Protective Measures

download Protective Measures

of 21

description

California recommended protective measures for enhancing facility security.

Transcript of Protective Measures

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY

    This informaonshouldbeconsideredUNCLASSIFIED//FOROFFICIALUSEONLYunlessotherwisenotedandcontains informaonthatmaybeexemptfrompublicreleaseundertheCaliforniaPublicRecordsAct(Govt.CodeSec.62506270).Itshouldnotbedisseminatedordiscussedoutsideeventsecurity/publicsafetycommunieswithouttheexpresspermissionoftheCentralCalifornia IntelligenceCenter(CCIC),theJointRegional IntelligenceCenter(JRIC),theNorthernCalifornia IntelligenceCenter(NCRIC),theOrangeCounty IntelligenceAssessmentCenter(OCIAC),theSanDiegoLawEnforcementCoordinaonCenter(SDLECC),andtheCaliforniaStateThreatAssessmentCenter(STAC).Noporonofthisreportshouldbefurnishedtothemedia,eitherinwrienorverbalform.Itistobecontrolled,stored,handled,transmied,distributed,anddisposedofinaccordancewithUSDepartmentofHomelandSecuritypoliciesandisnottobereleasedtothemedia,publicorotherpersonnelwhodonothaveavalid"needtoknow"andshallnotbedistributedbeyondtheoriginaladdresseeswithoutpriorauthorizaonoftheoriginator.Receiptacknowledgesacommitmenttocomplywithallapplicablelawsprotecngprivacy,civilrights,andcivilliberesinthecollecon,use,analysis,retenon,destrucon,sharinganddisclosureofinformaon.

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY

    (U)TheNaon'scrical infrastructureprovides theessenal services thatunderpinAmerican society.Proacveandcoordinatedeortsarenecessary tostrengthenandmaintainsecure, funconing,and resilientcrical infrastructure includingassets,networks,andsystems thatarevital topublicconfidenceand theNaon'ssafety,prosperity,andwellbeing.(U)Cricalinfrastructuremustbesecureandabletowithstandandrapidlyrecoverfromallhazards.Achievingthiswillrequireintegraonwiththenaonalpreparednesssystemacrossprevenon,protecon,migaon,response,andrecovery. PresidenalPolicyDirecve(PPD21)CricalInfrastructureSecurityandResilience(U//FOUO)TheProtecve Measures for Enhanced Facility Security wasdevelopedtoprovideabasicunderstandingofprotecvemeasuresthatmayincreasesecurityoffaciliesacrosstheDepartmentofHomelandSecurity16Crical InfrastructureSectors. Thisdocumentcontainsvulnerabiliesandprotecvemeasures that theStateThreatAssessmentSystem(STAS)InfrastructureProteconWorkingGrouphascommonlyobservedwhileperformingsitesecuritysurveys.TheProtecve Measures for Enhanced Facility Security isdividedintoseconspertainingtopoliciesandprocedures,physicalbarriers/sitehardening,accesscontrol,detecon,andemergencypreparedness.

    Policiesestablishobjecves,priories,setresponsibilies,expectaonsandaccountabilityforeachorganizaon.Proceduresarethedetailedinstruconsforstatocarryoutthatimplementapolicy.

    Physicalbarriers refers to thenaturalormanmadeobstacle to themovement/direconofpersons,animals,vehicles,ormaterials.Sitehardeningisimplementaonenhancementofsecuritymeasurestomakeasitemorediculttopenetrate.

    Accesscontrolisthepermingordenyingtheuseofaparcularresourcebyaparcularenty. Deteconistheactofdiscoveringanaempt(successfulorunsuccessful)tobreachasecuredperimeter. Emergencypreparednessaremeasurestakeninadvanceofacrisistoreduceinjury,thelossoflifeandprop

    erty.Theseconsincludeimagespairedwithoponsforconsideraonthataddresscertainsecurityaributesorvulnerabilies.Thisdocumentdoesnotprovideanallinclusivelistofenhancedsecuritymeasures.Thisdocumentoersopons for consideraon thatmay not apply to every facility and should be considered voluntary and nonregulatory innature. Securityupgradesshouldconsider internalpoliciesandfederal,state,and local lawsbeforeimplementaon. TheSTASrecommendsthatthisdocumentbetreatedassensive informaon,anddistribuonlimitedtothosewhohaveavalidneedtoknow.

    CaliforniaStateThreatAssessmentCenter(STAC)(916)8741100,[email protected]

    CentralCaliforniaIntelligenceCenter(CCIC)(888)8848383,[email protected]

    NorthernCaliforniaRegionalIntelligenceCenter(NCRIC)(866)3678842,[email protected]

    JointRegionalIntelligenceCenter(JRIC)(562)3451100,[email protected]

    OrangeCountyIntelligenceAssessmentCenter(OCIAC)(714)2893949,[email protected]

    SanDiegoLawEnforcementCoordinaonCenter(SDLECC)(858)4957200,[email protected]

    THECALIFORNIASTATEASSESSMENTSYSTEM(STAS)FUSIONCENTERPOINTSOFCONTACT

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 3

    OponsforConsideraon:Considerassigningtheroleofsecuritymanagertoanemployeeorvolunteer.Assigningresponsibilityofsecuritymanagement isagoodfirststep tomaintaininganeecvesecurityprogram.Thispersonmayberesponsiblefordeveloping baseline requirements, iniang policy, idenfying training needs,andestablishingconnuityofasecurityprogram.

    PolicyandProcedureSecurityManager ARMYREGULATION3805

    UNCLASSIFIED

    OponsforConsideraon:Consider idenfying andpriorizing informaon and crical assets that areessenaltomaintainingoperaons. Idenfypotenalvulnerabiliesanddevelop procedures and physical measures to migate those vulnerabilies.Ensurethatthereisaprocessforreporngsecurityrelatedincidents.Ensureemployeesare trainedoncurrent securityproceduresandmigaonplans.Conductaddionalrefreshertrainingasneeded.

    PolicyandProcedureDevelopaSecurityPlan/Training ASIS

    UNCLASSIFIED

    PolicyandProcedureDevelopaConnuityofOperaonsPlan/Training

    OponsforConsideraon:Yourfacilityprovidesvitalservicestothecommunity,andreliabilityisafundamentalmissionofall crical infrastructure.Discusspotenal regionalemergenciesthatcoulddisruptessenalfuncons.Considerdevelopingacomprehensiveplanthatensuresessenalfunconscanconnuethroughout,orresumedrapidlyaer,adisruponofnormaloperaons. Onceanocialplanhasbeenestablished, trainyouremployeeson thisplan.Anexamplecanbefoundat:hp://www.fema.gov/connuityoperaons

    FEMA

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 4

    PolicyandProcedureEmergencyAconPlan

    OponsforConsideraon:Considerdevelopingacomprehensiveemergencyaconplanforyourfacility.Thisplanmayinclude,butisnotlimitedtoemergencyphonenumbers,ulitycompanycontacts,ulityoperaonprocedures,andproceduresforchemicalspills, severeweather,earthquakes,bomb threats,etc. Anexample canbefoundat:www.cdc.gov/niosh/docs/2004101/emrgact/emrgact.doc

    CENTERFORDISEASECONTROL

    UNCLASSIFIED

    OponsforConsideraon:Considerdevelopingacomprehensiveevacuaonplan foryour facility. Thisplanmay include,butshouldnotbe limited to,condions thatmaywarrantevacuaonvs.shelter inplace,evacuaon routes, roles/responsibilies,procedurestoaccountforallemployees/contractors,andprimary/backupgatheringlocaons.Eachuniquecrisismayrequiredierentassemblyareas:earthquakeandfireemergenciesmaybesimilar,butacveshooter incidentsmayrequireanalternaveplan.Rehearseandreviewtheplanasappropriate.

    PolicyandProcedureEvacuaonsandAssemblyAreasSDLECC

    UNCLASSIFIED

    PolicyandProcedureAcveShooterPlan/Training

    OponsforConsideraon:ConsiderdevelopingacomprehensiveacveshooterplanandhaveemployeeswatchtheRun,Hide,Fighttrainingvideoforbasicawareness.Onceanocialplanhasbeenestablished,trainyouremployeesontheplan.Ataminimum,ensure theemployees that are located at receponornearbuildingentranceshaveaplantoalertothers ifaworkplaceviolence incidentoccurs.Anexamplecanbefoundat:hp://www.readyhoustontx.gov/videos.html

    READYHOUSTON

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 5

    PolicyandProcedureSuspiciousAcvityReporng

    OponsforConsideraon:Theaachmentatthisendofthedocumentcanassistwithcollecngdetailedand complete informaon to help invesgate crimes or suspicious acvity.Thisformcanbekeptatadesk,inavehicle,oranyplacewhereonecaneasilyaccess it ifacrimeorsuspiciousacvity isobserved. Pleasereportcrimesandsuspiciousacvitytobothlocallawenforcementandlocalfusioncenters.Also,considersharinglocalincidentswithsimilarfaciliestoensureincreasedawareness.

    SDLECC

    UNCLASSIFIED

    PolicyandProcedureBombThreats

    OponsforConsideraon:Considerplacingbombthreatchecklistsneareveryphone.Thischecklistmayprovideremindersofinformaontocollectfromthecallerifabombthreatisreceived.Thisinformaonmaybeessenalinthelawenforcementinvesgaonandpotenalapprehensionoftheresponsiblepares.Ensureyourfacilityhasanapprovedpolicyandprocedure forwhat tododuringandaerareceived bomb threat. Bomb checklist example: hp://emilms.fema.gov/is906/assets/ocsobomb_threat_samepagebrochure.pdf

    FEMA

    UNCLASSIFIED

    OponsforConsideraon:Considerhaving employees/patrols keep a daily log sheet to record safety/securityinformaon.Ensurethatallemployeesaremadeawareofsuspiciousacviesand includepictures/videosaswellasawriendescriponof incidents.Thismayhelp raiseawareness toemployees,andmaybevital informaonforlawenforcementtohelpinvesgateincidentsinvolvingthefacility.

    PolicyandProcedureSecurityLogLPD

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 6

    OponsforConsideraon:Providebasicsuspiciousmailtrainingtoallindividualsthatmayhandledeliveries. AtrainingvideoproducedbytheStateof Illinois isavailableonlineathps://www.illinois.gov/ready/hazards/pages/suspiciousmail.aspx SuspiciousUnknownPackage's (Theawarenesssecon is from2:457:00minutes) Inaddion,awarenessposterscanbedownloadedfromhp://about.usps.com/posters/pos84.pdf

    PolicyandProcedureSuspiciousMailU.S.POSTALSERVICE

    UNCLASSIFIED

    PolicyandProcedureCommunicaonsPlan

    OponsforConsideraon:Considerdevelopingaplantocommunicatepernentinformaontoemployees and individualspresent at your facilityduring a crisis. Theplan shouldinclude allmethods of communicaon to convey informaon to personnelsuchasphonetrees,massemail,masstext, landlineandmobilephonecalls,publicannouncement systems, radios,etc.The communicaonsplan shouldbeavailabletoallemployeesandrehearsedasappropriate.

    SANMATEOCOUNTY

    UNCLASSIFIED

    OponsforConsideraon:Considerhavingformalterminaonproceduresinplacetoensureaterminatedemployee isescortedothepropertywithout incident,and thatsecuritypersonnel/employees are aware that the terminatedemployee isno longerallowedontheproperty. Also,considerusingachecklisttoensuresensiveitems,suchaskeys,badges,equipment,etc.,arereturned. ThisshouldalsoincludedisablingaccesstoITsystems.

    PolicyandProcedurePersonnelTerminaonProceduresHR360

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 7

    PolicyandProcedurePersonnelBackgroundChecks

    OponsforConsideraon:Consider conducngbackgroundchecksonallemployees,andapplicants topreventhiringunsuitableandpotenallydangerouscandidates. Ensurethatcontractsthatcoveroutsidevendorsandcontractorsrequirethecontracngcompanytoconductbackgroundchecksonemployeesworkingatyourfacility.

    MICROSOFT

    UNCLASSIFIED

    OponsforConsideraon:Consider having security procedures in place for visitors, to include havingvisitors sign a log book, verifying the visitors ID/credenals, providing thevisitorwithavisitorsbadge,andescorngthevisitortotheirdesnaon.

    PolicyandProcedureVisitorAccessControlMICROSOFT

    UNCLASSIFIED

    OponsforConsideraon:IfaPAsystemisavailable,ensurethatemployeesareawareofhowtooperateitandunderwhatcircumstancesitshouldbeused.Considerposnguserinstruconswhere the PA system is operated. Having instrucons readilyavailablemayassistduringacrisisandmayalsobehelpfulfornewortemporaryemployees.

    PolicyandProcedurePublicAddress(PA)SystemMICROSOFT

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 8

    OponsforConsideraon:If thewater lineentering the facility isnear theparking lotandexposed toaccidentalor intenonaldamagecausedbyvehicles,placeappropriatebarriersaroundthewaterline.Tomaintainaesthecs,considerusinglargerocks/bouldersasopposedtobollards.Ensureappropriatepersonnelaretrainedinprocedurestoshutothewaterinanemergency.Alwaysconsulttherespecveulitycompanybeforeinstallinganyphysicalsecuritymeasures.

    PhysicalBarriers/SiteHardeningUliesWaterSDLECC

    UNCLASSIFIED

    PhysicalBarriers/SiteHardeningUliesElectricity

    OponsforConsideraon:Iftheelectricaltransformerisneartheparkinglotorroadwayandexposedtoaccidentalor intenonaldamagecausedbyvehicles,placeappropriatebarriers around the transformer. Tomaintain aesthecs, consider using largerocks/boulders as opposed to bollards. Ensure appropriate personnel aretrainedinprocedurestoshutotheelectricityinanemergency.Alwaysconsult the respecve ulity company before installing any physical securitymeasures.

    BOLLARDBLOG

    UNCLASSIFIED

    PhysicalBarriers/SiteHardeningUliesNaturalGas

    OponsforConsideraon:Ifthenaturalgaslineenteringthefacilityisneartheparkinglotandexposedtoaccidentalorintenonaldamagecausedbyvehicles,placeappropriatebarriersaroundthenaturalgasline.Tomaintainaesthecs,considerusinglargerocks/boulders as opposed to bollards. Ensure appropriate personnel aretrained in procedures to shut o the natural gas in an emergency. Alwaysconsult the respecveulity companybefore installinganyphysical securitymeasures.

    ENSTAR

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 9

    PhysicalBarriers/SiteHardeningUliesConcealment

    OponsforConsideraon:Foruliesthatarebehindchainlinkfencing,considerplacingchainlinkfenceprivacyslatsorfabricaroundtheenclosure.Thiswillassistinconcealingcrical components. This may require adding more Closed Circuit Television(CCTV)camerasforsurveillance,ifyouhaveconcernsregardingvisibilityofthecomponents.Alwaysconsulttherespecveulitycompanybeforeinstallinganyphysicalsecuritymeasures.

    HORRYELECTRICCOOPERATIVE

    UNCLASSIFIED

    AccessControlProximityCardReaders

    OponsforConsideraon:Considerusingproximitycardreaderscombinedwithascramblekeypadforcontrolledaccesstocricalareas. Havingaproximitycardreaderandakeypadmeansthatastolencardcannotbeusedwithouttheissuedpinnumber.Useofascrambledkeypadmeansbystanderscannotacquireapinbyobservingwhatkeysaredepressed.Italsooerstheabilitytodisablelostcardsandtrackwhatindividualshaveaccessedcontrolledareas.

    SDLECC

    UNCLASSIFIED

    AccessControlEmployeeIdenficaonCards/Badges

    OponsforConsideraon:Consider issuing employee idenficaon badges thatmust be visiblywornwhileinthefacility.Thisallowsforquickidenficaonofauthorizedandunauthorizedpersonnel.

    WORDPRESS

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 10

    OponsforConsideraon:Ensurethatdoorlatchprotectors,doorsecurityplates,windowsecuritybars,venlaongrates,etc.arenotscrewed inwithcommonflatorPhillipsheadscrews. These screws can easily be removed to bypass securitymeasures.Use security screws or oneway screws to ensure that securitymeasurescannoteasilybedefeated.

    AccessControlSecurityScrewsAVONANDSOMERSETCONSTABULARY

    UNCLASSIFIED

    AccessControlRoofAccessHatch

    OponsforConsideraon:Consider lockingoralarming roofaccesspoints topreventunauthorizedaccesstotheinteriorofthebuilding.Oenthesepointsofaccessareleunsecured.

    UNCLASSIFIED

    SDLECC

    AccessControlRoofAccess/WindowSecurity

    OponsforConsideraon:Considerdoingasitesecuritysurveytocheckforlocaonsinwhichindividualscanaccessyour facilitys roof from theground level. Consider relocangorremovingobjectsthatcanassistindividualsingainingaccesstotheroof.Ifthisis not possible by design, consider installing alarm systems on the doors/windowsthatcaneasilybeaccessedfromroooplocaons.

    SANDIEGOREADER

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 11

    AccessControlKeyControlPolicy

    OponsforConsideraon:Consider implemenngakeycontrolpolicy to include rules for issuingkeys,depositforkeys,duplicaonofkeys,numberingofkeys,lost/stolenkeys,terminaon/separaonofemployeeswithkeys,repairofdoors/locks,storageofkeys,etc.

    OFFICE365

    UNCLASSIFIED

    AccessControlWindowSecurity

    OponsforConsideraon:Consideraddinghighsecuritywindowsorretrofitallwindowswithaermarketdevices to increasesecurity. Immediate lowcostopons includeaddingdowelrodsorscrewinwindow locksonthe inside trackofslidingwindows.Consideralsoaddingwindowsecurityfilmtoincreaseshaerresistance.

    LONDONPOLICE

    UNCLASSIFIED

    OponsforConsideraon:Consideraddinganpryprotecon(latchguards)ondoorstoincreasefacilitysecurityandreducetheriskofanintruderusingaprybartogainaccesstothefacility.

    AccessControlAnPryPlatesSDLECC

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 12

    AccessControlStandoDistance

    OponsforConsideraon:Consider extending the facility perimeter using fencing, planters, bollards,boulders,orotherobstrucons tovehicles to improvestandodistanceanddecreasedestrucveeectsofavehicleborneimprovisedexplosivedevice.

    DHS

    UNCLASSIFIED

    OponsforConsideraon:Ensurewindowanddoorhingepinsaresecured. Considerspotweldingthepins inplace toprevent thepins frombeing removedasamethodofunauthorizedentry.

    AccessControlWindow/DoorPinsSDLECC

    UNCLASSIFIED

    AccessControlVehicleAccess

    OponsforConsideraon:Considerplacingplanters,bollards,boulders,orothervehicleobstrucons infrontofentrancesofa facility topreventaccidentalor intenonal ramming.Thesemaybeespecially importantataccesspointswithmulpledoors thatmayallowforpenetraonintothebuildingbyavehicle.

    ASIAPACIFICSECURITYMAGAZINE

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 13

    OponsforConsideraon:Consideroeringfreenondescriptparkingpermitsckerstopatrons.Considerenforcingthatnovehiclesareallowedtoparkovernight infacilityparkinglots.Itiseasiertodetermineifacarisunauthorizediftheparkinglothasanestablishedandconsistentpaernofbeingemptyduringohoursandyoucandetermineifthevehicleisownedbyaveedpatron.

    AccessControlParkingLot SDLECC

    UNCLASSIFIED

    AccessControlDoorLocks

    OponsforConsideraon:Exteriordoorsthathaveasingledoorknobcaneasilybeshearedo.Considerreplacingoraddingdoorknobswithasingleordoublecylinderdeadboltlock.Thismaybeasimpleandcosteecvewaytoaddsecuritytoasensivearea.

    SDLECC

    UNCLASSIFIED

    AccessControlFenceLine

    OponsforConsideraon:Determine if theperimeterof your fence is free fromdamage. Check theperimeterofyourfencetodetermineiftherearelocaonsinwhichitemscanbeusedtobypassthefence.Makeanynecessaryrepairs.Removeanyvegetaonormanmadeobjects that canbeused to assist aperson to climbingoveryourfenceline.i.e.dumpsters,sheds,garbagecans,ladders,paofurniture,ordebris.Theappearanceofgoodsecuritymayassistdeterringcriminalacvity.UNCLASSIFIED

    SDLECC

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 14

    AccessControlFrontRecepon

    OponsforConsideraon:Toprovidethemaximumproteconforthefrontreceponarea,installballiscratedglassandequalproteconforthesurroundingwalls.Ensuretheglassdoesnothaveholesthatwouldallowapersontosckaweaponthrough.

    ESSEXCONSTRUABLE

    UNCLASSIFIED

    OponsforConsideraon:Loadingdocksareoenvulnerabletounauthorizedaccess.Toreducevulnerabilies considermanning loading dockswith security personnel to controlaccess,andverifytheidenficaondocumentsofdeliverycompanies/drivers.Securitypersonnelcouldalsoinspectdeliveriesforsuspiciousindicatorspriortopackagesenteringthefacility.

    AccessControlLoadingDocksUCSC

    UNCLASSIFIED

    OponsforConsideraon:Consideraddingsecuritymirrors(halfdomemirrors)withinthestairwells ofyourfacility,especiallythestairwellsthatexitoutsideofthebuilding.Thiswilladda layerof securitybyallowing individuals to seearoundcornersbeforeenteringthestairwell.

    DeteconStairwellMirrorsSDLECC

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 15

    OponsforConsideraon:Consider adding CCTV cameras to cover the enre perimeter of all cricalareas. Ensurecamerasworkwell in low lightcondions.Ensurethatcameracablesaresecuredbyrunningthemthroughthewallorwithinconduit.Ensurethatdesignatedemployeesaretrainedonhowtoretrievevideodata.Ideally,haveawrienprocess fordata retrieval so thatfirst responders canaccessthevideoinanemergency.

    DeteconCCTV/VideoProcessingSDLECC

    UNCLASSIFIED

    DeteconMoonAcvatedLighng

    OponsforConsideraon:Considercomplengalighngsurveyatnight.Determineareasofinadequatelighngandaugmentcurrentlighngtopresentaclearanduniformilluminaon.Goodlighngcanserveasadeterrentforillicitacvity.Ifacameracannotbeadded,consideraddingmoonacvatedlighnginthearea.Theacvaondue tomoonmayprovide an increase indetecon anddeterrencecapabilies.

    LOUISVILLE.GOV

    UNCLASSIFIED

    DeteconSuspiciousPackages

    OponsforConsideraon:Considermaking it policy that employees promptlymove deliveries to theinsideof anoce/room ifpackages aredeliveredoutside in general areas.Packages thatare le singoutsidemayappearas commonplaceandmaymakeitlesslikelythatasuspiciouspackagemaybedetected.Anotheroponmaybetouseanositemailboxtolimitdeliveriesdirectlytothefacility.

    AP

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 16

    FLICKR

    OponsforConsideraon:Manybusinessesplacemeasuringtapenearthepublicaccessdoorstoassistwitheasilydeterminingapersonsheight.Thisinformaonmaybehelpfulforlaw enforcement invesgang an incident. At aminimum,measure itemscurrently inplace(plants, jackethangers,etc.)sothatthefrontdeskaendantscaneasilydetermine theheightofan individualusing those itemsasareference.

    DeteconHeightIndicatorTapeSLATE

    UNCLASSIFIED

    OponsforConsideraon:Considerinstallinganalarmsystemthatmonitorsentrancesandwindowsforunauthorized access. Ensure alarms systems are remotelymonitored 24/7and cannofy local law enforcement and facilitypersonnel in the eventofunauthorizedentry.Ensurethealarmsystemcontrolpanelisnotlocatednearawindow inwhichthestatusofthealarmoralarmcodescouldbeobservedbyunauthorizedindividuals.

    DeteconAlarmSystemSDLECC

    UNCLASSIFIED

    DeteconLawEnforcementTracAssistance

    OponsforConsideraon:Iftracflowduringfacilityevents isan issue,determineifextratracassistancecanbeprovidedbyyourlocallawenforcementagencytohelpminimizeaccidents and/orother trac related issues. Considerdiscussingwith yourcitythepossibilityofpainngextracrosswalksandhiringorrecruingvolunteers.

    UNCLASSIFIED

    SANDIEGOPOLICEDEPARTMENTRSVP

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 17

    DeteconConfidenalReporngSystem

    OponsforConsideraon:Consider developing a confidenal reporng system to allow employees toprovide informaon on suspicious behavior/acvieswithin the facility. Inmany incidents of workplace violence, at least one person had priorknowledge of the aackers intent, potenal indicators, or observed suspiciousbehaviorbefore the incident tookplace. Thissystemcanprovideaconableinformaonthatcouldthwartaviolentincident.

    MICROSOFT

    UNCLASSIFIED

    EmergencyPreparednessFireSuppressionControl

    OponsforConsideraon:Ifyouhaveawaterlessfiresuppressionsystem,considertrainingallemployeesonhowthissystemworks,includingtheabortfuncon.Ifthereisasituaonwheretheabortfunconmustbeacvated,thissystemtypicallyrequiresapersontoholdthebuonunlthesystemisreset.Thismayrequireholdingthebuonunlthefiredepartmentorothertrainedpersonnelarrivetoperformthereset.

    SDLECC

    UNCLASSIFIED

    DeteconSecurity

    OponsforConsideraon:Considerhiringprivatesecuritypersonneltomaintainsituaonalawarenessata facility. Presenceofsecuritypersonnel,armedorunarmed,mayactasaneecvedeterrenceagainstaacks. Whentakingthis intoconsideraon,anaackermay choose to select a soer targetwithout security personnelratherthanafacilitywithsecuritypersonnel.

    MICROSOFT

    UNCLASSIFIED

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 18

    OtherMaintenance

    OponsforConsideraon:Considerdoing a facilitywide assessmentof theperimeter,outside spaces,andallinteriorroomstoremove,discard,andorganizeexcessmaterials.Ensurebroken fence lines, lights,posts,signs,etc.arequicklyrepaired. Awellmaintained facilitygives theappearanceofawellmanaged facilityandmayprovideasadeterrencetocriminalacvity.

    SDLECC

    UNCLASSIFIED

    OponsforConsideraon:IfyourfacilityisequippedwithanAEDorTraumaKit,ensurethatallemployeesareawareofwhatequipmentisavailableandwhereitislocated.Considerhosngtrainingontheuseoftheequipment.

    EmergencyPreparednessAutomatedExternalDefibrillator(AED)SDLECC

    UNCLASSIFIED

    EmergencyPreparednessEmergencyLighng

    OponsforConsideraon:Considerpurchasingflashlightsandstrategicallyplacingthemthroughouttheoce intheeventof lossofelectricity.Ensurethatallemployeesareawareofthelocaonofemergencyflashlights.Ensurethatflashlightsareinworkingorderandhaveaddionalbaeriesavailableorarerechargeablepluginflashlights.

    SDLECC

    UNCLASSIFIED

  • TermsandDefinionsAccessControlthecontrolofpersons,vehicles,andmaterialsthroughtheimplementaonofsecuritymeasuresforaprotectedarea.Assetanytangibleorintangiblevalue(people,property,informaon)totheorganizaon.Barrieranaturalormanmadeobstacletothemovement/direconofpersons,animals,vehicles,ormaterials.BusinessConnuaonPlanningtheprocessofanalyzinganorganizaon'sbusiness todetermine the impactofalossordisruponofservice.ClosedCircuitTelevision(CCTV)videosurveillancesystem;atelevisioninstallaoninwhichasignalistransmiedtomonitors,recordersandcontrolequipment.ConnuityofOperaonsPlan (COOP)seriesofplansusedtorespond,recover,resumeandrestorefromabusinessinterrupon.Detecontheactofdiscoveringanaempt(successfulorunsuccessful)tobreachasecuredperimeter.EmergencyAconPlanaplanofacontocommenceatthemeofanincidenttopreventthelossoflifeandminimizeinjuryandpropertydamage.IntrusionDeteconSystem(IDS)asecurityalarmsystemconsisngofvarioustypesofcomponents(balancedmagnecswitches,capacitance,infrared,ultrasonic,etc.)todetectintrusionintheareaofcoveragewithinafacility.PhysicalSecurity securityconcernedwithphysicalmeasuresdesignedtosafeguardpeople,topreventunauthorizedaccesstoequipment,facilies,materials,anddocument,andtosafeguardthemagainstasecurityincident.PhysicalSecurityMeasureadevice,system,orpracceofatangiblenaturedesignedtoprotectpeopleandpreventdamageto,lossof,orunauthorizedaccesstoassets.Policyaleadershipstatementthatindicatesthedireconorintentofanorganizaonalproposeforagivensubjectarea.Proceduredetailedimplementaoninstruconsforcarryingoutpolicies;oenpresentedasformsorlistofstepstobetakenpriorto,duringandfollowinganincident.SecurityManageranindividualwithmanagementlevelresponsibilityforthesecurityprogramofaorganizaonorfacility.SecurityVulnerabilityanexploitablesecurityweakness.SiteHardeningimplementaonofenhancementtomakeasitemorediculttopenetrate.Threatanaconoreventthatcouldresultinalossoranindicaonthatsuchanaconoreventmaytakeplace.

    UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY 19

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY

  • UNCLASSIFIED//FOROFFICIALUSEONLY

    UNCLASSIFIED//FOROFFICIALUSEONLY