Why deepfake has become a recruitment threat
The advancement of deepfake technology has made identity fraud during online job interviews a real threat. In 2025, the FBI warned about a growing number of cases where fraudsters use deepfake audio and video during interviews, impersonating other individuals to gain employment — particularly in positions with access to sensitive company data. Motivations range from corporate espionage to gaining IT system access for malware installation.
Warning signs — how to detect deepfake during an interview
During a video interview, watch for: lip movements not synchronized with speech, unnatural blinking or absence of blinking, strange artifacts at the edges of the face, inconsistent facial lighting with the environment, delays in facial expression reactions. Ask the candidate for a quick head turn left and right — deepfake algorithms struggle with facial profiles. Ask them to raise a hand to their face — overlaying elements on a generated face reveals artifacts.
Identity verification procedures for candidates
Implementing identity verification does not have to hinder recruitment. At the application stage: verify LinkedIn profile and employment history, check references. At the online interview stage: require showing an ID document, ask non-standard questions requiring spontaneous reactions. At the final stage: consider one in-person meeting for positions with access to sensitive data. Integrate identity verification into the ATS as a mandatory step. Train recruiters on recognizing deepfake indicators.
Cybersecurity for Your Industry
Learn more about cybersecurity in your industry:
Best practices for implementation
Effective implementation requires several key steps:
- Risk assessment and inventory — identify assets, threats, and vulnerabilities specific to your organization.
- Policy development — document requirements, roles, and responsibilities.
- Technical controls — deploy tools and configurations proportionate to identified risks.
- Training and awareness — engage employees in protecting organizational security.
- Monitoring and continuous improvement — regularly verify effectiveness and adapt to the evolving threat landscape.
