What Does TSCM Mean? Simple Definition

We tend to forget and be very surprised when approached by security professionals who ask ‘what does TSCM mean?’ and seem to be unaware of what TSCM is (and what it is not!). Our specialism is TSCM, we live and breathe all things TSCM.

Let’s start from the basics. TSCM stands for Technical Surveillance Counter Measures. Breaking down that phrase, to clarify further, technical surveillance is the method of breaching the privacy of an individual or organisation, using technical means, and counter measures are those actions undertaken to deter, detect, identify and locate instances of technical surveillance.

What Is TSCM? Definition

TSCM surveys are often referred to as; bug sweeping, sweeps, bug sweeps, TSCM inspections, electronic counter-surveillance operations or debugging services. The terms all refer to one common service, an electronic and physical check of an area (road vehicle, hotel, office, theatre, conference facility, residence, yacht, aircraft, etc) to establish if a technical surveillance attack is present.

We at Verrimus refer to these services as providing a TSCM survey.

Why Is Technical Surveillance Counter Measures Required?

There are always privacy threats in all environments. There will always be someone who wants to compromise your personal, professional or organisational privacy. That’s not alarmist speak, that’s just how it is!

Compromising privacy is an age-old human attack strategy. Take a look through history, it’s littered with the consequences of eavesdropping and espionage, of gossip about private lives and stolen information. The old saying ‘knowledge is power’ is absolutely true. Naivety, ignorance or lack of knowledge is a disadvantage in most professional situations. Being able to obtain and exploit information, which the target/victim assumes is unknown, is as sought after today as it has ever been.

Who Uses Technical Surveillance?

A technical surveillance attack could be mounted by a number of different sources, such as;

  • an organised criminal gang, targeting individuals to gain access to money,
  • a voyeur who wants to compromise personal privacy for their own gratification or widely sharing imagery,
  • a business competitor whom wishes to damage the reputation of your personnel and brand,
  • a business competitor who wishes to copy an aspect of your business or product,
  • a disgruntled colleague who wishes to ruin your reputation,
  • a state-sponsored privacy attack seeking political gains
  • an ex or current partner who exhibits ‘stalker’ type behaviour 

There is a range of technical surveillance attacks and devices available. Some are small, inexpensive, easily obtained, easily installed privacy compromising devices and techniques. Some are bespoke devices and techniques created by professional FIS (foreign intelligence services). The opportunities to compromise privacy are numerous, and always evolving. Hence, TSCM specialists are always researching emerging threats and developing counter measures tailored to ensure every threat is detectable, identifiable or preventable.

Every security director, with any degree of competence, understands that a holistic approach to security is necessary. A holistic approach to security ensures that all risks are identified and effectively mitigated. The security landscape of physical, cyber and technical security threat domains must all be included in any robust organisational security strategy.

Technical Surveillance Is A Constantly Evolving Threat

Privacy compromising attacks are constantly developing. There’s a constant historical dance between those who attack privacy and those who mitigate privacy threats. Privacy attackers are evolving and adapting. TSCM specialists are constantly researching and developing new countermeasures for new attacks and attack methods as they emerge. If you aren’t a TSCM specialist, how do you ensure you are aware of the emerging privacy protection threats and methodologies? Mitigating all threats is important, you wouldn’t accept a physical security solution on a door entry system, that allowed ‘some’ none authorised personnel to access an office, so why would you be satisfied with a TSCM service that didn’t survey all threat domains and all attack methods?

What Does a TSCM Survey Involve?– Measurement, Analysis, Interpretation, Mitigation

The Hollywood myth of a TSCM survey, usually referred to in movies as a bug sweep, continues to depict what we refer to as a ‘wandwaver’.

What do we at Verrimus mean by ‘wandwaver’? – An individual waving a handheld piece of electronic equipment around a room. Then either declaring ‘all clear’ or ‘finding’ a little black box or wired microphone. The reality (for any competent TSCM operator) is wildly different! Seriously, any competent TSCM operator would love to rock up to a task with one little handheld beeping device and be able to declare the space attack free in a short time! The reality, for a competent TSCM operator, involves transporting lots of pelicases of varied measurement equipment and tools, multi-layered threat domain examinations, crawling and climbing to conduct physical non-destructive searches of small and difficult spaces and analysis of the results using their experience and knowledge of attack methods.

There are a number of technical surveillance threat domains and each must be examined, analysed and mitigated.

THERE IS NO SINGLE PIECE OF TSCM EQUIPMENT THAT COVERS ALL THREAT DOMAINS! 

Whatever an equipment manufacturer may tell you! Remember that TSCM equipment manufacturers and resellers have sales targets. There will always be equipment sellers who will declare that all you need for ‘sweeping’ is their piece of equipment. Buyer beware. Verrimus offer an equipment evaluation service to our clients and are happy to discuss the benefits and limitations of available equipment. Most of those trying  to sell you TSCM equipment, will rarely mention any limitations that their equipment has!

A competent TSCM operator has a suite of measurement tools. These tools assist them to take accurate measurements of a threat domain so they can interpret and analyse these measurements.

A competent TSCM operator knows;

  • what combination of tools are required,
  • in what order those tools need to be used,
  • how to analyse results,
  • how to recognise anomalies in the task environment,
  • how to investigate anomalies,
  • how to mitigate all TSCM risks.

Privacy is Precious!

Think about the damage that can be caused by technical surveillance attacks. Think about the information that you do not wish to be widely known. Is it adequately protected from a technical surveillance attack?Whether it be;

  • personal information,
  • information about your professional or personal relationships,
  • information about your organisation’s products or services,
  • information about your location and visits to various places,
  • information about your organisational plans or projects,
  • personal or professional financial details
  • or discussions that you have been involved in that you thought were private.

We are passionate about our specialism. Working with our clients we ensure they have accurate information about threat of (and risk from) technical surveillance. We provide services which are tailored to our clients’ risk appetite, budget constraints, time constraints and working practices.

If you want to know more about our how we assist our clients to protect their personal, professional and organisational privacy from technical surveillance, contact info@verrimus.com