I Interviewed a Deepfake: Lessons From Hiring’s New…
Nisos Chief People Officer Magen Gicinto details her experience identifying a deepfake candidate during a remote hiring process for an AI engineer role
- Incident date
- Sep 2026
- Target
- Nisos
The rise of remote hiring has expanded access to global talent, but it has simultaneously created a significant security vulnerability as fraudsters increasingly utilize AI-generated identities. By synthesizing professional social media profiles, CVs, and video presence, bad actors are successfully bypassing traditional recruitment checks to gain access to corporate networks, devices, and sensitive data.
What happened
Magen Gicinto, Chief People Officer at Nisos, encountered a deepfake while conducting interviews for an AI architect-engineer role. During the process, she observed a critical discrepancy between the candidate appearing on the video call and the person portrayed in his LinkedIn profile and other digital searches. Despite passing initial screening, the candidate exhibited subtle red flags, including appearing consistently off-screen, long pauses before answering questions, and a digital footprint that failed to withstand scrutiny.
Nisos determined the candidate was likely a North Korean operative. The firm chose to continue the interview process to gather intelligence on the deception, ultimately concluding that the threat represents a broader business risk rather than just an HR challenge. The incident highlighted that video interviews should not serve as a sole method of identity verification. Instead, businesses must correlate signals across recruitment, IT, and finance—such as suspicious changes to shipping addresses or payment details—to trigger necessary security reviews. The company recommends that organizations implement robust, cross-departmental identity verification frameworks to ensure that remote hiring speed does not come at the cost of operational security.