Digital Forensics Lab & Workshop for Law Enforcement

A Closed Door Training

20–21 November 2025

AICB Centre of Excellence, Kuala Lumpur

Invitation & Registration: [email protected]
Strategic Partner : Siaga Informatics Sdn Bhd in collaboration from Magnet Forensics
Supporting Partner : Kumpulan Kerja Forensik Digital (KKFD)

Skill Level: Beginner to Intermediate
📅 Date: 20 – 21 November 2025
📍 Venue: Rafflesia Room, Level 9, Holiday Inn Express Kuala Lumpur City Centre, 84 Jalan Raja Chulan, 50200 Kuala Lumpur
🗺️ Google Map: https://maps.app.goo.gl/Ujb9FSsWj2XGECnGA
Registration: 9.00AM. Training Time: 9:30 AM – 5:00 PM

Program Overview

The Digital Forensics Workshop for Law Enforcement is a 2-day intensive program designed to strengthen the ability of  law enforcement officers to handle digital evidence with confidence and precision.

Participants will learn the fundamentals and advanced techniques of digital forensics, covering the complete lifecycle of evidence — from acquisition and preservation to analysis and reporting. The workshop combines live demonstrations, practical exercises, and real case discussions to ensure relevance to on-the-ground investigations.

With cybercrime on the rise, law enforcement faces increasing challenges in collecting and presenting digital evidence that is legally defensible in court. This workshop equips officers with the technical knowledge and forensic mindset needed to ensure evidence integrity, enhance investigative accuracy, and improve conviction outcomes.

Through hands-on labs, scenario-based exercises, and guided discussions, participants will apply forensic tools from world-leading provider, Magnet Forensics  and methodologies to real-world challenges. Expert facilitators will walk through common pitfalls, share best practices, and provide participants with actionable skills they can immediately apply in their daily work.

Learning Objective

  • Understand and apply the principles of digital forensics and the evidence lifecycle in the context of law enforcement.
  • Perform proper evidence acquisition and preservation techniques to maintain chain of custody and ensure legal admissibility.
  • Analyze digital artifacts such as file systems, logs, and metadata to reconstruct events and user activities.
  • Verify and report findings using structured forensic methodologies that can stand up in legal proceedings.
  • Recognize emerging challenges in digital forensics, including mobile, cloud, and encrypted environments, and adopt strategies to address them.

Target Audience

  • Law Enforcement Investigators – officers involved in cybercrime, fraud, financial crime, or criminal investigations requiring digital evidence.
  • Forensic Analysts & Technicians – personnel responsible for handling, acquiring, and analyzing digital devices or storage media.
  • Prosecutors & Legal Officers – individuals who need to understand how digital evidence is collected and verified to ensure legal admissibility in court.
  • Cybercrime & Digital Crime Units – specialized teams within law enforcement agencies handling cases of online exploitation, hacking, or digital fraud.
  • Intelligence & National Security Agencies – professionals tasked with monitoring, collecting, and analyzing digital intelligence for operational purposes.
  • IT Security Officers within Law Enforcement – staff managing internal security, digital forensics labs, and evidence management systems.

Key Takeaways

  • How to set up and maintain a compliant forensic lab (ISO-ready).
  • Mastery of evidence acquisition using AXIOM Cyber and automation with Automate.
  • Skills in reviewing and authenticating media with Witness, Griffeye, and Verify.
  • Confidence in managing digital evidence that meets both investigative and courtroom standards.

Knowledge Prerequisites

  • Basic Computer Literacy – familiarity with operating systems (Windows, Linux, macOS) and common applications.
  • Fundamentals of Networking – understanding of IP addresses, protocols, and how data flows across networks.
  • Awareness of Cybercrime Concepts – general knowledge of cyber threats, online fraud, and digital evidence in investigations.
  • File System Basics – understanding how data is stored, accessed, and deleted on digital media (hard drives, USBs, mobile devices).
  • Chain of Custody Principles – awareness of legal processes for handling and documenting evidence.

Hardware Requirements

Laptop with permission to install digital forensics tool that will be used during the workshop

Trainer: Rozaili Idris

ProfilePic_Roz

Rozaili Idris is a digital forensics specialist with a strong background in law enforcement and forensic solutions, focusing on digital investigations and evidence analysis. Having been a technical trainer providing digital forensics certification training, along with hands-on experience in law enforcement and forensic solutions, he brings a well-rounded perspective on both the technical and operational aspects of digital forensics. Now a Solutions Consultant at Magnet Forensics, he focuses on empowering investigative teams with innovative tools to enhance digital evidence analysis and case management.

Training Agenda

Building the Lab and Getting the Evidence Right

  1. Opening & Introduction
      • Workshop goals and relevance to law enforcement investigations
  2. Fundamentals of Setting Up a Digital Forensic Lab
      • Essential lab infrastructure (hardware, software, storage, and security)
      • Standards and compliance: ISO/IEC 17025 and ISO/IEC 27037 (requirements for forensic labs and evidence handling)
  3. Interactive Discussion
      • Common challenges in forensic labs (real cases from Malaysian context)
  4. Evidence Acquisition Fundamentals
    • Live demo of imaging and capturing data from different sources (PC, mobile, cloud)
  5. Hands-on Lab 1: Evidence Acquisition with AXIOM Cyber
    • Capturing digital evidence from live and remote endpoints
    • Preserving cloud-based and encrypted evidence
  6. Automation in Digital Forensics
    • Role of automation in scaling investigations
    • Using Automate for repetitive tasks and evidence workflow efficiency
  7. Hands-on Lab 2: Automating Evidence Collection
  8. Wrap-Up Day 1 – Key learnings, Q&A, and recap

From Raw Data to Reliable Evidence

  1. Maintaining a Digital Forensics Lab
      • Equipment calibration, software validation, and secure storage
      • Meeting ongoing ISO standards and audit requirements
      • Resource management: training, updates, and sustainability of forensic labs
  2. Case Example: How poor lab practices jeopardize admissibility of evidence
  3. Lab Demo: Media Review & Authentication Techniques
      • Identifying, tagging, and cataloguing evidence
      • Authenticating digital media for investigations and legal use
  4. Hands-on Lab 3: Review with Witness & Griffeye
      • Practical media review (images, video, large datasets)
      • Use of Griffeye for advanced analysis (metadata, facial recognition, categorization)
  5. Hands-on Lab 4: Evidence Verification with Verify
      • Authenticating and validating digital media
      • Reporting processes to meet court admissibility standards
  6. Closing Session
      • Workshop recap and group discussion: Lessons learned & application in Malaysian law enforcement
      • Q&A
      • Certificate presentation