Looking over the matrix rules there are three ways to apply a mark, get invite, Brute Force and Hack on the Fly. If you are using Hack on the Fly you make an opposed test and if you are successful you can apply 1 or more Marks on the target. From reading the Matrix Perception action it seems like anything that is doing a Matrix Perception action (program your commlink/cyberdeck to run it on continuous action with a dice pool of DevRatingx2?) and getting 2 hits will let you know that you are marked (one to know that there is something out there and the second to actually get the mark count).
Is it really that easy for a host or icon with an active spider or Patrol IC to determine that his system has some unauthorized marks on it?