo Alto Networks Panorama Essentials
- PA-232: Palo Alto Networks Panorama Manage Multiple Firewalls (EDU-221)
- PA-243: Palo Alto Networks Firewall Debug and Troubleshoot (EDU-311)
- RH-345: Red Hat JBoss Application Administration I
- TN-102: Writing Effective Requirements
- TN-205: A+ Skills Class
- TN-225: Network+ Skills Class
- TN-245: Telecommunications Fundamentals
- TN-395: Internet Protocol Version 6 (IPv6)
- TN-430: Elasticsearch Engineer (ELK)
- TN-801: Windows for Security Professionals
- TN-865: Wireshark Network Traffic and Security Analysis
- TN-905: Cyber Threat Intelligence Analysis
- TN-911: Cyber Threat Intelligence (CTI) Analysis and 800-172 Seminar
- TN-963: Windows Security Automation with PowerShell
- VM-315: VMware Infrastructure: Install, Configure, and Manage
- VM-325: VMware View: Install, Configure and Manage
Course Overview:
What a great course that is slightly misnamed! This course may be labeled Security Essentials, but covers much of the subject matter of CISSP! This course does more than just cover the basics. TechNow takes the time to give the student hands on labs to exemplify an objective. Security Essentials Prep Training Course sets the foundation for your security career and sets the expectation of comprehension with more detail than Security+ and more on par with CISSP.
This course provides students skills to take courses that prepare for higher level certifications.
Attendees to TN-929: Security Essentials Training Course will receive TechNow approved course materials and expert instruction.
Date/Locations:
Duration: 9 days
Course Objectives:
- 802.11 Suite of Protocols
- Access Control Theory
- Alternate Network Mapping Techniques
- Authentication and Password Management
- Contingency Planning
- Crypto Concepts
- Crypto Fundamentals
- Defense-in-Depth
- DNS
- Firewall Subversion
- Firewalls
- HIDS Overview
- Honeypots
- ICMP
- IDS Overview
- Incident Handling Fundamentals
- Information Warfare
- Introduction to OPSEC
- IP Packets
- IPS Overview
- IPv6
- Legal Aspects of Incident Handling
- Linux/Unix Configuration Fundamentals
- Linux/Unix Logging and Log Management
- Linux/Unix OS Security Tools and Utilities
- Linux/Unix Overview
- Linux/Unix Patch Management
- Linux/Unix Process and Service Management
- Mitnick-Shimomura
- Network Addressing
- Network Design
- Network Hardware
- Network Mapping and Scanning
- Network Plumbing
- Network Protocol
- NIDS
- OverviewPhysical Security
- Policy Framework
- Protecting Data at Rest
- Public Key Infrastructure
- PKI
- Reading Packets
- Risk Management
- Safety Threats
- Securing Windows Server Services
- Steganography
- OverviewTCPUDP
- Virtual Machines
- Virtual Private Networks VPNs
- Viruses and Malicious Code
- VoIP
- Vulnerability Management Overview
- Vulnerability Scanning
- Web Application Security
- Windows Auditing
- Windows Automation and Configuration
- Windows Family of Products
- Windows Network Security Overview
- Windows Permissions & User Rights
- Windows Security Templates & Group Policy
- Windows Service Packs, Hotfixes and Backups
- Windows Workgroups, Active Directory and Group Policy Overview
- Wireless Overview
Prerequisites:
- Passed CompTIA Security+
Comments
Latest comments from students
User: sjsmith2262
Instructor comments: without question, Dave Askey knows his material!!! great instructor that gave a personalized approach.
Facilities comments: class was taught in a hotel reception area, very nice, quiet and convenient for all people
User: synistry
Instructor comments: Dave was great! (as always). Wealth of knowledge and a master at customizing course content to match the education level of his students. The class kept entirely in pace with where we were at as a group overall on a day to day basis.
Facilities comments: Facilities were overall really nice. The only complaint is that the hotel / conference center had us move rooms on one occasion, and kicked us out early on two others. I would assume this is due to the last minute location change, so I don't think there is anything anyone could have done better in the situation.
Liked the class? Then let everyone know!
Course Overview:
The UNIX Security Administrator Prep is a hands-on course that covers how to secure and audit UNIX and Linux operating systems. This includes concepts such as Rootkits, Buffer overflows, and monitoring UNIX/Linux systems.
Attendees to TN-959: Unix Security Administratorwill receive TechNow approved course materials and expert instruction.
Date/Locations:
Duration: 5 days
Course Objectives:
- AIDE
- Apache
- Best Practices for Kernel Tuning and Warning Banners
- Boot Services
- Chroot()
- DNS- BIND
- DNSSec
- Evidence Collection and Preservation
- Forensic Analysis
- Forensic Preparation and Incident Handling
- Host Based Firewalls – iptables
- Intro to Forensics
- OS Install and Patching
- Physical, User Account, and Password Access Control
- Se Linux
- Sendmail
- SSH
- Stack Smashing
- Sudo
- Syslog-NG
- UNIX Logging
Course Prerequisites:
- GSEC or equivalent experience
- UNIX, Windows, networking, and security experience
- This is a hands-on skill course requiring comfort with command line interaction and network communications
Comments
Latest comments from students
User: wbcarter
Instructor comments: Good Stuff. Thanks!
User: ryuhas
Instructor comments: Very Good Instructor
Facilities comments: Facilities was great. Location had a lot to be desired. To much traffic and accidents trying to get here.
