Hello and Welcome to my Blog!

I entered the DFIR field in May of 2019 and created this site to document the resources I use as I learn and grow in DFIR. I’m hoping it will help others who are interested in the field or who are also just getting started. Under DFIR Resources, you will find books, training, webinars, videos, and other resources that I have found to be helpful. I also use Facebook and Twitter to share resources I come across. This is a personal blog and all views are my own.

Continue reading...

DFIR Related Events for Beginners – October, 2020

This is geared toward beginners but there’s something for all skill levels. All events listed are virtual. Type “free” in the search box to only show free events. Type “under” in the search box to show events $50 and under. Be sure to hit the “Load More Events” button until you see “No More Events”. If I missed something when I originally posted this, I’ll add it, so check back or subscribe for updates. Ongoing Events & Training are at the bottom of this page. CLICK THE “LOAD MORE EVENTS” BUTTON TO SEE ALL EVENTS Ongoing CTFs and Challenges have...

Continue reading...

My Cover6 Solutions Summer Cyber Camp Experience

I attended the Cover6 Solutions Summer Cyber Camp (Attack & Defend Workshop) from August 24th – 28th. The course was taught by Tyrone Wilson who is also the Founder and President of Cover6 Solutions. We foster a fun, collaborative, and open environment where we embrace trial and error, encourage creative thinking, and we treat failures as learning tools. -Cover6 Solutions The statement above is a perfect representation of what the class was like. It was held via GoToWebinar, and our microphones were unmuted to encourage participation and collaboration. Unfortunately for me, class was held during my work hours and I...

Continue reading...

DFIR Related Events for Beginners – September, 2020

I created a poll on Twitter and LinkedIn asking if I should keep this monthly blog post at events costing under $50 or a different price point. The majority voted for listing all events regardless of price. Since so many people also voted to keep it the way it was, I also tried to find a solution that allows you to filter the events. All events listed are virtual. Type “free” in the search box to only show free events. Type “under” in the search box to show events under $50. Be sure to hit the “Load More Events” button...

Continue reading...

My Experience With the SANS FOR500 Course and the GCFE Exam

After years of getting their course catalogs in the mail. I was very excited to finally be able to take a SANS course after landing my job in the DFIR field. I love to learn. I even like taking certification exams, but for the first time while studying for a certification (I already had 9 of them), I lost all focus and motivation for a while. I took the FOR500 OnDemand course with Rob Lee as the instructor. He was great! You get 4 months to complete the training and take the exam. The course started on March 20th and...

Continue reading...

DFIR Related Events for Beginners – August, 2020

A list of Digital Forensics and Incident Response related events and training that may be of interest to students/beginners for the month of August. All events listed are virtual. August 4th: Panoply (Free for Black Hat attendees) “Panoply is an network assessment/defense competition combined into a single event.” You can register HERE. August 5th: Susteen’s Digital Forensics Industry Day (Free) “Sign up for individual sessions, multiple sessions or an entire session track! Attendees will earn challenge pins for each session attended.” You can register here: https://datapilot.com/digital-forensic-industry-day/ August 5th and 6th: Black Hat (The Business Pass is Free). A Business Pass...

Continue reading...

DFIR Related Events for Beginners – July 2020

A list of Digital Forensics and Incident Response related events and training that may be of interest to students/beginners for the month of July. July 1st, 8th, 15th: Attack Detection Fundamentals (F-Secure) Free and Virtual “Our consultants will refer to live attack examples (like Emotet), explain how each detection technique is effective against different attacks, and map detection techniques to the cyber kill chain. Expect hands-on demonstrations that you can start using straight away.” The first workshop already happened, but you can view the accompanying lab and the video in the Tweet below. Go HERE to register. July 2nd: BSides TLV Free and Virtual. Includes...

Continue reading...

DFIR Related Events for Beginners – June, 2020

A list of Digital Forensics and Incident Response related events and training that may be of interest to students/beginners for the month of June. June 2nd: Cache Up This is weekly starting June 2nd on YouTube Live. Go here for more information: https://www.magnetforensics.com/blog/magnet-forensics-presents-cache-up/ June 3rd – 5th: DFRWS Virtual Conference This is a paid Digital Forensics conference. For more information and to register, go here: https://events.eventzilla.net/e/dfrws-virtual-europe-2020-2138771086 June 3rd: Join Us for a Chat About DFIR You can sign up here: https://cybersocialhub.com/dfir-mixology/ June 4-5th: SANS DFIR NetWars If you registered for a SANS class between March, 2020 and now, you are...

Continue reading...

How to Incorporate Home Lab Experience into Your Resume

Someone asked me an excellent question yesterday about how to go about framing home lab experience into professional experience. I thought I could explain it best in a blog post with examples, so here it goes… A decade prior to entering the DFIR field, I was in technical support for about a year. I then moved to a very non-technical Identity & Access Management role for several years (think Excel spreadsheets all day long). Most of my technical experience was from what I did in my home lab. Keep in mind, I am by no means a resume expert, but...

Continue reading...

DFIR Related Events for Beginners – May, 2020

A list of Digital Forensics and Incident Response related events and training that may be of interest to students/beginners for the month of May. May 4th – May 16th: NW3C CTF The competition will run from Monday, May 4th 2:00 PM EDT (6:00 PM UTC) until Saturday, May 16th 1:59 PM EDT (5:59 PM UTC).  The user who achieves the highest point total during the two week competition will be crowned the victor! May 4th – May 29th: Magnet Forensics Virtual Summit. Magnet Forensics is hosting a free virtual DFIR summit that starts on May 4th and goes throughout the month...

Continue reading...

DFIR Related Events for Beginners – April, 2020

A list of Digital Forensics and Incident Response related events and training that may be of interest to students/beginners for the month of April. As a result of the idea to make a monthly list of DFIR related events for beginners just now popping into my head, the April edition is for the end of April. I will start doing this at the beginning of each month. April 20, 2020: NW3C Capture The Flag Challenge. “The competition will run from Monday, April 20th 2:00 PM EDT (6:00 PM UTC) until Saturday, May 2nd 1:59 PM EDT (5:59 PM UTC).  The user...

Continue reading...