[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"cms-topics":3,"$fXlBo44ULlUeCT-cdL8j4n54XQ-NDHfbqqOWL_lTcYds":37},[4,14,22,29],{"slug":5,"name":6,"intro":7,"introText":8,"seoTitle":9,"seoDescription":10,"essayCount":11,"indexable":12,"path":13},"trust-as-infrastructure","Trust as Infrastructure",null,"Signals, systems, networks, time, and resilience - and how they build on each other. The conventional wisdom on trust is wrong. This is the correction. Each article breaks down one assumption about authenticity, credibility, or signals... and rebuilds it from the ground up. Strategy for leaders who need credibility to actually hold.","Trust as Infrastructure — Andrew Marconi","The conventional wisdom on trust is wrong. This is the correction. Strategy for leaders who need credibility to actually hold.",12,true,"\u002Fwriting\u002Ftrust-as-infrastructure",{"slug":15,"name":16,"intro":7,"introText":17,"seoTitle":18,"seoDescription":19,"essayCount":20,"indexable":12,"path":21},"human-in-the-loop","Human in the Loop","AI won't replace your expertise. It will expose whether you had any. Personal essays from the professional middle: the judgment calls, identity questions, and uncomfortable moments that don't show up in the frameworks. For practitioners navigating the AI transition without a script.","Human in the Loop — Andrew Marconi","AI won't replace your expertise. It will expose whether you had any. For practitioners navigating the AI transition without a script.",5,"\u002Fwriting\u002Fhuman-in-the-loop",{"slug":23,"name":24,"intro":7,"introText":25,"seoTitle":26,"seoDescription":27,"essayCount":20,"indexable":12,"path":28},"front-of-house","Front of House","The gap between what you intend to signal and what your audience actually receives is where trust dies. Practical reads on the visible layer... what your clients, readers, and critics actually see when they look. Because the strategy is only as good as what shows up on the other side.","Front of House — Andrew Marconi","The gap between what you intend to signal and what your audience actually receives is where trust dies. Practical reads on the visible layer.","\u002Fwriting\u002Ffront-of-house",{"slug":30,"name":31,"intro":7,"introText":32,"seoTitle":33,"seoDescription":34,"essayCount":35,"indexable":12,"path":36},"explorations","Explorations","Not everything fits in a series. These are the pieces that didn't... things I wrote because they were interesting. Not everything needs a framework. Field observations and investigations into specific industries, technologies, and territories.","Explorations — Andrew Marconi","Not everything fits in a series. Field observations and investigations into specific industries, technologies, and territories.",3,"\u002Fwriting\u002Fexplorations",{"essay":38,"related":245},{"slug":39,"title":40,"subtitle":41,"excerpt":42,"publishAt":43,"topic":44,"heroId":45,"path":46,"body":47,"bodyText":242,"seoTitle":243,"seoDescription":42,"canonicalUrl":7,"dateUpdated":244},"your-brand-has-no-defense-against","Your Brand Has No Defense Against Deepfakes. That's a Strategy Problem, Not a PR Problem.","Why denial isn't a defense, and what actually is","The companies that held up against deepfake attacks had something attackers couldn't replicate. It wasn't faster PR. It was architecture.","2026-05-07T12:03:37.041Z",{"slug":5,"name":6},"491db0e3-5864-4ea4-8ade-8e47aca1347f","\u002Fwriting\u002Ftrust-as-infrastructure\u002Fyour-brand-has-no-defense-against",{"type":48,"children":49},"root",[50,58,63,68,73,80,85,90,110,116,121,126,131,137,142,147,163,168,173,179,184,196,201,206,211,217,222,227,232,237],{"type":51,"tag":52,"props":53,"children":54},"element","p",{},[55],{"type":56,"value":57},"text","The call looked legitimate. The face on screen was the CFO. The voice matched. The employee did what was asked and transferred the money: $25 million, wired to accounts she’d never seen before. When the real CFO showed up in the Hong Kong office the next morning, the wire had been gone for twelve hours.",{"type":51,"tag":52,"props":59,"children":60},{},[61],{"type":56,"value":62},"A few months later, someone tried the same move at Ferrari. They cloned the CEO Benedetto Vigna’s voice and called an executive, asking him to authorize an unusual financial transaction. The executive was suspicious. He asked a question about a book Vigna had recommended to him in a private meeting a few days earlier.",{"type":51,"tag":52,"props":64,"children":65},{},[66],{"type":56,"value":67},"The caller couldn’t answer. The deepfake failed.",{"type":51,"tag":52,"props":69,"children":70},{},[71],{"type":56,"value":72},"The difference between $25 million lost and $25 million saved wasn’t better deepfake detection. It wasn’t a faster crisis response. It was a book recommendation from a private conversation that existed nowhere in any public dataset.",{"type":51,"tag":74,"props":75,"children":77},"h2",{"id":76},"wrong-frame",[78],{"type":56,"value":79},"Wrong frame",{"type":51,"tag":52,"props":81,"children":82},{},[83],{"type":56,"value":84},"When a deepfake surfaces, every company’s first call is to legal, then comms. Issue a denial. Get ahead of the story. Control the news cycle.",{"type":51,"tag":52,"props":86,"children":87},{},[88],{"type":56,"value":89},"I understand the impulse. It’s how we’ve always responded to reputational attacks. But a denial only works as well as the trust architecture underneath it. If the only thing standing between your brand and a convincing synthetic impersonation is your ability to say “that wasn’t us,” you don’t have a defense. You have a press release.",{"type":51,"tag":52,"props":91,"children":92},{},[93,95,101,103,108],{"type":56,"value":94},"The deeper problem isn’t the deepfake. It’s that most organizations have never built the kind of authentic, verifiable behavioral record that would make a synthetic impersonation feel ",{"type":51,"tag":96,"props":97,"children":98},"em",{},[99],{"type":56,"value":100},"wrong",{"type":56,"value":102}," rather than just ",{"type":51,"tag":96,"props":104,"children":105},{},[106],{"type":56,"value":107},"deniable",{"type":56,"value":109},".",{"type":51,"tag":74,"props":111,"children":113},{"id":112},"the-math-is-bad-and-its-not-getting-better",[114],{"type":56,"value":115},"The math is bad and it’s not getting better",{"type":51,"tag":52,"props":117,"children":118},{},[119],{"type":56,"value":120},"The economics of synthetic impersonation are grotesquely asymmetric. The robocall deepfake that flooded New Hampshire before the 2024 primary cost roughly $500 to produce. The FCC fine alone was $6 million. The Arup loss came from a single video call. The attacker’s investment (some time and a GPU) was trivial.",{"type":51,"tag":52,"props":122,"children":123},{},[124],{"type":56,"value":125},"You cannot win the detection arms race. Every improvement in detection automatically provides a training signal for better fakes. The better detectors get, the better the fakes become. That equilibrium never favors the defender.",{"type":51,"tag":52,"props":127,"children":128},{},[129],{"type":56,"value":130},"But the Ferrari executive didn’t need a detector. He had something better: he knew what the real Vigna actually knew.",{"type":51,"tag":74,"props":132,"children":134},{"id":133},"how-banks-figured-this-out-first",[135],{"type":56,"value":136},"How banks figured this out first",{"type":51,"tag":52,"props":138,"children":139},{},[140],{"type":56,"value":141},"Financial services got here ahead of everyone else, because the stakes forced it.",{"type":51,"tag":52,"props":143,"children":144},{},[145],{"type":56,"value":146},"For years, fraud worked the same way these deepfakes do: steal a credential, impersonate the account holder, extract the money. The industry’s first instinct was checkpoint defense: stronger passwords, better verification at the point of entry. It didn’t work, because sophisticated attackers just got better at the checkpoint.",{"type":51,"tag":52,"props":148,"children":149},{},[150,152,161],{"type":56,"value":151},"What actually worked was a different frame entirely. Instead of trying to catch fakes at the gate, banks started building systems that track behavior continuously throughout every session. Not what you know, but how you act. Your typing cadence, your navigation patterns, the specific rhythm of how you move through an interface. ",{"type":51,"tag":153,"props":154,"children":158},"a",{"href":155,"rel":156},"https:\u002F\u002Fwww.biocatch.com\u002F",[157],"nofollow",[159],{"type":56,"value":160},"BioCatch",{"type":56,"value":162}," runs this kind of behavioral analysis for 34 of the top 100 global banks, covering more than 500 million customers. Their core insight: credentials can be stolen, but behavior can’t be replicated at scale. “Mules can change accounts, but they can’t change how they act.”",{"type":51,"tag":52,"props":164,"children":165},{},[166],{"type":56,"value":167},"The authentication question shifted from “is this the right person?” to “does this behavior match everything we know about this person?”",{"type":51,"tag":52,"props":169,"children":170},{},[171],{"type":56,"value":172},"That’s not a product feature. It’s an architectural choice about where trust lives.",{"type":51,"tag":74,"props":174,"children":176},{"id":175},"what-actually-stopped-the-attacks",[177],{"type":56,"value":178},"What actually stopped the attacks",{"type":51,"tag":52,"props":180,"children":181},{},[182],{"type":56,"value":183},"Every executive deepfake that was caught in the last few years was caught the same way: not by technology, but by behavioral knowledge the attacker couldn’t extract from public data.",{"type":51,"tag":52,"props":185,"children":186},{},[187,189,194],{"type":56,"value":188},"WPP CEO Mark Read was deepfaked in a WhatsApp video call. Someone cloned his voice and image and tried to get an executive to set up a new business entity and wire money. The attempt was stopped not because anyone ran it through a detector, but because the request violated procedural norms: legitimate requests from the actual CEO don’t arrive via WhatsApp, and they don’t ask you to do things outside your normal authorization. The employee had internalized what ",{"type":51,"tag":96,"props":190,"children":191},{},[192],{"type":56,"value":193},"normal",{"type":56,"value":195}," looked like. This wasn’t it.",{"type":51,"tag":52,"props":197,"children":198},{},[199],{"type":56,"value":200},"LastPass got the same playbook. A deepfake call impersonating the CEO failed because the channel was wrong and the employee had been trained to treat channel anomalies as authentication failures.",{"type":51,"tag":52,"props":202,"children":203},{},[204],{"type":56,"value":205},"Ferrari’s defense came from something even further from public reach: private intellectual history. A book recommendation from a meeting that existed nowhere in the company’s materials, nowhere in the CEO’s public archive, nowhere a dataset could find it.",{"type":51,"tag":52,"props":207,"children":208},{},[209],{"type":56,"value":210},"The pattern is the same across every stopped attack: behavioral and relational knowledge that exists only inside the actual relationship. The attacks that succeeded (Arup’s $25 million, the Binance cases) all involved people who had no prior personal relationship with the deepfaked individual. They had nothing to compare the fake against except the public footage that built it.",{"type":51,"tag":74,"props":212,"children":214},{"id":213},"the-question-this-raises",[215],{"type":56,"value":216},"The question this raises",{"type":51,"tag":52,"props":218,"children":219},{},[220],{"type":56,"value":221},"The strategic implication is harder than it looks.",{"type":51,"tag":52,"props":223,"children":224},{},[225],{"type":56,"value":226},"If a deepfake of your CEO dropped tomorrow, what would your employees use to know it was fake, beyond the denial your communications team would issue? Do your people know what normal authorization looks and feels like, in enough operational detail that an anomaly would register? Do your most important stakeholders have the relational depth with your organization that would make a synthetic impersonation feel behaviorally wrong, not just logically suspicious?",{"type":51,"tag":52,"props":228,"children":229},{},[230],{"type":56,"value":231},"That’s not a crisis comms question. It’s a question about what you’ve actually built.",{"type":51,"tag":52,"props":233,"children":234},{},[235],{"type":56,"value":236},"The organizations that will hold up against synthetic impersonation aren’t the ones with the fastest response protocols. They’re the ones that already have what the Ferrari executive had: a dense, specific, private record of authentic interaction that no public data can replicate.",{"type":51,"tag":52,"props":238,"children":239},{},[240],{"type":56,"value":241},"You can’t build that after the call comes in.","The call looked legitimate. The face on screen was the CFO. The voice matched. The employee did what was asked and transferred the money: $25 million, wired to accounts she’d never seen before. When the real CFO showed up in the Hong Kong office the next morning, the wire had been gone for twelve hours. A few months later, someone tried the same move at Ferrari. They cloned the CEO Benedetto Vigna’s voice and called an executive, asking him to authorize an unusual financial transaction. The executive was suspicious. He asked a question about a book Vigna had recommended to him in a private meeting a few days earlier. The caller couldn’t answer. The deepfake failed. The difference between $25 million lost and $25 million saved wasn’t better deepfake detection. It wasn’t a faster crisis response. It was a book recommendation from a private conversation that existed nowhere in any public dataset. Wrong frame When a deepfake surfaces, every company’s first call is to legal, then comms. Issue a denial. Get ahead of the story. Control the news cycle. I understand the impulse. It’s how we’ve always responded to reputational attacks. But a denial only works as well as the trust architecture underneath it. If the only thing standing between your brand and a convincing synthetic impersonation is your ability to say “that wasn’t us,” you don’t have a defense. You have a press release. The deeper problem isn’t the deepfake. It’s that most organizations have never built the kind of authentic, verifiable behavioral record that would make a synthetic impersonation feel wrong rather than just deniable. The math is bad and it’s not getting better The economics of synthetic impersonation are grotesquely asymmetric. The robocall deepfake that flooded New Hampshire before the 2024 primary cost roughly $500 to produce. The FCC fine alone was $6 million. The Arup loss came from a single video call. The attacker’s investment (some time and a GPU) was trivial. You cannot win the detection arms race. Every improvement in detection automatically provides a training signal for better fakes. The better detectors get, the better the fakes become. That equilibrium never favors the defender. But the Ferrari executive didn’t need a detector. He had something better: he knew what the real Vigna actually knew. How banks figured this out first Financial services got here ahead of everyone else, because the stakes forced it. For years, fraud worked the same way these deepfakes do: steal a credential, impersonate the account holder, extract the money. The industry’s first instinct was checkpoint defense: stronger passwords, better verification at the point of entry. It didn’t work, because sophisticated attackers just got better at the checkpoint. What actually worked was a different frame entirely. Instead of trying to catch fakes at the gate, banks started building systems that track behavior continuously throughout every session. Not what you know, but how you act. Your typing cadence, your navigation patterns, the specific rhythm of how you move through an interface. BioCatch runs this kind of behavioral analysis for 34 of the top 100 global banks, covering more than 500 million customers. Their core insight: credentials can be stolen, but behavior can’t be replicated at scale. “Mules can change accounts, but they can’t change how they act.” The authentication question shifted from “is this the right person?” to “does this behavior match everything we know about this person?” That’s not a product feature. It’s an architectural choice about where trust lives. What actually stopped the attacks Every executive deepfake that was caught in the last few years was caught the same way: not by technology, but by behavioral knowledge the attacker couldn’t extract from public data. WPP CEO Mark Read was deepfaked in a WhatsApp video call. Someone cloned his voice and image and tried to get an executive to set up a new business entity and wire money. The attempt was stopped not because anyone ran it through a detector, but because the request violated procedural norms: legitimate requests from the actual CEO don’t arrive via WhatsApp, and they don’t ask you to do things outside your normal authorization. The employee had internalized what normal looked like. This wasn’t it. LastPass got the same playbook. A deepfake call impersonating the CEO failed because the channel was wrong and the employee had been trained to treat channel anomalies as authentication failures. Ferrari’s defense came from something even further from public reach: private intellectual history. A book recommendation from a meeting that existed nowhere in the company’s materials, nowhere in the CEO’s public archive, nowhere a dataset could find it. The pattern is the same across every stopped attack: behavioral and relational knowledge that exists only inside the actual relationship. The attacks that succeeded (Arup’s $25 million, the Binance cases) all involved people who had no prior personal relationship with the deepfaked individual. They had nothing to compare the fake against except the public footage that built it. The question this raises The strategic implication is harder than it looks. If a deepfake of your CEO dropped tomorrow, what would your employees use to know it was fake, beyond the denial your communications team would issue? Do your people know what normal authorization looks and feels like, in enough operational detail that an anomaly would register? Do your most important stakeholders have the relational depth with your organization that would make a synthetic impersonation feel behaviorally wrong, not just logically suspicious? That’s not a crisis comms question. It’s a question about what you’ve actually built. The organizations that will hold up against synthetic impersonation aren’t the ones with the fastest response protocols. They’re the ones that already have what the Ferrari executive had: a dense, specific, private record of authentic interaction that no public data can replicate. You can’t build that after the call comes in.","Your Brand Has No Defense Against Deepfakes","2026-08-05T22:32:06.955Z",[246,255,264],{"slug":247,"title":248,"subtitle":249,"excerpt":250,"publishAt":251,"topic":252,"heroId":253,"path":254},"testimonials-are-dead-you-just-havent","Testimonials Are Dead. You Just Haven't Noticed Yet.","Social proof broke when the proof got cheap to fake.","Reviews and case studies can be faked for free now, and your best buyers know it. The proof that still works is vouched, with a real reputation on the line.","2026-06-17T21:23:43.578Z",{"slug":5,"name":6},"553d6474-30f9-4354-bc5d-d0197423b4a6","\u002Fwriting\u002Ftrust-as-infrastructure\u002Ftestimonials-are-dead-you-just-havent",{"slug":256,"title":257,"subtitle":258,"excerpt":259,"publishAt":260,"topic":261,"heroId":262,"path":263},"the-rebrand-is-the-tell","The Rebrand is the Tell","Every rebrand quietly admits the last version wasn't real.","Every rebrand quietly admits the last version wasn't real. In the synthetic era, a slow, traceable identity is the one signal you can't fake.","2026-06-11T12:05:58.544Z",{"slug":5,"name":6},"6cee1160-2fde-4ca0-b819-e956800f6ec0","\u002Fwriting\u002Ftrust-as-infrastructure\u002Fthe-rebrand-is-the-tell",{"slug":265,"title":266,"subtitle":267,"excerpt":268,"publishAt":269,"topic":270,"heroId":271,"path":272},"behind-the-scenes-content-is-the","Behind-the-Scenes Content Is the New Greenwashing","Performed authenticity works, until someone audits it.","Behind-the-scenes content is a genre: produced rawness performing as candor. It works, until the gap gets seen. The transparency that survives an audit.","2026-06-02T12:18:53.358Z",{"slug":5,"name":6},"902b6ec0-f3a1-4147-be2e-a81152260670","\u002Fwriting\u002Ftrust-as-infrastructure\u002Fbehind-the-scenes-content-is-the"]