Employee photos are among the most frequently stolen images on the internet. Corporate headshots from company websites, LinkedIn profile pictures, and conference photos are routinely scraped by scammers who use them to create fake executive profiles, fraudulent business accounts, and spear-phishing campaigns. When an employee's photo is misused, the damage extends beyond the individual — it exposes the company to reputational harm, financial fraud, and potential legal liability. A reverse face search program is an essential component of corporate identity protection. This guide shows you how to systematically check whether your employees' photos are being misused and how to respond when they are. For more on personal brand protection, see our guide to protecting your personal brand from impersonation.
Why Employee Photo Misuse Is a Corporate Problem
When a scammer uses an employee's photo to create a fake LinkedIn profile, they are not just impersonating the employee — they are impersonating a representative of your company. These fake profiles are used to connect with your real clients, solicit sensitive information, and redirect payments to fraudulent accounts. In one common scam, fraudsters create fake profiles of company executives and use them to request wire transfers from the finance department. In another, they use photos of sales representatives to build fake profiles that contact your actual leads and divert them to competing services. The financial and reputational damage from these attacks can be severe. A face search engine like facesearching allows your security team to proactively detect these impersonations before they cause harm. For a broader understanding of the business implications, see our business case for face search verification.
Step 1: Create a Photo Inventory
The first step in protecting your employees is knowing exactly which photos of them are publicly available. Create a comprehensive inventory of employee photos that appear on your company website, in press releases, on social media, and on professional platforms like LinkedIn. For each photo, document the URL where it is published, the employee's name and role, and the date the photo was first published. This inventory serves two purposes: it gives you a baseline for monitoring, and it helps you identify which employees are most at risk. Executives and public-facing employees are the most common targets for impersonation and should be prioritized. Employees in finance, HR, and IT are also high-risk because their roles can be exploited for internal fraud. If your company has a large workforce, start with the highest-risk employees and expand the program over time. The inventory should be updated quarterly as new photos are published.
Step 2: Run Batch Face Searches
With your photo inventory in hand, begin running face searches on each employee's photo. facesearching allows you to search one photo at a time, with results returned in under a minute per search. For a small team, you can run searches manually. For larger organizations, consider creating a scheduled process where a designated team member runs searches on a rotating basis — for example, searching five employees per week until the entire inventory has been covered, then starting over. When reviewing results, look for matches that appear on platforms where the employee does not have a legitimate presence. A match on LinkedIn is expected; a match on a dating site, a marketplace platform, or a website in a language the employee does not speak is a red flag. Pay special attention to matches that show the employee's photo associated with a different name, a different company, or in a suspicious context. Document every concerning match with screenshots and URLs.
An employee's photo appearing on a platform they have never used is not a coincidence — it is evidence of theft. Treat every unauthorized match as a potential security incident.
Step 3: Detect Impersonation and Unauthorized Use
Not all photo misuse is impersonation. Your analysis should categorize findings into three levels of severity. Level 1 — Unauthorized but benign use: the photo appears on a blog, news article, or social media post where it was shared without permission but without malicious intent. Level 2 — Impersonation: the photo is being used to create a fake profile on a social media, dating, or professional platform, with the intent to deceive others about the person's identity. Level 3 — Fraudulent use: the photo is being used in connection with financial fraud, phishing campaigns, or other criminal activity. Level 1 incidents may only require a polite takedown request. Level 2 and 3 incidents require immediate action: documenting the evidence, reporting to the platform, notifying the affected employee, and if the impersonation involves your company's name or clients, notifying your legal team and affected clients. For more on detecting fake profiles, see our reverse face search guide.
Step 4: Execute Takedown Requests
Once you have documented unauthorized use of an employee's photo, the next step is to get the content removed. Most major platforms have reporting mechanisms for impersonation and intellectual property violations. For social media platforms, use the impersonation reporting tools — Facebook, Instagram, LinkedIn, and Twitter/X all have dedicated channels for reporting fake profiles. For websites, send a DMCA takedown notice to the hosting provider if you hold the copyright to the photo (common for company headshots taken by your photographer). For platforms that do not respond to standard reports, escalate through their legal or trust and safety departments. For persistent impersonation involving financial fraud, file a report with the IC3 at ic3.gov. Throughout this process, keep the affected employee informed. They may be able to provide additional context or evidence, and they deserve to know that their identity is being protected. For more on reporting procedures, see our guide on identifying and reporting identity theft.
Step 5: Create an Employee Photo Protection Policy
A formal policy institutionalizes your photo protection efforts and ensures they continue even as team members change. Your policy should address several key areas. Scope: which employees are covered by the monitoring program and how often their photos are checked. Consent: how employee consent is obtained for photo monitoring. Process: the step-by-step procedure for running searches, documenting results, and escalating concerns. Response: the defined actions for different levels of photo misuse, including who is responsible for each action. Communication: how and when affected employees are notified, and what support the company provides. Privacy: how employee data is handled, including the use of a face search engine that deletes photos immediately after each search. The policy should be reviewed by legal counsel to ensure compliance with employment laws and privacy regulations. Once finalized, distribute it to all employees and include it in the employee handbook. A well-designed policy not only protects employees but also demonstrates the company's commitment to their security and well-being.
Building a Culture of Digital Security
Technology and policies are necessary but not sufficient. The most effective photo protection programs are embedded in a broader culture of digital security awareness. Train employees to recognize the signs of photo misuse and to report suspicious activity. Encourage them to run periodic face searches on their own photos as part of their personal security routine. When employees understand that their photos are valuable assets that can be weaponized against them and the company, they become active participants in the protection effort rather than passive subjects of it. Regular security awareness sessions, clear reporting channels, and visible leadership support all contribute to a culture where photo protection is everyone's responsibility. facesearching makes individual monitoring accessible — employees can run a search on their own photo in under a minute, with no subscription required. Empowering employees with the tools to protect themselves is both good security and good leadership.