ASIS Standards and Guidelines - In Progress
ASIS Standards and Guidelines - In Progress
Standards contact: standards@asisonline.org
Management systems standards emphasize the importance of audits as a management tool for monitoring and verifying the effective implementation of an organization's policy. Refers to the systematic, objective activities performed to evaluate management system performance for security, preparedness and continuity management. Audits are an essential part of conformity assessment activities such as external certification/registration and of supply chain
evaluation and surveillance.
Visit the committee page
Describes a maturity model for phased implementation of the ANSI ASIS SPC.1-2009 as a series of steps designed to help organizations evaluate where they currently are with regard to resilience management and preparedness, set goals for where they want to go, benchmark where they are relative to those goals, and plot a business sensible path to get there. The model outlines six phases ranging from no process in place for resilience management to going beyond the requirements of the Standard. It can be used in conjunction with the ANSI ASIS SPC.1 2009 Standard or as a tool for continually improving a generic resilience management and preparedness program.
Visit the committee page
Uses a PDCA approach to identify, apply and manage physical security measures to safeguard an organization's assets - people, property, information and intangible that are based in facilities (not in transit). It describes a process for providing physical/perimeter security at a facility to set goals; identify, assess and manage risks; and select appropriate physical security measures. Standard describes basic functions of physical security measures and tools to protect facilities through the important steps of deterrence, detection, delay and response.
Visit the committee page
Expands the scope of the ANSI ASIS SPC.1-2009 Organizational Resilience Standard to include resilience in the supply chain. It complements the ANSI ASIS SPC.1-2009 by providing a framework for evaluating the internal and external context of the organization with regard to its supply chain, enabling it to develop a comprehensive, balanced strategy to reducing both the likelihood and consequences of a disruptive event. It provides auditable criteria to prevent, prepare for, respond to and recover from a disruptive event using a comprehensive approach to managing risks thereby eliminating the siloing of risks and their impacts.
Visit the committee page
Provides a needed basis for the process involved in the objective analysis of the efficacy of risk management controls that protect an organization's assets and will be based on the ASIS General Security Risk Assessment Guideline.
Visit the committee page
Guidelines contact: guidelines@asisonline.org
No guidelines "in progress" at this time.