Email Forensics Training by Metaspike

Are you interested in this product?

1300 55 33 24

Request a Call back


Live training on forensic email investigations over the Internet. Approximately 8 hours in duration, spread across two consecutive days. See the details below👇🏻 for the syllabus.

No commercial email forensics software is needed. We will provide a list of common/freely-available tools that will be used for the labs ahead of the training.

Have a large group? Contact us to arrange group training.

The price is per seat. If you would like to purchase training for multiple attendees, add one unit per person and provide us with the details of each person.


 Date: March 9 and March 10, 2023 (two days)| Time: 9 AM to 1 PM (AEDT) — same time on both days

Place / Time Zone Training Start / End
Singapore (GMT+8) 6 AM to 10 AM
Perth (AWST) 6 AM to 10 AM
Tokyo (JST) 7 AM to 11 AM
Brisbane (AEST) 8 AM to 12 PM
Melbourne (AEDT) 9 AM to 1 PM
Auckland (NZDT) 11 AM to 3 PM

Course Outline

Anatomy of An Email Message

Where does email live, and what does an email message look like?

— Message Headers

What header fields can be found in an email message, and how they can be used during email investigations.

— Message Body, Attachments, and MIME

What the message body contains and what to look for in the message body during forensic authentication. Different types of timestamps that can be found within the message body.

— Email over The Internet

How does email travel across the Internet? Low-level look at what an email client does to transmit a message.


Q. Does this course cover Metaspike’s forensic tools (Forensic Email Collector and Forensic Email Intelligence)?
A. No. This course covers forensic email investigations in a vendor-neutral manner.
Q. Will a certificate of completion be provided?
A. Yes, please contact us at to request your certificate after you have taken the course.