Skip to content
FaceOff Technologies

Scattered open sources · linked by edge · resolved to one

Overview

What TrustShield OSINT does

TrustShield OSINT works with information that is already public or already lawfully held by you. It watches for accounts impersonating your people and brand, and it establishes whether records held in different places describe the same person, so an investigator starts with a picture rather than a pile of tabs.

The information needed to understand a person or an incident is usually available already. The difficulty is that it sits in many places, none of which talk to each other, and an analyst spends most of their time gathering it rather than thinking about it.

TrustShield OSINT does the gathering. It watches public channels for accounts impersonating your executives or your brand, and for activity that looks coordinated rather than genuine. Separately, it works out whether records held across the sources you are entitled to use describe one person or several, and shows how they connect.

What comes back is a starting point rather than a verdict. Connections are presented with the reasons they were drawn, so an analyst can follow them, discard the ones that do not hold, and record what they concluded. The work of judging is left where it belongs.

Products across public information intelligence

2

Products across public information intelligence

Works only with information you may lawfully use

Public and authorised

Works only with information you may lawfully use

Findings are examined by a person, not acted on automatically

Analyst led

Findings are examined by a person, not acted on automatically

In this category

2 products. One picture, assembled from many places

One product watches what is being said and posted in public. The other establishes whether records in different systems describe the same person. Both hand their findings to an analyst with the reasoning attached.

SocialIntel Analyzer

Social media and public data intelligence.

  • Cross-platform OSINT social monitoring
  • Fake profile & botnet network detection
  • Public threat & misinformation tracking
Explore SocialIntel Analyzer

Identity Intelligence Engine

Cross-platform identity resolution and linkage.

  • Identity resolution across authorised sources
  • Cross source identity linkage
  • Relationship context for analyst review
Explore Identity Intelligence Engine

How it works

Four steps, from scattered information to a working picture

Nothing here reaches for information you are not entitled to. The value is in assembling what is already available and showing how the pieces relate.

  • Public channelsWhat is posted openly
  • Authorised sourcesRecords you may lawfully use
Already available to you

Two questions

Who is this, and is it genuine

  • Accounts impersonating your people or brand
  • Activity that looks coordinated, not organic
  • Whether records describe one person or several
  • How the connections between them were drawn
A lead, not a conclusion

Connections are presented with the reasons behind them for an analyst to follow, test and discard, never acted on automatically.

  • A picture of the connectionsWith the reasoning shown
  • A record of what was concludedFor a case file or a review
  1. 01

    Set what you are watching for

    Name the people, brands or subjects that matter, and the sources you are entitled to draw on. That boundary is set at the start and the work stays inside it.

  2. 02

    It gathers what is already there

    Public channels are monitored for impersonation and for activity that looks organised rather than genuine. Records across your authorised sources are collected together for the subject in question.

  3. 03

    The pieces are related

    Records that appear to describe the same person are brought together, and the connections between them are shown along with the reasons they were drawn, so a weak link is visible as a weak link.

  4. 04

    An analyst decides

    The picture is handed over for a person to examine, follow and challenge. What they conclude is recorded with the material that supported it, in a form suitable for a case file, an escalation or a review.

Use cases

Where organisations put it to work

Wherever the answer is already public but scattered. These are the situations teams bring to the category most often.

Banking and financial crime

Establish whether applications and accounts held in different systems belong to the same person, and give an investigator the connections behind that view rather than a list of possible matches.

Brand and executive protection

Find accounts impersonating your senior people or your brand while they are still being set up, and keep a record of each one for a takedown request or legal follow up.

Law enforcement and public safety

Assemble the publicly available picture around a subject or an incident quickly, with every connection traceable back to what it was drawn from.

Insurance

Understand whether apparently unrelated claims connect back to the same people, which is difficult to see when each claim is assessed on its own.

Trust and safety teams

Distinguish coordinated activity from genuine public reaction, so enforcement is aimed at organised behaviour rather than at people who happen to agree with each other.

Corporate due diligence

Build the public picture of a counterparty before a deal, and hand a reviewer the reasoning rather than a conclusion they have to take on trust.

FAQ

What people ask about TrustShield OSINT

Answered the way an analyst, a security lead or a privacy officer asks them.

TrustShield OSINT is FaceOff's suite for turning information that is already public or already lawfully held into something an investigator can work with. It monitors public channels for accounts impersonating your people and brand and for activity that appears coordinated, and it establishes whether records held across your authorised sources describe the same person. Findings are handed to an analyst with the reasoning attached.

See TrustShield OSINT build a picture from your own sources

Bring a subject you are researching or an impersonation problem you are dealing with. We will walk through what comes back and how an analyst would work with it.