Often when we think of threats to information systems at a business, we think of cyberattacks and other virtual threats. As a result, we consider securing the information systems in the virtual environment from these threats, but security needs to expand far beyond these security measures. Physical security is also critical to the protection of a business’s technology. Due to a lack of focus on the physical security of digital assets, it is likely easier for a thief to steal data from walking through the front door of a company than by trying to hack into it (DeVos, 2020). In order to fully secure the organization’s data and digital assets or stealing data as a disgruntled employee, a company needs to create a security strategy and policies that encompass all aspects of security, including physical securities (DeVos, 2020). Other physical threats can include natural disasters that can damage physical assets such as a flood, tornado, or fire. Several models or approaches can be utilized to secure a company’s information systems.
DeVos(2020) proposed five security measures that businesses should incorporate in their physical security strategy, including securing the premises from the outside in, embrace modern surveillance methods, perform regular backups, incorporate robust access control, and develop a security culture within the company. The first measure, securing the premises from outside in, entails the company issuing accompany ID badge that provides access, exterior fencing, license plate readers, emergency call boxes, outdoor lighting, security officers, and signage (DeVos, 2020). All of these physical security measure will deter thieves from stealing from the company. The second measure, embracing modern surveillance methods, is one of the most effective ways to keep thieves from breaking into the company, and this measure includes closed-circuit television (CCTV) (DeVos, 2020). Security officers may also be employed to continuously monitor the surveillance footage. The third security measure, perform regular backups, can help to mitigate against both intruders as well as natural disasters. Regular backups allow a company to secure data in case the hardware is destroyed. Securing the data in an off the site location and only allowing access to few employees can also add extra physical protection of the company’s data (DeVos, 2020). The fourth measure, robust access control, entails having supervision requirements, perform identity checks, and regularly reviewing the access logs to ensure the appropriate employees are retrieving the data (DeVos, 2020). The fifth and final security measure, developing a security culture, entails training and ensuring the staff take security seriously and are advocates for security measures at the company (DeVos, 2020). These five security measures, in conjunctions with the typical online security measures, will keep the software, hardware, digital assets, and data safe from cyberattacks, theft, intruders, competitors, and disgruntled employees.
Reference
DeVos, Sherryn (2020). Five Physical Security Measures Every Tech Company Should Employ. Tech Funnel. Retrieved from https://www.techfunnel.com/information-technology/physical-security
measures/.