Training Library

TRUE OBSERVER ACADEMY · CORE READING

Essential OSINT & Cyber Evidence Library

Eighteen carefully selected titles covering OSINT, digital evidence, protective intelligence, privacy, observation, critical thinking and analytical judgement. This is not a reading list built around one job title; it is a library designed to strengthen the habits we expect from a good Observer.

Why we consider these readings essential

Good observation is not simply about noticing more. It is about knowing what you are looking at, separating fact from interpretation, preserving evidence properly and recognising when your own assumptions are influencing the conclusion.

The technical titles in this library develop practical skills in OSINT, cyber intelligence, digital forensics, privacy and incident response. The analytical titles develop the other half of the job: attention, scepticism, reasoning under uncertainty, bias awareness and the ability to test competing explanations.

Volunteers do not need to become specialists in every subject. The purpose is to build a shared standard: observe carefully, verify before concluding, document what can be supported and remain willing to change a judgement when better evidence appears.

Open Source Intelligence Techniques (11th Edition) book cover
Open Source Intelligence Techniques (11th Edition)
Michael Bazzell
OSINT Data Collection

The practical field manual for locating, collecting and archiving open-source data while reducing your own digital footprint.

Practical Cyber Intelligence book cover
Practical Cyber Intelligence
Wilson Bautista Jr.
Intel Threat Modelling

Shows how to build cyber-intelligence functions that turn raw data into decision-ready insight for defenders, investigators and security leads.

The Protective Intelligence Advantage book cover
The Protective Intelligence Advantage
Fred Burton & Scott Stewart
Protective Intel Risk Mapping

Frameworks for spotting pre-incident signals and building early-warning systems to protect executives, journalists and public figures.

The Fundamentals of Digital Forensics book cover
The Fundamentals of Digital Forensics
Eric Waldrep
Forensics Evidence Preservation

Covers acquisition, imaging, hashing and analysis of digital evidence while maintaining a defensible chain of custody.

Digital Forensics and Incident Response book cover
Digital Forensics and Incident Response
Gerard Johansen
Incident Response Triage

Practical playbooks for securing systems, capturing volatile data, and reconstructing timelines after compromise or harassment campaigns.

Intelligence-Driven Incident Response book cover
Intelligence-Driven Incident Response
Scott Roberts & Rebekah Brown
Threat Intel Playbooks

How to connect threat intelligence, logs and forensic artefacts into repeatable playbooks that shorten response time and improve outcomes.

EU GDPR Implementation and Compliance Guide book cover
EU GDPR Implementation & Compliance Guide
IT Governance Publishing
GDPR Compliance

A practical handbook for applying GDPR principles to real operations, including data minimisation, DPIAs and processor obligations.

Cybersecurity and Privacy Law Handbook book cover
Cybersecurity and Privacy Law Handbook
Walter Rocchi
Law Governance

Links frameworks like ISO 27001 and NIS 2 to real legal duties around breach reporting, evidence handling and cross-border data flows.

Data Protection book cover
Data Protection
Peter Carey
DPO Policy

Explains the day-to-day work of a DPO, from records of processing to incident reports. Ideal context for TO’s evidence-logging standards.

The Psychology of Intelligence Analysis book cover
The Psychology of Intelligence Analysis
Richards J. Heuer Jr.
Analysis Bias

Classic work on cognitive bias and structured reasoning. Mandatory for anyone judging online allegations or reputational attacks.

Structured Analytic Techniques for Intelligence Analysis book cover
Structured Analytic Techniques
Richards Heuer & Randolph Pherson
Tradecraft Red Teaming

Provides concrete tools (key-assumption checks, alternative futures, devil’s advocacy) to challenge your own conclusions.

Cybersecurity Data Protection book cover
Cybersecurity Data Protection
Reginald & Debra Miller
Data Security Ethics

Focuses on protecting personal data against modern attack patterns while respecting legal and ethical boundaries (GDPR, CCPA, etc.).

Visual Intelligence book cover
Visual Intelligence
Amy E. Herman
Observation Perception

Uses close observation of visual material to practise describing what is actually present before interpretation takes over. Directly relevant to evidence capture and field observation.

Mastermind How to Think Like Sherlock Holmes book cover
Mastermind: How to Think Like Sherlock Holmes
Maria Konnikova
Observation Reasoning

Explores how attention, memory, deduction and self-awareness affect the way we interpret information, and how deliberate thinking can replace automatic assumptions.

Superforecasting book cover
Superforecasting
Philip E. Tetlock & Dan Gardner
Judgement Uncertainty

A practical lesson in making measured judgements when information is incomplete: break problems down, update conclusions as evidence changes and avoid becoming overconfident in a first theory.

Calling Bullshit book cover
Calling Bullshit
Carl T. Bergstrom & Jevin D. West
Verification Data Literacy

Shows how misleading claims can hide behind statistics, charts, algorithms and confident language. Useful when assessing online claims, reports and apparently authoritative evidence.

The Intelligence Trap book cover
The Intelligence Trap
David Robson
Critical Thinking Bias

Examines why intelligence and expertise do not automatically protect us from poor judgement, motivated reasoning or overconfidence. A useful counterweight for anyone analysing a case.

The GCHQ Puzzle Book cover
The GCHQ Puzzle Book
GCHQ
Codes Problem Solving

A collection of codes, ciphers, numerical challenges and lateral-thinking problems from GCHQ. Less formal than the other titles, but excellent applied practice for flexible analytical thinking.