SANS Digital Forensics and Incident Response Blog

Digital Forensics and Incident Response Summit 26-27 June in Austin Texas

The Digital Forensics & Incident Response Summit & Training, taking place in Austin, TX is fast approaching.

Register now using the code DFIR10 to save an extra 10% off your registration price.

Pre-Summit Training Courses:

June 20 - 25, 2012

SANS top notch Digital Forensic training with courses on network forensics, reverse engineering malware, digital forensic analysis and incident response.

Digital Forensics & Incident Response Summit:

June 26 - 27, 2012

You'll be treated to two outstanding keynote presentations — Det Cindy Murphy, Madison Police Department and Harlan Carvey, Chief Forensics Scientist at Applied Security, Inc. They will be joined by many other of the best minds in forensics and incident response who will share lessons they have learned.

Register Now:


20+ speakers from a variety of companies will cover exceptional content throughout the two-day Summit. The agenda will cover the following topics and much more.

  • - Windows 8 Forensic Artifacts - Kenneth Johnson, Principal Financial Group
  • - Analysis and Correlation of Macintosh Logs — Sarah Edwards, Harris Corporation
  • - Practical Use of Cryptographic Hashes in Forensic Investigations - Pär Österberg Medina, McAfee and Foundstone Professional Services
  • - Reasons Not to "Stay in Your Lane" as a Digital Forensics Examiner — Alissa Torres, KEYW Corporation
  • - Digital Forensics for IaaS Cloud Computing — Josiah Dykstra, US Dept. of Defense
  • - Carve for Records (Not Files) — Jeff Hamm, Mandiant
  • - Android Memory Acquisition and Analysis with DMD and Volatility — Joe Sylve, Digital Forensics Solutions
  • - Sniper Forensics v3: Hunt — Christopher Pogue, SpiderLabs
  • - Decade of Aggression — Christopher Witter, Major Defense Contractor
  • - Passwords are everywhere — Hal Pomeranz, Deer Run Associates
  • - Recovering Digital Evidence in a Cloud Computing Paradigm — Jad Saliba, JADsoftware
  • - Anti-Incident Response — Nick Harbour, Mandiant
  • - Automating File Analysis - Pär Österberg Medina, McAfee and Foundstone Professional Services
  • - Mac Memory Analysis with Volatility — Andrew Case, Terremark
  • - Digital Dumpster Diving — Lee Reiber, AccessData
  • - When Macs Get Hacked - Sarah Edwards, Harris Corporation
  • - Evidence is Data: Your Secret Advantage — Jon Stewart, Lightbox Technologies, Inc.
  • - Taking Registry Analysis to the Next Level — Elizabeth Schweinsberg, Google, Inc.
  • - Tales from the Crypt: TrueCrypt Analysis - Hal Pomeranz, Deer Run Associates
  • - Security Cameras: The Corporate DFIR Too of the Future — Mike Viscuso, Carbon Black
  • - Exfiltration Forensics in the Age of The Cloud — Frank McClain, PrimeLending

View the detailed conference agenda, speakers and participating vendors as they become available here

DON'T MISS the welcome party June 26th sponsored by 21CT. There will also be sponsored lunch and learns by 21CT and JADSoftware and a meet and greet with Harlan Carvey!


Don't miss this opportunity to educate yourself and be more successful in your job. The following skills based courses, taught by SANS' top-rated instructors, will be offered. For complete course descriptions visit,

FOR 408 - Computer Forensic Investigations — Windows In-Depth

FOR 558 — Network Forensics

FOR 610 - Reverse-Engineering Malware: Malware Analysis Tools and Techniques

FOR 508 - Advanced Computer Forensic Analysis and Incident Response (2012 Brand New Version - Completely Rewritten to teach people how to fight the APT)

Stay connected via twitter, using hashtag #DFIRsummit, to hear announcements and discussions surrounding the Summit. You can also obtain the latest SANS Computer Forensics & Incident Response information by visiting

See you in Austin!

Rob Lee

SANS Digital Forensics and Incident Response Curriculum Lead