This class is an introduction to the concepts, terminology and management in the fastest growing areas in forensic science, digital evidence network intrusion and information security. The class introduces students to the methods used to acquire and analyze digital evidence, learn the fundamentals of the forensic process, including documentation and presentation of information collected during analysis, how to maintain and document the chain of custody and methods of analysis and procedures. The class also contains an overview of intrusion detection, live acquisitions and live acquisition tools, as well as an overview of forensic hardware solutions including but not limited to forensic computers, hardware write blocking tools and dedicated analytical equipment. Using recovered digital artifacts students will reconstruct activities from digital devices to create forensic examination reports based on the information recovered.