Build the reporting on open source intelligence that senior management can act on.
Open Source Intelligence in Security Work
A structured, applied course in open source intelligence — designed to be used the week you return.
Course Overview
Security arrangements around open source intelligence are tested by adversaries, not by auditors. The value of preparation for the practice within corporate security practice is only visible on the day it is needed. Participants who influence this part of corporate security practice without directly controlling it will find the content directly usable. The course covers open source intelligence at the level of detail needed to act, and stops there. Sessions alternate between guided analysis of the corporate security practice capability and supervised application. The course leaves participants able to diagnose weaknesses in this area of corporate security practice before they become incidents. Buying a tool rarely fixes open source intelligence; the underlying capability has to be built internally first. The professional literature on the wider corporate security practice agenda converges on a small set of controls that reliably work. It ends with a prioritised list of changes to the corporate security practice capability that the participant is prepared to defend internally.
Expected Learning Outcomes
Review open source intelligence after each incident, exercise and change of threat.
Exercise and test arrangements for open source intelligence under realistic conditions.
Plan the response and escalation for incidents involving open source intelligence.
Handle the trade-offs in open source intelligence between speed, cost and assurance explicitly rather than implicitly.
Design a practical operating method for open source intelligence that fits the organisation's size and maturity.
Design a training and briefing approach that sustains competence in open source intelligence.
Who Should Attend
Project and programme managers whose delivery depends on open source intelligence.
Internal auditors reviewing how open source intelligence is designed and operated.
Human resources staff handling vetting and insider risk in open source intelligence.
Executives responsible for approving investment in open source intelligence.
Operations managers whose activity is protected by open source intelligence.
Information security staff whose remit overlaps open source intelligence.
Course Modules
Open source intelligence: procedures, access control and identity
2 sessions · 8 pointsSession 1Building lasting competence in open source intelligence
- Confirm that contractual obligations around open source intelligence are understood.
- Decide what will be stopped to create capacity for open source intelligence.
- Establish what evidence demonstrates open source intelligence is under control.
- Confirm recorded material from open source intelligence is retained long enough to be useful.
Session 2Access control on open source intelligence that people do not bypass
- Supervise and spot-check performance on open source intelligence rather than relying on reports.
- Set escalation criteria and out-of-hours contacts for open source intelligence.
- Prepare the response for the most likely failure in open source intelligence.
- Check that records of open source intelligence answer the questions likely to be asked.
Open source intelligence: surveillance, monitoring and control rooms
2 sessions · 8 pointsSession 1Coordinating with external authorities on open source intelligence
- Build the internal briefing that explains open source intelligence to those affected.
- Protect sensitive information relating to open source intelligence from casual disclosure.
- Agree the indicators that will show whether open source intelligence is improving.
- Record the rationale for each significant choice made about open source intelligence.
Session 2Finding the vulnerability in open source intelligence an adversary would use
- Plan the sequence in which improvements to open source intelligence will be introduced.
- Confirm that those complying with open source intelligence understand why it exists.
- Confirm access control on open source intelligence cannot be routinely bypassed.
- Check that controls on open source intelligence cover deterrence, detection, delay and response.
Open source intelligence: threat assessment and intelligence
2 sessions · 8 pointsSession 1Closing out open source intelligence and capturing what was learned
- Identify single points of dependency in open source intelligence and reduce them.
- Establish evidence handling and chain of custody for open source intelligence.
- Establish the boundary of open source intelligence and record what sits outside it.
- Agree what will be standardised in open source intelligence and what will not.
Session 2Insider risk inside open source intelligence
- Confirm vetting standards applied to staff and contractors in open source intelligence.
- Remove steps in open source intelligence that add effort without adding assurance.
- Compare the cost of open source intelligence with the cost of its absence.
- Establish who is informed, consulted and accountable in open source intelligence.
Open source intelligence: incident response and escalation
2 sessions · 8 pointsSession 1Surveillance on open source intelligence that supports an investigation later
- Build the threat picture for open source intelligence from sources relevant to this site and sector.
- Check guard force instructions for open source intelligence are current and understood.
- Coordinate arrangements for open source intelligence with civil defence and police in advance.
- Review open source intelligence after every incident, exercise or change in threat.
Session 2The hard cases in open source intelligence and how to reason about them
- Report on open source intelligence in terms that support an investment decision.
- Assess insider risk in roles with privileged access to open source intelligence.
- Define the first response actions for an incident involving open source intelligence.
- Assess contractor and third-party exposure within open source intelligence.
Choose the package that suits you
Silver Package
At least 3 people
- Workshop or Program Participation
- Airport Transfers
- Customized Badge
- Expert Mentorship (Private Sessions)
- Supervision & Secretarial Services
- Accredited Certificate of Participation
- Complete Training Kit
- Coffee Break
- Closing Ceremony
Gold Package
At least 3 people
- 5-night stay in a 5-star hotel
- Workshop or Program Participation
- Airport Transfers
- Customized Badge
- Expert Mentorship (Private Sessions)
- Supervision & Secretarial Services
- Accredited Certificate of Participation
- Complete Training Kit
- Coffee Break
- Closing Ceremony
Complete your registration
We will contact you within one business day to confirm.