EconPapers    
Economics at your fingertips  
 

Physical security and IT convergence: Managing the cyber-related risks

Tim Mccreight and Doug Leece

Journal of Business Continuity & Emergency Planning, 2016, vol. 10, issue 1, 18-30

Abstract: The convergence of physical security devices into the corporate network is increasing, due to the perceived economic benefits and efficiencies gained from using one enterprise network. Bringing these two networks together is not without risk. Physical devices like closed circuit television cameras (CCTV), card access readers, and heating, ventilation and air conditioning controllers (HVAC) are typically not secured to the standards we expect for corporate computer networks. These devices can pose significant risks to the corporate network by creating new avenues to exploit vulnerabilities in less-than-secure implementations of physical systems. The ASIS Information Technology Security Council (ITSC) developed a white paper describing steps organisations can take to reduce the risks this convergence can pose, and presented these concepts at the 2015 ASIS/ISC2 Congress in Anaheim, California.1 This paper expands upon the six characteristics described by ITSC, and provides business continuity planners with information on how to apply these recommendations to physical security devices that use the corporate network. 1Thayer, R., Martin, R., D’Agostino, S. and McCreight, T. Information Technology Security Council Series: Addressing Cyber Security Concerns in Physical Security, ASIS/ISC2 Annual Seminar and Congress, Anaheim California, Session 3209, 29 September 2015.

Keywords: converged security; physical security; IT security; risk assessment; system configuration; planned maintenance; security standards; supply chain; sensitive data (search for similar items in EconPapers)
JEL-codes: M1 M10 M12 (search for similar items in EconPapers)
Date: 2016
References: Add references at CitEc
Citations:

Downloads: (external link)
https://hstalks.com/article/2485/download/ (application/pdf)
https://hstalks.com/article/2485/ (text/html)
Requires a paid subscription for full access.

Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.

Export reference: BibTeX RIS (EndNote, ProCite, RefMan) HTML/Text

Persistent link: https://EconPapers.repec.org/RePEc:aza:jbcep0:y:2016:v:10:i:1:p:18-30

Access Statistics for this article

More articles in Journal of Business Continuity & Emergency Planning from Henry Stewart Publications
Bibliographic data for series maintained by Henry Stewart Talks ().

 
Page updated 2025-03-19
Handle: RePEc:aza:jbcep0:y:2016:v:10:i:1:p:18-30