Training & Instruction
OSINT Training
Hands-on open-source intelligence training for investigators, agencies, legal teams and corporate security — taught by a SLED-licensed investigator and FAA Part 107 pilot.
AWDA delivers practical OSINT training built on real investigative casework — not just tool demos. Sessions run in person at our Anderson or Pickens offices, live online, or on-site as a custom program for your agency or company. A certificate of completion is provided, and training may qualify for SLED continuing-education credit — ask when you enroll.
Call (864) 437-8850 for current dates, pricing, and custom agency programs.
What we teach
Course Overview
This course trains students to plan, collect, verify, and report open-source intelligence (OSINT) using lawful, repeatable methods drawn from real investigative casework. Students progress from the intelligence cycle and legal framework through search, social media, people/records, technical, and geolocation disciplines, then integrate frameworks, operational security, and court-ready reporting in a hands-on capstone.
By the end of this course, students can:
- Apply the intelligence cycle to structure an open-source investigation end to end.
- Operate within South Carolina and federal legal and ethical limits for OSINT collection.
- Use advanced search, SOCMINT, people/records, technical, and GEOINT techniques to find and verify information.
- Correlate usernames, emails, and phone numbers to identify and confirm a subject.
- Maintain operational security and managed attribution to protect the investigator and the case.
- Produce a clean, court-admissible report with proper capture and chain of custody.
Curriculum — Core Modules
#2001 - OSINT Foundations, Law & Ethics
The intelligence cycle, source reliability, and the legal and ethical limits of open-source collection under South Carolina and federal law. Documentation standards from day one.
- Full-Day
- Core
#2002 - Advanced Search & Google Dorking
Search operators, vertical and specialized engines, cached and archived content, and building repeatable search strings that surface what basic queries miss.
- Half-Day
- Search
#2003 - Social Media Intelligence (SOCMINT)
Platform-specific search and profile analysis across Facebook, X, Instagram, LinkedIn, TikTok and Reddit; monitoring, timelines, and network mapping.
- Full-Day
- SOCMINT
#2004 - People Search, Skip Tracing & Public Records
People-finder services, court, property, business and licensing records, and cross-verifying identities to confirm a subject and rule out false matches.
- Full-Day
- Investigations
#2005 - Identifiers — Username, Email & Phone
Enumerating accounts from a username, email or phone number; breach-data awareness; and correlating identifiers to a single person.
- Half-Day
- Correlation
#2006 - Domains, IP & Website Infrastructure
WHOIS, DNS, certificate transparency, passive reconnaissance, and reconstructing a site's history and ownership.
- Half-Day
- Technical
#2007 - Images, Faces & Geolocation (GEOINT)
Reverse-image search, EXIF metadata, facial-search tools, and chronolocation / geolocation from visual clues, satellite and street-level imagery.
- Full-Day
- GEOINT
#2008 - OSINT Frameworks & Automation
Hands-on with Maltego, SpiderFoot and Recon-ng; building link charts and automating collection while keeping results defensible.
- Full-Day
- Tooling
#2009 - OPSEC & Managed Attribution
Protecting the investigator: research accounts (sock puppets), network isolation, VPNs, and avoiding tipping off or attribution burn.
- Half-Day
- OPSEC
#2010 - Report Writing & Court-Admissible Evidence
Turning collection into a clean, defensible report — capture, preservation, chain of custody, and the basics of testifying to your findings.
- Full-Day
- Reporting
#2011 - Capstone — Live OSINT Exercise
A timed, scenario-based practical (CTF-style) where students collect, verify, and report against a realistic target set under instructor review.
- Full-Day
- Practical
Who Should Attend
Investigators & Legal
Private investigators, paralegals and attorneys building admissible open-source evidence for domestic, fraud, and civil matters.
Law Enforcement & Agencies
Officers, analysts and public-safety teams standing up or sharpening an OSINT capability, including SAR and threat assessment.
Corporate & Cyber
Security, HR, threat-intelligence and due-diligence teams vetting people, vendors and online risk.
Formats & What You Get
Delivery Options
In-person (Anderson / Pickens), live online, or on-site at your facility. Half-day, full-day, or a multi-day program combining the modules above.
Certificate & CE
Certificate of completion for every attendee. May count toward SLED continuing education — confirm at enrollment.
Toolkit & Support
Students leave with a working methodology, a repeatable checklist, and the curated OSINT Resources reference used in class.
Ethics & scope
All AWDA OSINT training emphasizes lawful, ethical collection under SLED licensing (#3112) and applicable law. Techniques are taught for legitimate investigative, security, and research use only.
