Keynotes and panels
Agendas publish the time, room and sometimes a photo and bio. Campaigners use the same agenda to plan.
Event security OSINT is the advance work a protection team does online before an executive walks into a conference hall, an AGM or the fifth city of an investor roadshow. We find out what the agenda, the organizer and social media have already given away, who is paying hostile attention to the principal, and what is planned around the venue and routes.
Event security OSINT is protective intelligence for a named executive at a specific appearance. Before the date, OSINT-S checks what is public about the visit, hostile attention to the principal and company, and protests or incidents near the venue, hotel and routes. Your protection lead receives a short brief with sources, plus a light watch during the trip if needed.
Event security intelligence follows a person to someone else's event. Live event monitoring covers an event you run, for its whole audience and venue.
| Event security intelligence (this page) | Live event monitoring | |
|---|---|---|
| Focus | One or a few principals and their movements | The event itself: attendees, venue, crowd, story |
| Whose event | Usually someone else's: a bank's conference, an investor meeting, a trade body dinner | Usually yours: your AGM, launch or site |
| Main output | An advance brief per appearance for the protection lead | A monitored window with alerts to the on-site security lead |
| Timing | Mostly before arrival, with a light watch during the trip | Before, during and after the event |
Many programs use both: the AGM itself sits under live event monitoring, while the chair's journey, hotel and arrival are covered here. Both sit under our parent service, OSINT for executive protection.
Any appearance where the date, place and principal are public in advance, especially if the company is in the news or the event attracts campaigners.
Agendas publish the time, room and sometimes a photo and bio. Campaigners use the same agenda to plan.
Several cities in a few days, hotels near financial districts and meetings booked through banks whose staff post about them.
The principal arrives as chair or CEO; arrivals, entrances and the walk from the car are the exposed moments.
Visits to plants, stores or offices during restructuring, when local anger and media attention are highest.
Charity and award events publish guest lists and photos, often in real time on attendees' accounts.
Unfamiliar venues and routes. Destination-level risk is covered by our travel risk service.
Travel risk intelligence →Five questions for the detail leader: what is public, who is hostile, what is planned nearby, what else is happening at the event, and what has changed since the last visit.
The brief is one page with an annex of sources and captures. Small briefs can sometimes be delivered in a business day; a full roadshow program is usually scoped from 10 business days ahead, and urgent work costs 50% more.
Share the itinerary under NDA, cut what is published, brief each stop, keep a light watch while traveling, then close with a short note.
Sometimes the best protective step is to change the format: a virtual meeting, a later agenda release or a different arrival point.
Intelligence is most useful when it changes a plan. Typical decisions that follow a brief:
We watch for risks to the principal, not for who attends or protests lawfully, and we do not track other guests.
We report the time, place, size and tactics of a planned protest; we do not build lists of participants or profile them for their views. Other attendees and speakers appear in a brief only where their own public statements create a risk to the principal. We do not join closed groups under false identities, access private messages or track anyone's location. Where individuals are named, the scope is documented and proportionate (EDPB Guidelines 1/2024). If a brief finds a published home address or a doxxing campaign, it moves into doxxing threat monitoring.
Event work is one of several OSINT services for executive protection teams; for whole programs, see OSINT for corporate security.
Share the principal, dates, cities and venues, and who leads protection on the trip. We reply with a written scope and a fixed quote, under NDA.
Event security OSINT would cover what the agenda and organizer have published about her slot, recent hostile posts about her or the merger, campaigns planning to attend, and protests or incidents near the venue, hotel and routes. You receive a one-page brief with sources for the detail leader, a list of items to ask the organizer to remove, and a light watch during the trip if you want it.
The AGM monitoring covers the meeting, venue and audience. It does not cover his hotel, his journey or attention to him personally in the days before. Many teams add a short brief for the chair alongside the AGM program, so the protection lead sees his arrival, route and exposure as well as the room.
We take the itinerary under NDA, run one baseline check on the CFO, then send a one-page brief per city before each stop, highlighting only what changed. During the trip, our platform updates hourly and an analyst escalates mentions of her location or a protest near a venue. We also suggest asking the banks to keep hotel names and exact times out of emails and posts.
No. We report the time, place, expected size and tactics of a planned action, not files on people protesting lawfully. Individuals appear in a brief only where their own public posts show a specific threat to the principal, or a history of fixation on them. That keeps the work proportionate under data protection law and focused on risk rather than opinion.
Use both. Government sources give the destination picture: US organizations operating overseas can join OSAC, the State Department's partnership with private-sector security teams, for threat alerts and analysis. They will not tell you whether anyone online is talking about your chair, what the summit agenda has revealed about her movements, or whether a campaign plans to target her session. That is what our brief adds.
Sources checked 10 October 2026. Figures about third-party firms and tools are as published by them or by the cited source on that date.