{ "document_metadata": { "page_number": "339 of 375", "document_number": "499-1", "date": "11/23/21", "document_type": "Curriculum Vitae", "has_handwriting": false, "has_stamps": false }, "full_text": "Case 1:20-cr-00330-PAE Document 499-1 Filed 11/23/21 Page 339 of 375\n\nCURRICULUM VITAE\nRobert P. Kelso\n\nFORENSIC PURSUIT\n2000 Arapahoe Street, Suite 1 | Denver, Colorado 80205\nOffice (303) 495-2082 | Email Robert.Kelso@ForensicPursuit.com\n\nSPECIALIZED TRAINING - CERTIFICATIONS - LICENSES\nCertified Computer Hacking Forensic Investigator (CHFI) ID: ECC918204 - January 2007\nEnCase Certified Examiner (EnCE) ID: 15-0809-3218 - August 2009\nAccessData Certified Examiner (ACE) ID: 109179 - May 2012\n\nComputer Forensics - Specialized Training\n| - Windows 8 forensics | - Smart device app analysis |\n| - Android malware detection | - Link file analysis |\n| - Decrypting protected user data in browsers | - USB history analysis |\n| - Legal, privacy, and ethical considerations in computer forensics | - Creating and verifying bit-stream forensic images |\n| - Acquisition, collection and seizure of magnetic media | - Determining creation/modification date files |\n| - Documenting Chain of Custody | - Creating and using forensic boot disks |\n| - Forensic Tool Kit (FTK) and EnCase | - Linux and Macintosh computer forensics |\n| - Recovery of Windows file metadata | - Recovery of internet usage data |\n| - Recovering data from slack space | - Forensics on FAT and NTFS file systems |\n| - Court findings presentation process | - Hidden file recovery techniques |\n| - Windows registry forensics | - Recovery on swap/ temporary files |\n| - Recovering email | - Data carving from unused space |\n| - Mobile device forensics (smart phones, PDA, digital camera, iPhone, flash media) | - Recovering files, directories, and metadata from formatted disks |\n| - Determining skin tone percentages in images | - Stenography, alternative data streams and other types of file hiding |\n\nLicensed Private Investigator in Colorado and Texas\nColorado Department of Regulatory Agencies, License No. PI2.0000213\nTexas Department of Public Safety, License No: A17132\n\nE-Discovery and Evidence Best Practices\nColorado Bar Association, Continuing Legal Education\n\nEDUCATION\nGraduate Degree\nGraduated in May 1993 with a Master of Science in Aerospace Engineering specializing in Astrodynamics from the University of Colorado in Boulder, Colorado.\n\nEXHIBIT H\nDOJ-OGR-00007832", "text_blocks": [ { "type": "printed", "content": "Case 1:20-cr-00330-PAE Document 499-1 Filed 11/23/21 Page 339 of 375", "position": "header" }, { "type": "printed", "content": "CURRICULUM VITAE\nRobert P. Kelso", "position": "top" }, { "type": "printed", "content": "FORENSIC PURSUIT\n2000 Arapahoe Street, Suite 1 | Denver, Colorado 80205\nOffice (303) 495-2082 | Email Robert.Kelso@ForensicPursuit.com", "position": "top" }, { "type": "printed", "content": "SPECIALIZED TRAINING - CERTIFICATIONS - LICENSES", "position": "middle" }, { "type": "printed", "content": "Certified Computer Hacking Forensic Investigator (CHFI) ID: ECC918204 - January 2007\nEnCase Certified Examiner (EnCE) ID: 15-0809-3218 - August 2009\nAccessData Certified Examiner (ACE) ID: 109179 - May 2012", "position": "middle" }, { "type": "printed", "content": "Computer Forensics - Specialized Training", "position": "middle" }, { "type": "printed", "content": "| - Windows 8 forensics | - Smart device app analysis |\n| - Android malware detection | - Link file analysis |\n| - Decrypting protected user data in browsers | - USB history analysis |\n| - Legal, privacy, and ethical considerations in computer forensics | - Creating and verifying bit-stream forensic images |\n| - Acquisition, collection and seizure of magnetic media | - Determining creation/modification date files |\n| - Documenting Chain of Custody | - Creating and using forensic boot disks |\n| - Forensic Tool Kit (FTK) and EnCase | - Linux and Macintosh computer forensics |\n| - Recovery of Windows file metadata | - Recovery of internet usage data |\n| - Recovering data from slack space | - Forensics on FAT and NTFS file systems |\n| - Court findings presentation process | - Hidden file recovery techniques |\n| - Windows registry forensics | - Recovery on swap/ temporary files |\n| - Recovering email | - Data carving from unused space |\n| - Mobile device forensics (smart phones, PDA, digital camera, iPhone, flash media) | - Recovering files, directories, and metadata from formatted disks |\n| - Determining skin tone percentages in images | - Stenography, alternative data streams and other types of file hiding |", "position": "middle" }, { "type": "printed", "content": "Licensed Private Investigator in Colorado and Texas\nColorado Department of Regulatory Agencies, License No. PI2.0000213\nTexas Department of Public Safety, License No: A17132", "position": "middle" }, { "type": "printed", "content": "E-Discovery and Evidence Best Practices\nColorado Bar Association, Continuing Legal Education", "position": "middle" }, { "type": "printed", "content": "EDUCATION\nGraduate Degree\nGraduated in May 1993 with a Master of Science in Aerospace Engineering specializing in Astrodynamics from the University of Colorado in Boulder, Colorado.", "position": "bottom" }, { "type": "printed", "content": "EXHIBIT H\nDOJ-OGR-00007832", "position": "footer" } ], "entities": { "people": [ "Robert P. Kelso" ], "organizations": [ "Forensic Pursuit", "Colorado Department of Regulatory Agencies", "Texas Department of Public Safety", "Colorado Bar Association", "University of Colorado" ], "locations": [ "Denver", "Colorado", "Texas", "Boulder" ], "dates": [ "January 2007", "August 2009", "May 2012", "May 1993", "11/23/21" ], "reference_numbers": [ "ECC918204", "15-0809-3218", "109179", "PI2.0000213", "A17132", "DOJ-OGR-00007832" ] }, "additional_notes": "The document is a curriculum vitae for Robert P. Kelso, detailing his specialized training, certifications, licenses, and education in computer forensics and related fields." }