About the Standard
A key focus of this Standard is on the fundamental principles guiding investigations, including impartiality, independence, fact-based analysis, timeliness, and confidentiality. It highlights the vital importance of investigators maintaining high ethical standards and ensuring that investigative findings are well-documented, legally defensible, and actionable. The Standard provides detailed guidance on managing an investigations program, from defining objectives and policies to monitoring and continuously improving investigative processes. It also underscores the importance of aligning investigative activities with an organization’s broader risk management and compliance strategies.
Additionally, the Standard provides a step-by-step guide for conducting individual investigations, covering critical phases such as planning, evidence collection, witness interviews, documentation, and post-investigation activities. It stresses the significance of using structured methodologies, especially as it relates to topics such as maintaining a chain of custody for evidence and applying best practices in report writing and stakeholder communication. The framework also incorporates risk management principles, ensuring that investigative findings contribute to organizational learning, regulatory compliance, and security enhancements.
Security awareness content should always align with the organization’s mission, vision, and core values. Some valuable topics to cover include the organization’s code of conduct; personnel security policies; bullying and harassment; workplace violence warning signs and prevention; travel security; access control; emergency procedures; and IT security, including password management, social engineering, scams, phishing, and other online threats.
By implementing the principles and methodologies outlined in this Standard and by meeting the requirements it establishes, organizations can improve the effectiveness, credibility, reliability, and defensibility of their investigative processes and outcomes. The guidance promotes a proactive approach to identifying and mitigating risks, strengthening corporate governance, and fostering a culture of accountability and transparency.