Technical Surveillance Countermeasures
The systematic detection of covert surveillance, and the closure of every pathway that lets your conversations travel. Delivered across Hong Kong and Asia to a methodology refined since 1992.
What this service is
A Risk3 TSCM engagement is a comprehensive technical and physical inspection of the environments where your sensitive conversations occur, boardrooms, executive floors, deal rooms, offices, residences, for evidence of covert surveillance. It is the discipline commonly called a "bug sweep", executed to a documented, court-tested methodology and reported in the language of the boardroom.
We treat detection as necessary but not sufficient. Every engagement includes an electronic privacy audit dimension: an assessment of how your conference systems, telephony, network infrastructure and meeting practices could leak information without any device being present. Clients receive a complete picture of exposure, not just a statement that no transmitter was found on the day.
What we look for
- Active and dormant audio transmitters: RF, GSM/cellular, Wi-Fi and Bluetooth-based devices, including remotely switchable systems.
- Store-and-forward recorders that transmit nothing and defeat purely RF-based detection.
- Covert optical devices, hidden cameras with or without transmission capability, including lens-only systems.
- GPS and cellular tracking devices in vehicles and portable effects.
- Compromised infrastructure: telephone systems, VoIP, video-conferencing endpoints, cabling and carrier-current attacks.
- Modified consumer items, power accessories, chargers, clocks, smoke detectors and furnishings adapted for collection.
- Structural and physical concealments identified through non-linear junction detection, thermal imaging and disciplined physical search.
How an engagement runs
Following a confidential scoping consultation, fieldwork is scheduled outside business hours and, where required, under an agreed cover. Senior consultants conduct the inspection using layered detection techniques, spectrum analysis, non-linear junction detection, thermal imaging, physical search and infrastructure examination, each method covering the blind spots of the others. Findings that require decisions are raised with you immediately and in private. Nothing is removed, disclosed or escalated without your instruction.
Every engagement concludes with a written report: scope, methodology, findings, an assessment of your residual exposure, and prioritised recommendations. Reports are drafted for boards and counsel, and to a standard that withstands scrutiny in court or arbitration, because if we find something, you will be in a legal matter whether you planned to be or not.
When to commission TSCM
- Before board meetings, results announcements, M&A negotiations and other high-value discussions.
- When information has surfaced externally that should not have left the room.
- During litigation, arbitration, restructuring or contested control situations.
- After senior departures, office relocations, fit-outs or periods of third-party access to sensitive areas.
- As a scheduled governance control, see our Continuous Monitoring Programme.
Layered detection. Documented process. Defensible findings.
Threat modelling
We establish what information is at risk, who benefits from collecting it, and what access they plausibly have, so inspection depth matches the adversary, not a checklist.
RF spectrum & signals survey
Wideband analysis of the radio environment against baseline, identifying transmitters across RF, cellular, Wi-Fi and Bluetooth, including burst and scheduled emitters.
Physical & technical search
Non-linear junction detection, thermal imaging and systematic physical examination of furnishings, fixtures, cabling and structure, the layer that finds devices that never transmit.
Infrastructure & network examination
Telephony, VoIP, conferencing systems and network-connected building infrastructure inspected for compromise and misconfiguration.
Reporting & remediation
Findings, exposure assessment and a prioritised hardening plan, delivered in person where required, and supported through implementation.
Assurance is only useful if it arrives before the conversation.
All enquiries handled under strict confidentiality