-
Acquire data in a forensically sound manner using software with an unparalleled record in courts worldwide.
-
Logical Evidence Files allow investigators to acquire only relevant data, preserving metadata on an individual-file basis, which eliminates the need to capture entire hard drives.
-
Investigate and analyze multiple platforms — Windows, Linux, AIX, BSD, OS X, Solaris and more — using a single tool.
-
Securely investigate/analyze computer, while they're up and running, at a disk level.
-
Overcome the challenges associated with RAID arrays and encrypted volumes by acquiring evidence from live servers.
-
Discretely carry out investigations without alerting suspects.
-
Transfer evidence files directly to other parties, such as legal representatives, as necessary.
-
Quickly triage machines to determine if incriminating evidence exists before acquiring the data.
EnCase Training Schedule
|
|

|