What Is Corporate Espionage? A Simple Briefing

People still ask us, what is corporate espionage? A wikipedia definition is here. Whilst it’s a term we are used to, it perhaps is less used within the everyday security discussions of most organisations. Most organisations probably have daily discussions and reports regarding cyber security, or physical security activities. They’ll highlight new and emerging threats and develop mitigations which meet the organisational risk appetite of their organisation. Rarely, will they use the term ‘espionage’ when discussing security threats and risks. Even less frequently will the average security director use a term like ‘counter espionage services’!

Varied Attack Methods

We at Verrimus aren’t sure why this term is not used. One of the reasons for any attack on the privacy of an organisation is ‘to gain a market/industry advantage’. Whatever the reason for a privacy compromising ‘attack’ there’ a plethora of methods open to the attacker.

For example;

  • malicious attachments,
  • a hacking attempt of data systems,
  • a breach of physical security to enter a premises,
  • the installation of a technical surveillance attack,
  • social engineering

As with any privacy compromising attack on an organisation, those instigated for corporate espionage reasons rarely use a single method. A combination of attack methodology will always garner more reliable results than the use of a single method.

If you are in a position of managing, developing and maintaining security processes for your organisation, how do you keep up to date with technical surveillance methods? How do you know which mitigations and identification methods are necessary or are irrelevant? Do you suspect your industry competitors of conducting industrial espionage activities?

Verrimus offer ‘Technical Surveillance Awareness’ courses, to give organisations relevant and accurate information about types of technical surveillance attacks, methods of identification and assistance to be able to procure TSCM (technical surveillance counter measures) services. Not all external TSCM service providers use the same methods. In the UK the service is unregulated. How do you know if your chosen external TSCM provider is meeting your organisational risk appetite? Do you evaluate the service you receive? How often does your service provider update their TTPs to include emerging threats? What training has your service provider undertaken?

VERRIMUS DISCOUNT CODE

Courses booked in 2025 for courses in 2025 can receive a discount of 10% if using the code: VER/TRA/25