ASIS Standards and Guidelines - In Progress

ASIS Standards and Guidelines - In Progress

 

Standards

Standards contact: standards@asisonline.org
 

Auditing Management Systems for Security, Preparedness and Continuity Management with Guidance for Application Standard (201X)
Management systems standards emphasize the importance of audits as a management tool for monitoring and verifying the effective implementation of an organization's policy. Refers to the systematic, objective activities performed to evaluate management system performance for security, preparedness and continuity management. Audits are an essential part of conformity assessment activities such as external certification/registration and of supply chain
evaluation and surveillance.

Visit the committee page
 


Organizational Resilience Maturity Model - Phased Implementation Standard (201X)
Describes a maturity model for phased implementation of the ANSI ASIS SPC.1-2009 as a series of steps designed to help organizations evaluate where they currently are with regard to resilience management and preparedness, set goals for where they want to go, benchmark where they are relative to those goals, and plot a business sensible path to get there. The model outlines six phases ranging from no process in place for resilience management to going beyond the requirements of the Standard. It can be used in conjunction with the ANSI ASIS SPC.1 2009 Standard or as a tool for continually improving a generic resilience management and preparedness program.

Visit the committee page
 


Physical Asset Protection Standard (201X) (formerly Facilities Physical
Security Management
)

Uses a PDCA approach to identify, apply and manage physical security measures to safeguard an organization's assets - people, property, information and intangible that are based in facilities (not in transit). It describes a process for providing physical/perimeter security at a facility to set goals; identify, assess and manage risks; and select appropriate physical security measures. Standard describes basic functions of physical security measures and tools to protect facilities through the important steps of deterrence, detection, delay and response.

Visit the committee page
 


Resilience in the Supply Chain Standard (201X)
Expands the scope of the ANSI ASIS SPC.1-2009 Organizational Resilience Standard to include resilience in the supply chain. It complements the ANSI ASIS SPC.1-2009 by providing a framework for evaluating the internal and external context of the organization with regard to its supply chain, enabling it to develop a comprehensive, balanced strategy to reducing both the likelihood and consequences of a disruptive event. It provides auditable criteria to prevent, prepare for, respond to and recover from a disruptive event using a comprehensive approach to managing risks thereby eliminating the siloing of risks and their impacts.

Visit the committee page
 


Risk Assessment Standard (201X)
Provides a needed basis for the process involved in the objective analysis of the efficacy of risk management controls that protect an organization's assets and will be based on the ASIS General Security Risk Assessment Guideline.

Visit the committee page
 


 

Guidelines

Guidelines contact: guidelines@asisonline.org
 

No guidelines "in progress" at this time.