100+ Free PORP Practice Questions
Prepare for the TCM Security Practical OSINT Research Professional exam with instant access — no signup required.
Loading practice questions...
Explore More TCM Security Practical Certifications
Continue into nearby exams from the same family. Each card keeps practice questions, study guides, flashcards, videos, and articles in one place.
Key Facts: PORP Exam
$399
Exam Cost (includes retake + training)
TCM Security
72 hours
Practical Engagement Window
TCM Security
80/100
Passing Score
TCM Security
No MCQ
Fully Practical — Report-Based
TCM Security
No expiry
Certification Does Not Expire
TCM Security
1 free
Retake Included
TCM Security
The PORP from TCM Security is a practical OSINT certification covering 6 domains: OSINT Methodology (15%), SOCMINT & Account Pivoting (20%), People & Identity Investigation (20%), Domain & Website OSINT (20%), GEOINT & Business Intelligence (15%), and Reporting & Source Triangulation (10%). The exam gives 72 hours to complete a real-world OSINT engagement and submit a professional report. Passing score is 80/100. Cost is $399 with one free retake and 12 months of TCM Academy course access. Primary prep: TCM Security OSINT Fundamentals course. This practice exam covers conceptual knowledge; actual PORP requires hands-on OSINT research.
Sample PORP Practice Questions
Try these sample questions to test your PORP exam readiness. Each question includes a detailed explanation. Start the interactive quiz above for the full 100+ question experience with AI tutoring.
1Which of the following best describes the core purpose of Open-Source Intelligence (OSINT)?
2In the OSINT intelligence cycle, which phase involves transforming raw collected data into a usable intelligence product?
3A PORP investigator wants to search for a specific phrase across indexed web pages. Which Google search operator limits results to pages containing the exact phrase?
4Which Google dork would an investigator use to find all indexed pages on the domain example.com that contain the word 'password'?
5What is a 'sock puppet' account in the context of OSINT investigations?
6An investigator retrieves EXIF metadata from a JPEG photo posted online. Which piece of metadata is most useful for geolocation?
7Which tool is specifically designed for reverse image searching to identify where a photo has appeared online?
8What does SOCMINT stand for, and what is its primary data source?
9When investigating a Twitter/X account, which URL format allows an investigator to view all tweets from a specific user mentioning a keyword using the advanced search?
10An investigator needs to find cached versions of a now-deleted Instagram profile. Which tool or service is best suited for this?
About the PORP Exam
The PORP (Practical OSINT Research Professional) is TCM Security's certification validating real-world open-source intelligence gathering and reporting skills. Unlike multiple-choice exams, the PORP requires conducting a 72-hour practical OSINT engagement against a real-world simulation, then submitting a professional written report. This practice test covers the theoretical knowledge underpinning the exam: SOCMINT, people and identity investigation, domain OSINT, GEOINT, business intelligence, dark web awareness, and structured OSINT reporting.
Assessment
Performance-based assessment
Time Limit
72 hours (3 days) for OSINT engagement + report submission
Passing Score
80/100 points
Exam Fee
$399 (includes one free retake and 12 months TCM Academy access) (TCM Security)
PORP Exam Content Outline
SOCMINT & Account Pivoting
Social media intelligence across major platforms (Twitter/X, LinkedIn, Facebook, Instagram, Reddit), username pivoting with Sherlock and WhatsMyName, footprint mapping, profile correlation, and monitoring public social activity patterns
People & Identity Investigation
Public records research, email OSINT with Hunter.io and Emailrep, phone number lookup with Truecaller and NumLookup, breached data analysis with HaveIBeenPwned, and cross-platform identity verification
Domain & Website OSINT
WHOIS and registrar research, certificate transparency with crt.sh, Wayback Machine and archive.org analysis, DNS enumeration, subdomain discovery with dnsx/subfinder, technology fingerprinting with Wappalyzer, and website intelligence gathering
OSINT Methodology & Process
Intelligence cycle (planning, collection, processing, analysis, dissemination), OSINT frameworks (OSINT Framework site), pivot strategies, source credibility evaluation, structured analytic techniques, and search engine dorking with Google, Bing, and Yandex
GEOINT & Business Intelligence
Reverse image search with TinEye and Google Lens, geolocation using Google Maps Street View and satellite imagery, Yandex reverse image, business registration records, corporate structure mapping, and wireless network OSINT with Wigle.net
Reporting & Source Triangulation
Professional OSINT report writing, note-keeping with tools like Obsidian and CherryTree, triangulating findings across multiple independent data sources, dark web awareness (Tor, Ahmia) without active engagement, and proper source attribution in written deliverables
How to Pass the PORP Exam
What You Need to Know
- Passing score: 80/100 points
- Assessment: Performance-based assessment
- Time limit: 72 hours (3 days) for OSINT engagement + report submission
- Exam fee: $399 (includes one free retake and 12 months TCM Academy access)
Keys to Passing
- Work through all 100 available questions
- Review every answer and explanation
- Track weak areas and revisit them
- Use our AI tutor for tough concepts
PORP Study Tips from Top Performers
Frequently Asked Questions
What is the PORP exam format?
The PORP gives candidates 72 hours (3 days) to conduct a practical OSINT engagement based on real-world simulation challenges. There are no multiple-choice questions — your performance depends entirely on your research skills, source triangulation, and professional report quality. You gather intelligence from social media, public records, online databases, and other open sources, then submit a written report. The exam is scored out of 100 points, with 80 required to pass. One free retake is included with the $399 purchase.
What OSINT tools and techniques are covered in the PORP?
The PORP covers a wide range of OSINT tools and techniques: Google/Bing/Yandex advanced search operators and dorking; Sherlock and WhatsMyName for username OSINT; Hunter.io and HaveIBeenPwned for email and breach data; crt.sh for certificate transparency; WHOIS and DNS lookup tools; Wayback Machine for historical website data; TinEye, Google Lens, and Yandex for reverse image search; Google Maps Street View and satellite imagery for geolocation; Wigle.net for wireless network OSINT; and structured note-keeping and report writing workflows.
How does PORP compare to other OSINT certifications?
The PORP ($399) is TCM Security's practical OSINT certification and stands out for its real-world hands-on engagement format rather than multiple-choice testing. It is more affordable and beginner-friendly than many competing credentials. The 72-hour window and professional report requirement ensure candidates demonstrate genuine research skills. Other OSINT-adjacent certifications include Trace Labs CTF events and SANS FOR578 (cyber threat intelligence), but these target different audiences and price points. PORP is the most accessible starting point for aspiring OSINT analysts.
What courses should I take to prepare for the PORP?
TCM Security's OSINT Fundamentals course is the primary recommended preparation — it covers search engine OSINT, image and email OSINT, people and phone OSINT, website and social media OSINT, wireless network OSINT, and report writing. The $399 PORP package includes 12 months of TCM Academy access. TCM Security has also offered live 'Introduction to OSINT' training sessions that align directly with exam content. Practicing on Trace Labs CTF events and OSINT Challenge sites builds practical research speed.
What jobs can I get with the PORP certification?
The PORP validates skills relevant to roles including: OSINT Analyst, Threat Intelligence Analyst, Investigations Analyst, Corporate Due Diligence Researcher, Social Media Intelligence (SOCMINT) Analyst, Fraud Investigator, and Competitive Intelligence Researcher. It is also highly relevant for law enforcement, private investigators, and security researchers. Combined with other TCM certifications like PNPT, it strengthens profiles for holistic penetration tester and red team roles that include reconnaissance phases.
Is this practice exam like the real PORP?
No — this is a theoretical multiple-choice knowledge exam. The real PORP is a 72-hour hands-on practical engagement where you must actively research a target using open sources and write a professional report. Use this practice exam to test your understanding of OSINT tools, techniques, and methodology. To pass the actual PORP, you must practice hands-on OSINT research using the TCM Academy OSINT Fundamentals course, Trace Labs CTF events, and independent self-directed research exercises.