powering productive workplaces
Front page
NewsTrust & Risk21m · 12:51 BST · 5 min read

I Interviewed a Deepfake: Lessons From Hiring’s New Threat

Remote hiring has widened access to specialist talent, but it has also created new opportunities for fraudsters using AI-generated identities, forcing businesses to rethink how they verify candidates before granting them access to devices, credentials, and collaboration platforms

Remote hiring has expanded access to specialist talent, particularly in technology, fueling companies’ capabilities like never before. But it has also removed many of the physical checks that once supported secure recruitment decisions. A CV, a polished LinkedIn profile and a video interview can now be assembled or altered with dee AI, with Gartner predicting that, by 2028, one in four job candidates globally could be fake.

This matters because hiring is increasingly tied to security. A new technical employee can quickly receive a company device, identity credentials and access to collaboration tools, code repositories and sensitive data. Hire the wrong person, and it becomes a serious breach waiting to happen.

Thus, catching that person before they are given access is vital. But with AI becoming increasingly uncanny, how can this be done? Magen Gicinto, Chief People Officer at Nisos, encountered a deepfake while interviewing for an AI architect-engineer role. Her experience, and subsequent research, can not only show how to spot them, but also just how prolific they have become.

Diagnosing Deepfakes

The obvious concern with deepfakes is a convincing fake video interview. But that is only one part of the problem. Deepfakes work best when they are combined with other AI-generated material: a CV tailored precisely to the job description, a credible-looking employment history, a professional social media profile and answers produced in real time. The aim is not necessarily to fool one person with one flawless performance. It is to create enough consistency across the hiring process that nobody stops to question the identity underneath it.

That makes the issue difficult to solve through intuition alone. Luckily, in Gicinto’s case, the warning came from a discrepancy between the candidate’s public image and the person who appeared on the call. Speaking of her experience, Gicinto said:

“What was on the screen, what I was interviewing, was very different from the picture from his LinkedIn profile and any other Google search by his name."

Yet the candidate had passed initial screening, demonstrating how easily a false identity can be built to satisfy the normal recruitment checks that precede a first interview.

However, if a bad actor has done more preparation beforehand and inconsistencies cannot be seen in their digital footprint, detection moves to the interview itself. These signs can be subtle, but Gicinto points to a few things, such as candidates looking consistently off-screen, unusually long pauses before answers, reluctance to appear on camera, or different people appearing at different interview stages. Other early flags include an online profile created recently despite a supposedly long career, contradictory photographs across LinkedIn and portfolio sites, or a résumé that appears engineered to reproduce the language of a vacancy.

No individual indicator proves fraud. The risk lies in overlooking a collection of inconsistencies because each can be explained away in isolation.

What Can Businesses Do About It?

Having identified the candidate as a likely North Korean operative, Nisos played along with the interview process to extract information on how the attempted deception would develop. This helped the company build an understanding of how to develop defenses against it.

One conclusion was to stop asking a single stage of the hiring process to establish trust on its own. A video interview should support identity verification, not substitute for it. Businesses need to corroborate what a candidate claims through independent sources, including direct employment and education checks, consistent identity documentation and a digital presence that can withstand scrutiny.

That requires a more joined-up process. Gicinto argues that awareness must extend beyond talent acquisition:

“It is not just a talent acquisition or an HR problem. It is a business risk.”

Recruitment may see the questionable CV, IT may see an unexpected change to a laptop shipping address, and finance may spot repeated amendments to bank details. Without a clear escalation process, those signals remain fragmented. With one, they can trigger a proportionate review before equipment, credentials or sensitive access are issued.

Controls should also continue through onboarding. Gicinto’s own experience included a candidate making repeated changes to delivery and payment information. The FBI advises employers to send equipment only to the address verified in an employee’s identity documents, demand additional evidence for address changes and withhold system access until background checks are complete. These are practical checks, but their value is strategic: they make it harder to use a legitimate-looking applicant persona to create distance between an employer, its laptop and the person who ultimately controls it.

Technology teams have a role after the device arrives, too. Corporate laptops should not automatically become unmonitored bridges into the business. Device management, location and access controls can help detect unusual remote connections, while least-privilege access limits the damage if an identity has been compromised. The principle is straightforward: identity confidence should determine how quickly a new starter is trusted with valuable systems, not merely whether they have accepted an offer.

Why This Matters Going Forward

The core shift is that remote hiring is becoming an identity security challenge. For years, organizations have trained employees to question unexpected emails, suspicious links and unusual payment requests. They now need equivalent discipline at the point where a stranger can become an insider. The more persuasive synthetic media becomes, the less sensible it is to treat a polished video call as proof that a candidate is genuine.

This does not mean reverting to in-office hiring or treating every candidate with suspicion. It means recognizing that a fast, digital recruitment process needs an equally modern framework for verifying identity. Companies that get this right can preserve the speed and reach of remote hiring while making it much harder for a bad actor to turn the recruitment function into an access channel.

The test for business leaders is whether their hiring, security, IT and finance teams can spot and connect the warning signs before an applicant becomes an employee. Deepfakes are changing what fraud looks like; the next step is ensuring they do not change who gets trusted with the business.

rate this story
helps rank stories across uc today
The discussion0 takes · attributed & checked

Does this reflect your experience?

opening the room…
Read nextordered by techtelligence · every pick explained
picked for this story

The Hackett Group Study Finds AI Recruiting Platforms Deliver Faster Hiring, Yet Use Remains Fragmented

29 Jul 2026
picked for this storyZoom, Tools for Humanity Partner to Tackle AI Impersonation and Deep Fakes20 Apr 2026picked for this story3 Concerning Examples of UC Deepfake Threats & Malicious Synthetic Media22 Feb 2026