SecurityInformed.com
  • Products
    Video Surveillance
    • Surveillance cameras
    • Video Surveillance software
    • IP cameras
    • Digital video recorders (DVRs)
    • Dome cameras
    • Network Video Recorders (NVRs)
    • IP Dome cameras
    • Security camera lenses
    Access Control
    • Access control readers
    • Access control software
    • Access control controllers
    • Access control systems & kits
    • Intercom Systems
    • Electronic lock systems
    • Access control cards/ tags/ fobs
    • Access control accessories
    Intruder Alarms
    • Intruder alarm system control panels & accessories
    • Intruder detectors
    • Intruder alarm warning devices
    • Intruder alarm communicators
    • Intruder alarm accessories
    • Intruder alarm lighting systems
    Technology's Role In Securing Banks And Financial Institutions
    Technology's Role In Securing Banks And Financial Institutions
    ASSA ABLOY eCLIQ Programmable Key Access System

    ASSA ABLOY eCLIQ Programmable Key Access System

    Dahua Wi-Fi Pan & Tilt Camera With AI Detection And Smart Dual Light

    Dahua Wi-Fi Pan & Tilt Camera With AI Detection And Smart Dual Light

    Dahua Wireless Alarm Hub 2

    Dahua Wireless Alarm Hub 2

    Hikvision LinkVu integrated security and networking solution for SMB installers

    Hikvision LinkVu integrated security and networking solution for SMB installers

  • Companies
    Companies
    • Manufacturers
    • Distributors
    • Resellers / Dealers / Reps
    • Installers
    • Consultants
    • Systems integrators
    • Events / Training / Services
    • Manned guarding
    Companies by Product area
    • CCTV
    • Access control
    • Intruder alarm
    • IP networking products
    • Biometrics
    • Software
    • Digital video recording
    • Intercom systems
    Technology's Role In Securing Banks And Financial Institutions
    Technology's Role In Securing Banks And Financial Institutions
  • News
    News
    • Product news
    • Corporate news
    • Case studies
    • Events news
    Latest
    • Connected Locks: Gunnebo's Cyber Resilience Focus
    • Paxton Solo: Upgrade Student Housing Security
    • Zero Trust Integration: Zero Networks & Palo Alto
    • Cribl Advances With AI SOC Technology Acquisition
    Technology's Role In Securing Banks And Financial Institutions
    Technology's Role In Securing Banks And Financial Institutions
  • Insights
    Insights
    • Expert commentary
    • Security beat
    • Round table discussions
    • Round Table Expert Panel
    • eMagazines
    • Year in Review 2023
    • Year in Review 2022
    Featured
    • Responsible AI Adoption Starts With Governance
    • Solink's AI Agents Boost Efficiency Of Existing Infrastructure With Automation
    • How AI-Enabled Cameras Are Becoming Operational Sensors That Power Safety, Automation, And Business Intelligence
    • What Is The Changing Role Of Intelligence In Physical Security?
    Technology's Role In Securing Banks And Financial Institutions
    Technology's Role In Securing Banks And Financial Institutions
  • Markets
    Markets
    • Airports & Ports
    • Banking & Finance
    • Education
    • Hotels, Leisure & Entertainment
    • Government & Public Services
    • Healthcare
    • Remote Monitoring
    • Retail
    • Transportation
    • Industrial & Commercial
    Technology's Role In Securing Banks And Financial Institutions
    Technology's Role In Securing Banks And Financial Institutions
    Enhance Hospitality Security With Key Control Systems

    Enhance Hospitality Security With Key Control Systems

    eCLIQ Enhances Security At Marin Hospital Of Hendaye

    eCLIQ Enhances Security At Marin Hospital Of Hendaye

    Alamo Colleges Boosts Safety With Alcatel-Lucent OmniSwitch Platform

    Alamo Colleges Boosts Safety With Alcatel-Lucent OmniSwitch Platform

    HID Mobile Access Enhances University Of Dundee Campus

    HID Mobile Access Enhances University Of Dundee Campus

  • Events
    Events
    • International security
    • Regional security
    • Vertical market
    • Technology areas
    • Conferences / seminars
    • Company sponsored
    Virtual events
    • Video Surveillance
    • Access Control
    • Video Analytics
    • Security Storage
    • Video Management Systems
    • Integrated Systems
    Technology's Role In Securing Banks And Financial Institutions
    Technology's Role In Securing Banks And Financial Institutions
    Intersec Buenos Aires 2026

    Intersec Buenos Aires 2026

    Securex Caspian 2026

    Securex Caspian 2026

    PACK EXPO Chicago 2026

    PACK EXPO Chicago 2026

    OFSEC - Oman Fire, Safety & Security Expo 2026

    OFSEC - Oman Fire, Safety & Security Expo 2026

  • White papers
    White papers
    • Video Surveillance
    • Access Control
    • Video Analytics
    • Video Compression
    • Security Storage
    White papers by company
    • HID
    • ASSA ABLOY Opening Solutions
    • Milestone Systems
    • Software House
    • Eagle Eye Networks
    Other Resources
    • eMagazines
    • Videos
    Technology's Role In Securing Banks And Financial Institutions

    Technology's Role In Securing Banks And Financial Institutions

    Integrated Systems Enable Critical And Compliant Security For Transportation

    Integrated Systems Enable Critical And Compliant Security For Transportation

    Modernizing Physical Access Control

    Modernizing Physical Access Control

    Access. Intrusion. One Estate.

    Access. Intrusion. One Estate.

About us Advertise
  • Securing Financial Institutions
  • AI special report
  • Cybersecurity special report
  • 6

Cyber security

  • Home
  • About
  • News
  • Expert commentary
  • Security beat
  • Case studies
  • Round table
  • Products
  • White papers
  • Videos
How Physical Security Consultants Ensure Cybersecurity For End Users

How Physical Security Consultants Ensure Cybersecurity For End Users

Editor's opinion
How Managed Detection And Response Enhances Cybersecurity Management In Organizations

How Managed Detection And Response Enhances Cybersecurity Management In Organizations

Expert commentary
Drawbacks Of PenTests And Ethical Hacking For The Security Industry

Drawbacks Of PenTests And Ethical Hacking For The Security Industry

Expert commentary
Making Your Surveillance Cyber Secure

Making Your Surveillance Cyber Secure

White paper
How UL Helps Security Manufacturers Comply To Cybersecurity Standards

How UL Helps Security Manufacturers Comply To Cybersecurity Standards

Editor's opinion

News

AI Security Accreditation Unveiled By CREST
AI Security Accreditation Unveiled By CREST

CREST, the international non-profit representing the global cybersecurity industry, announces the launch of its Security Testing of AI standard and accreditation. The new standard for cybersecurity service providers establishes independently assessable requirements for testing Generative AI and Large Language Model (LLM)-enabled systems. AI systems are moving rapidly from experimentation into real-world deployment, with AI becoming embedded within organizations’ applications, workflows, products and business processes. But up until now, buyers have had no way to know whether the cybersecurity providers testing their AI systems actually have the capability to do so. Providing independent assurance The CREST Security Testing of AI accreditation has been introduced to address that. It is designed to provide independent assurance that cybersecurity service providers have the demonstrable specialist capability to securely and effectively test AI systems. It assesses whether providers have appropriate: Technical expertise and practitioner competence. Testing methodologies. Governance and quality controls. Technical approaches and tooling. Processes for identifying and evaluating AI-specific security risks. Evidence to support the conclusions reached during testing. AI security expertise Once accredited, providers offer buyers independent assurance of their AI testing capabilities. This helps guide procurement, streamline supplier due diligence, and eliminate reliance on unsupported claims about AI security expertise. Nick Benson, CEO of CREST, said: “This latest addition to our new AI range of standards and accreditations was specifically curated to respond to an emerging market need. Our membership told us very clearly that as their clients deployed AI-enabled tech, they required more information on their AI testing credentials. Offering " Security testing of AI systems" and demonstrating the ability to deliver it effectively are two different things. Buyers need to know that the providers assessing their AI have the right expertise and methodologies. Providers now have a way to develop their policies in line with our standard, demonstrate their technical capabilities through independent assessment, giving buyers that all-important confidence to proceed.” Entire attack surface The Security Testing of AI standard has been created under the principle that AI security testing needs to consider the whole system. To recognize the broader system-level security challenge, the new standard does not just treat the underlying model itself as the entire attack surface. It recognises that testing needs to also consider applications, prompts and system instructions, retrieval mechanisms, data sources, memory, tools, plugins, APIs, orchestration layers and downstream systems influenced by AI outputs. AI assurance program The Security Testing of AI standard and accreditation marks the latest stage of CREST's growing AI assurance program. Recent CREST research highlights the magnitude of this evolution across cybersecurity: 69% of penetration testing providers already use AI, and 76% have increased their usage over the past year. Responding to this rapid rate of adoption, CREST announced its AI-Enabled Penetration Testing standard in July. This focused on how a penetration testing provider uses AI within the delivery of its services, while this latest standard assures their capability to test AI systems. Tim Reed, Technical Director, Sentrium Security Limited, a UK-based CREST member, said: "CREST’s standards turn responsible AI from a promise into something that can be evidenced and assessed. We believe this will strengthen buyer confidence, reward credible providers and set a higher bar for the profession, which is why we intend to pursue accreditation.” AI-enabled cybersecurity services Yann Chalençon, Head of Cyber Security Services, wizlynx group, a Switzerland-based CREST member, said: "CREST’s new standard provides a clear, independently verified framework that will help create consistency, strengthen assurance and build trust in both the testing process and the wider use of AI-enabled cybersecurity services.” CREST developed these standards in collaboration with the industry and will continue to refine them through its AI Working Group. The standards follow the launch of CREST’s industry-backed AI Charter and AI Principles in June. A global cohort of more than 100 founding signatory cybersecurity organizations - including more than 10% of CREST’s worldwide membership - publicly committed to supporting the responsible use of AI across industry services. Existing CREST Members and cybersecurity service providers are now invited to apply for this new accreditation. The Security Testing of AI accreditation builds on CREST’s Penetration Testing Accreditation, which organizations must hold or apply for alongside this one.

Transforming Cloud Security With RAD's AI Investigations
Transforming Cloud Security With RAD's AI Investigations

RAD Security takes the stage as a finalist in the Black Hat Startup Spotlight Competition, it unveils the first-ever AI-powered incident investigation capability for behavioral detection and response. Today, cloud security is based almost exclusively on signature-based detections, which are notorious for burdening security teams with false positives. RAD Security is the first to combine AI-powered incident investigation with behavioral, signature-less detections, to significantly reduce false positives and provide much-needed relief for overburdened security teams. Signature-focused approach “By definition, signatures are stateless, making investigations based on the signature-focused approach inaccurate and tedious,” says CTO and Co-Founder Jimmy Mesta. “By adding AI-powered investigations to behavioral detection, which is already a step ahead of signature-based detection in accuracy, security teams can quickly get light years ahead in the accurate assessment of incidents.” RAD’s behavioral approach and AI-powered investigations result in the lowering of false positives on their own; but by putting these two capabilities together, RAD enables security teams to achieve a multiplier effect. The enhanced accuracy of behavioral methods versus signature-based methods is easily demonstrated using multiple examples of attack tactics like reverse shells, access to sensitive data, and a Sudo CVE. Behavioral drift event In these examples, while signatures can be easily bypassed by avoiding the exact parameters, they are detected by RAD’s behavioral solution. By the same token, a behavioral drift event is not always a malicious event, so the addition of the AI investigation capability ensures additional accuracy. AI is particularly suited for looking across large sets of data and quick contextualisation, making it a natural investigation tool and engine to analyze benign versus malicious drift. Throughout the history of cyber security, and most famously in the endpoint and network security markets, signatures have eventually been replaced by behavioral methods in response to an evolving threat landscape. Today, the cloud security category is nearly entirely composed of signature-based approaches with runtime security and Cloud Workload Protection (CWPP) that are standalone or part of a broader Cloud Native Application Protection Platform (CNAPP). Cloud native environments In sharp contrast to signature-based CNAPPs, or posture-focused Cloud Security Posture Management (CSPM), RAD Security’s Cloud Detection and Response (CDR) solution creates behavioral baselines of unique good behavior to detect zero day attacks, enriching detections with real-time identity and infrastructure context that inform response actions. More and more, detection and response is being accomplished by fewer and fewer dedicated people, with 22% of security professionals reporting recent layoffs at their company. The workforce reductions are an even more acute pain in cloud security, with 65% of cybersecurity and infosecurity professionals claiming burnout due to skill gaps. Even though a full 95% of IT decision makers feel their team has been negatively impacted by the cloud security skills gap, cloud native adoption continues, and analysts predict that, by 2025, 95% of new applications will be built using cloud native workloads. Zero days like the XZ Backdoor are now a regular occurrence, making detection and response in cloud native environments more important than ever. Signatureless cloud detection RAD Security has introduced multiple new features to help security teams adopt new innovation that will help them address these alarming trends and emerging threats: Amazon EKS Add-on: RAD Security is now available as an Amazon EKS Add-on in the AWS Marketplace for Containers. This means customers can now provision the real-time KSPM and runtime features of the RAD platform directly from EKS, for real-time visibility into their Kubernetes risk as well as signatureless cloud detection and response. Automated AI-Powered Investigation: RAD Security uses LLMs to quickly analyze multiple behavioral detections and determine whether an incident is malicious or benign, including real-time infrastructure and identity context. Findings Centre: All incidents are now available in an easy to navigate console, making detection and investigation easier and quicker. RAD Open Source Catalog: New version details and new open source images have now been added to the RAD Catalog, detailing the changes in behavioral fingerprints over time and bolstering the behavioral workload fingerprint standard. Schedule a meeting with the RAD Security team at the Black Hat Conference this week to discuss improving detection accuracy for attacks in your cloud environments. The team will be exhibiting at booth #219 in Startup City, and at 4:45PM EST they will be presenting at the Innovators and Investors Summit as one of the four finalists in the Startup Spotlight competition.

Inner Range: Critical Infrastructure Security Solutions
Inner Range: Critical Infrastructure Security Solutions

A critical infrastructure security system unifies high-assurance access control, scalable intrusion detection including video verification, perimeter protection, and lone worker safety into a single platform, helping operators of electricity, water, and gas networks protect distributed sites, support regulatory compliance, and maintain the uninterrupted delivery of essential services.  A loss of these services disrupts economies and endangers communities, which makes protecting them a national priority. It's also uniquely difficult, because critical infrastructure is rarely a single site. It's a distributed network of substations, treatment plants, and pipelines, often spread across vast and remote geographies.  Most demanding environments That challenge is now backed by strict regulations across in all sectors including energy, water, and sewerage. Responsible entities must maintain a Critical Infrastructure Risk Management Program that addresses physical security alongside cyber, personnel, and supply chain hazards. For operators, strong physical security systems have become a compliance necessity. For over 38 years, Inner Range has purpose-built security solutions alongside critical infrastructure experts, protecting these vital assets with a multi-layered approach designed for the most demanding environments.  Multi-factor authentication Access control is the foundation. Inner Range ensures only authorized personnel reach a site, using access cards, mobile credentials, PINs, or biometric authentication. Multi-factor authentication combines these methods for stronger protection, while video surveillance, granular scheduling, and real-time logging give operators complete visibility over every access point.  The highest-risk zones demand more. Inner Range's High-Security solution has attained Class 5 accreditation which is the highest classification for intruder alarm systems under the Australian and New Zealand standard AS/NZS 2201.1, built for Zone 3 high security environments. Where traditional alarms focus only on external intruders, Class 5 also defends against insider tampering, through two-factor disarming, faster polling, and end-to-end encryption. Inner Range’s High Security solution has also been deployed to secure defense sites and critical infrastructure throughout Europe, the Middle East and the America’s. Advanced video analytics For operators, this means genuine assurance. Every detector, cable, and message is encrypted, from the edge device right through to the control panel, so the system can be trusted to detect and report a breach even when someone is actively trying to defeat it.  For most sites, the perimeter is the first line of defense. Inner Range provides advanced video analytics for intruder detection that can scale across thousands of locations. Integrations with perimeter devices such as electric fences, beams, and other detection technologies provide the physical additional layers of perimeter security for large areas. Whether the protected area is an open expanse or a small building, smart analytics enable instant, automated threat responses. Distance is no barrier. The Multipath IP Cellular communication platform uses the internet and 4G cellular networks to transmit encrypted alarm messages to monitoring center's, ensuring first responders can act quickly no matter how remote the site.  Video surveillance systems Critical infrastructure work often happens at remote and dangerous sites where, sometimes, people work alone. Protecting these workers is both an operational and a duty-of-care priority. Inner Range supports duress alarms from fixed or mobile systems that integrate with lone worker systems featuring man-down detection and personal tracking. When an alarm is raised, guards and staff are notified instantly through the Communicator messaging application via SMS and email, while Real-Time Location Systems pinpoint personnel on site for a faster response and video surveillance systems provide the eyes and ears on the situation. Specialized key locking A single utility can span hundreds of sites and dozens of subsystems. Inner Range's Enterprise platform unifies access control, video surveillance, building management, intercom, environmental monitoring, and specialized key locking, all into one interface. Operators get a single platform to monitor people, assets, machinery, and site conditions, and to respond to incidents in real time. This centralized oversight is what turns a sprawling, complex estate into something manageable, visible, and defensible.  Unifying access control The real strength is in how the layers work together. Access control, video surveillance, intruder detection, perimeter sensors, facial recognition, location tracking, and lone worker safety operate as one coordinated system through a single pane of glass to detect, locate, and respond to threats automatically. Alerting the right people the moment an incident occurs.  Every deployment is backed by professional support, from software maintenance and cyber security updates to remote assistance and custom integration. With over 130 native integrations and more than 170,000 systems deployed globally, the platform scales from a single facility to a national network.  The infrastructure a nation relies on cannot afford gaps or guesswork. By unifying access control, video surveillance, intrusion detection, perimeter protection, and worker safety into one coordinated platform, Inner Range helps operators protect what matters most, and keep essential services running, from the core to the edge. 

Commvault And Google Threat Intelligence Integration
Commvault And Google Threat Intelligence Integration

Commvault, a pioneer in unified resilience at enterprise scale, announced a new integration with Google Threat Intelligence, Google’s comprehensive threat intelligence platform, that incorporates Google Threat Intelligence data and scanning capabilities into Commvault Threat Scan workflows. Through this collaboration, Commvault can help customers transform global threat intelligence into actionable recovery insights, enabling organizations to identify clean recovery points faster and accelerate recovery following cyberattacks. Recovering data challenge When cyberattacks occur, organizations often face a critical challenge: determining which recovery points are safe to restore. While security teams may quickly identify indicators of compromise (IOCs), recovery teams still need to validate backup data before recovery can begin, delaying recovery efforts when every minute of downtime matters. Google Threat Intelligence Google Threat Intelligence combines Mandiant frontline intelligence, VirusTotal’s crowdsourced intelligence, and Google threat insights gained from protecting billions of users. Integrating Commvault Threat Scan workstreams with Google Threat Intelligence helps customers analyze protected workloads for malware, while also helping organizations identify threats and pinpoint which recovery points are compromised. Commvault Threat Scan customers will also receive actionable threat context from Google Threat Intelligence for threats found in their environment to help with further research and remediation.  Introducing new scanning platforms As part of this release, Commvault is also introducing new scanning capabilities that collect file hashes inline during backup operations. File hashes, like individual fingerprints, provide a fast and easy way to quickly check recovery points against threat intelligence indicators so teams can identify clean files to be used for recovery.  Commvault’s inline inspection capability allows customers to start with rapid threat intelligence validation and selectively perform deeper malware, encryption, and forensic analysis when additional inspection is required. This layered approach helps organizations accelerate recovery decisions while maintaining confidence in the integrity of restored data.  These new threat insights and scanning capabilities strengthen Commvault’s Synthetic Recovery capability, which uses an AI-enabled process to automatically detect threats and surgically remove them during recovery while keeping the “good” data intact. Customers can then make the most complete recovery possible.   Authority comments “Businesses need confidence that the data they’re restoring is clean,” said Pranay Ahlawat, Chief Technology and AI Officer at Commvault. “By combining Threat Scan and inline scanning with Google Threat Intelligence, we’re helping customers validate recovery points faster and accelerate clean recovery when it matters most.”  “Organizations are looking for ways to strengthen cyber resilience while reducing complexity during incident response and recovery,” said Miton Adhikari, Head of Google Security OEM Partnerships. “Through our collaboration with Commvault, customers will be able to apply Google Threat Intelligence within recovery workflows to make faster, more informed recovery decisions and reduce recovery uncertainty.”  This announcement builds upon Commvault’s ongoing collaboration with Google Cloud, including expanded cyber resilience capabilities for Google Cloud environments via Clumio, and support for Google Cloud workloads.  Availability  The Google Threat Intelligence integration, inline scanning capabilities, and associated Threat Scan enhancements are expected to be available in the coming months.

View all

Expert commentary

Louvre Heist Exposes Security Gaps: How Smarter Security Could Have Prevented A $100 Million Theft
Louvre Heist Exposes Security Gaps: How Smarter Security Could Have Prevented A $100 Million Theft

It took just seven minutes to steal more than $100 million in jewels from the Louvre, in an operation so swift and precise it exposed a deeper flaw in how even the most secure institutions protect what matters most. It's reignited global scrutiny of both physical and digital security, revealing how gaps in coordination can turn sophisticated systems into operational failures.  Video intelligence and integrated monitoring Across museums, government facilities, and corporate campuses, video security, analytics, and access control often operate in isolation. In the Louvre’s case, investigators later discovered that the only exterior camera near the Apollo Gallery was pointed west, leaving a point of entry completely unseen. Emerging video intelligence and integrated monitoring technologies show how unified systems could have changed the outcome by preventing the breach altogether or dramatically accelerating the investigation that followed. As threats grow more sophisticated, so must the systems that defend against them. Disciplined system design, measurable performance standards, and continuous validation are what close security gaps. The Louvre incident highlights the industry’s shift toward a new expectation: security systems must not only capture video but understand context, anticipate failure points and maintain reliable performance under real-world conditions. From blind spots to comprehensive awareness Modern systems combine wide dynamic range, infrared and low-light capabilities, and flexible mounting designs Fragmented visibility and weak system governance often create the very conditions that allow sophisticated breaches to occur, where technology can exist, but coordination, oversight, and accountability often fall short. A high-performing perimeter begins with quantifiable coverage targets — field of view, redundancy thresholds, and camera utilization rates — rather than assumptions about what “should” be visible. Modern systems combine wide dynamic range, infrared and low-light capabilities, and flexible mounting designs to ensure 24-hour situational awareness, even in visually complex environments like the Louvre. When combined with redundant recording and cross-camera correlation, these features ensure that even if one device is compromised or obstructed, others maintain continuous visibility. The result is a perimeter with resilient coverage. Systems should be engineered to maintain visibility under failure conditions, measure performance against predefined KPIs, and surface anomalies automatically. Intelligent detection and real-time response Advanced analytics would have recognized the Louvre intrusion sequence as it unfolded. For instance, detecting the window breach, identifying unauthorized movement, and immediately notifying on-site security. What became a seven-minute heist could instead have been a single, automated alert cycle. These systems interpret what’s happening by reading patterns of movement, environmental cues, and timing. They learn to tell the difference between ordinary activity and something that’s off. Here’s how that works in practice: Unauthorized Access Detection: Spots break-ins or forced entry by recognizing sudden motion or environmental changes that don’t match normal use, like a window opening when it shouldn’t. Loitering and Suspicious Behavior Recognition: Flags individuals lingering too long near restricted areas, giving security teams an early signal to check in before a situation escalates. Abnormal Motion Tracking: Picks up on unusual movements like running, erratic pacing, or carrying hidden objects. Object and Intrusion Differentiation: Knows the difference between a person and a passing shadow, cutting down on false alarms triggered by lighting shifts or reflections. Real-Time Alerts and Escalation: Sends instant notifications to control rooms or mobile devices so teams can coordinate a response within seconds. Together, these capabilities shift security from passive recording to active interpretation, enabling faster decision-making that can be measured, refined, and validated over time. Cybersecurity: The overlooked layer of physical security The foundation of strong digital power lies in protecting the technology that protects everything else Investigators later discovered that the Louvre’s security system was protected by the password: “Louvre.” It’s a reminder that even the most sophisticated physical security system can be undone by the weakest digital link. A state-of-the-art camera system or motion sensor grid can underperform if the software is exposed or improperly managed. The foundation of strong digital governance lies in protecting the technology that protects everything else.  Cybersecurity: Defences and system access controls Protection of the security system itself. One of the most fundamental defenses is enforcing robust credentials and multi-factor authentication for every user. Many organizations still rely on static passwords or shared logins for convenience, leaving systems vulnerable to both external intrusion and insider misuse. Multi-factor authentication ensures that even if a password is stolen, attackers can’t gain access without a verified secondary factor. Whether that’s a physical token, mobile verification, or biometric check. For security operations centers, where access often extends across multiple facilities or cloud environments, this extra layer can mean the difference between a minor attempt and a full-scale breach. Vetted system administration management. Another equally important defense is the establishment of tiered administrative privileges. Not every user needs full access to system configurations, live feeds, or stored recordings. Limiting permissions based on role and responsibility not only reduces the potential impact of human error but also minimizes the damage if an account is compromised. Tiered access also introduces operational accountability, ensuring that sensitive functions, such as disabling cameras or altering detection zones, are limited to authorized personnel and subject to approval of workflows. Secure audit trails. Comprehensive audit logging is what brings digital oversight and accountability full circle. Every access attempt, system change, and data export should be recorded, timestamped, and monitored for anomalies. When properly implemented, audit trails not only support investigations after an incident but can also serve as early warning systems for suspicious behavior. Automated alerts tied to unusual access patterns or repeated failed login attempts can prevent breaches before they escalate. Integrating these principles aligns physical security with modern cybersecurity standards, ensuring resilience against both external and insider threats. Future designs for resilient security High-profile cases like this year’s security breach at the Louvre rarely stem from a single flaw. They arise from the absence of integrated oversight and collaboration between physical, digital, and operational layers. The path forward lies in a unified model of security that blends comprehensive coverage, intelligent analytics, and secure system governance into a continuous, adaptive framework. When these elements work together, institutions can evolve from reacting to incidents toward anticipating and preventing them. Again, as threats grow more sophisticated, so must the systems that defend against them. Whether protecting cultural landmarks, critical infrastructure, or enterprise environments, the future of video security must anticipate, protect, and build trust by design.

What’s Behind (Perimeter) Door #1?
What’s Behind (Perimeter) Door #1?

A lot has been said about door security — from reinforced door frames to locking mechanisms to the door construction — all of which is crucial. But what security measures are in place beyond the perimeter door in case the worst happens and it’s somehow breached? Hopefully, many more levels of access control are in place to prevent, or at least slow down, a perpetrator’s ability to compromise protected assets. Additional interior layers Interior security measures must operate as an integrated, multilayered system that eliminates single points of failure. These inner protections safeguard not only the physical infrastructure but also the operational integrity, confidentiality, and availability of the systems housed within. Beyond simply preventing unauthorized individuals from getting inside, the goal is to create a controlled, monitored, and resilient environment in which every movement, action, and access attempt is verified, logged, and, when necessary, challenged. As modern buildings, data centers, and infrastructure sites host critical functions and potentially sensitive intellectual property, these additional interior layers become essential to protecting both organizations and their proprietary assets. Interior security controls One of the most important interior security controls is granular access segmentation One of the most important interior security controls is granular access segmentation. While a perimeter door may verify an individual’s right to enter the building, the interior should treat every room, cage, and corridor as its own security zone. Role-based access control and strict least-privilege principles should limit personnel to only the areas they absolutely require. For example, a network engineer may need access to routing equipment but not storage racks; a janitorial contractor might be allowed into shared hallways but not any equipment rooms at all. These access restrictions should be enforced using intelligent keys, biometric scanners, mantraps, and, at particularly sensitive locations, two-factor authentication. Segmenting access in this way limits the potential damage from a single compromised badge or insider threat and ensures that a single breach does not cascade into a total facility compromise. Low-light and infrared capabilities Biometric authentication within a building adds a layer of confidence beyond perimeter controls. Technologies such as facial identification help prevent the use of stolen, cloned, or borrowed credentials. These systems complement anti-tailgating measures, such as sally ports or mantraps, which ensure that only one authenticated person passes through at a time. Interior surveillance is another essential measure. High-resolution cameras equipped with low-light and infrared capabilities should cover every hallway, door, rack row, and logistical pathway. Camera feeds must be continuously recorded, and retention policies must align with regulatory requirements. Intelligent video analytics, such as motion pattern recognition and heat mapping, enable the detection of atypical behaviors — such as someone lingering near a cage they are not authorized to access or movement at odd hours. Physical tamper-detection mechanisms Cabinet security provides a vital layer of granularity in the access hierarchy, ensuring that even within secure facilities Integrating surveillance with access control systems creates a strong correlation; when someone successfully passes through a secured door and enters a room, the system can track whether the number of people seen on camera matches the number authenticated, and alert security if a discrepancy occurs. However, it is increasingly important that access control not stop at the room level, because the most sensitive assets are often housed in cabinets, racks, or storage units within already-secured spaces. Cabinet security provides a vital layer of granularity in the access hierarchy, ensuring that even within secure facilities, assets remain protected. Physical tamper-detection mechanisms on racks, cable trays, and server chassis add another dimension: they can detect if a panel is opened, a cable is unplugged, or a device is removed without authorization. Secure destruction protocols Another internal measure is the use of secure storage and chain-of-custody procedures for any components that contain intellectual property or personally identifiable information. Hard drives, backup media, and even printouts should be stored in locked cabinets accessible only to people with proper clearance. When decommissioning hardware, secure destruction protocols such as shredding or degaussing should be performed in controlled areas and thoroughly logged. Every movement of sensitive equipment should be traceable, from installation through end-of-life disposal. Such processes reduce the risk of data leakage from improperly discarded or undocumented devices. Consequences of improper behavior Staff should be trained to recognize social engineering attempts, unusual behaviors, and procedural deviations Operational security procedures also contribute significantly to interior protection. Background checks, ongoing employee vetting, and mandatory training ensure that individuals with access to sensitive areas understand their responsibilities and the consequences of improper behavior. Staff should be trained to recognize social engineering attempts, unusual behaviors, and procedural deviations. Maintaining a strict visitor escort policy prevents non-employees from wandering unobserved. All visitors should wear highly visible identification badges and be monitored continuously by authorized personnel. The building's interior should be treated as a controlled environment at all times, not merely a workspace. Continuous auditing and logging form Continuous auditing and logging form another pillar of interior security. Access logs from intelligent keys, biometrics, video, and environmental systems must be stored securely and evaluated regularly for anomalies. Automated systems can flag irregular patterns, such as repeated attempts to access unauthorized areas or entering rooms at odd hours. Manual audits validate that the access control list remains accurate, that no inactive or former employees retain credentials, and that documentation matches reality on the floor. These logs are indispensable during investigations, compliance assessments, and incident response efforts. Interior security controls Security networks should be isolated from the main IT networks to prevent a cyber incident Finally, redundancy and resiliency must be built into interior security controls. Electrical power for access control, intelligent keys, biometrics, and video systems should be backed by secondary sources, generators, or uninterruptible power supplies. Security networks should be isolated from the main IT networks to prevent a cyber incident from disabling physical protections. The goal is to ensure that interior security remains functional even during outages, disasters, or cyber disruptions. Multilayered approach Together, these additional interior measures create a layered defense that makes a secure building, data center, or infrastructure site extremely difficult to compromise. Rather than relying on a single barrier at the entrance, the environment becomes an ecosystem of mutually reinforcing controls — physical, operational, digital, and procedural. This multilayered approach allows structures to maintain high levels of protection even as threats evolve, ensuring that the systems inside remain secure, resilient, and trustworthy.

Staying Secure In Today’s Digital Landscape
Staying Secure In Today’s Digital Landscape

In today’s connected world, attacks are more likely to target digital than physical entry points. From ransomware and firmware tampering to remote hijacking, AI-driven phishing and automated vulnerability discovery, the nature of threats is evolving rapidly, and no industry can afford to neglect them. As our industry has moved from mainly mechanical to increasingly digital solutions, we have long recognized the importance of constantly monitoring and assessing the risks we face. This means not only meeting mandatory regulations but also voluntarily adopting international standards such as ISO 27001, which protects data and systems through a structured and independently audited framework. Today’s fast-changing risk environment is also why the EU introduced the Network and Information Security Directive 2 (NIS2) – to raise the bar for cybersecurity across Europe. But what do measures like NIS2 and the Cyber Resilience Act (CRA) mean in practice? How does the rise of AI fit in? And most importantly, what should our industry be doing to stay secure in such an unpredictable digital landscape? The new regulations Compliance is not just about meeting regulations, it is also a competitive advantage NIS2 is reshaping cybersecurity expectations by setting higher standards to reduce risk, improve transparency, and protect data and services. Alongside it, the CRA introduces mandatory requirements for products with digital components. This makes “secure by design,” regular updates, and compliance checks essential before products can enter the EU market. For companies in our industry, responsibilities now extend well beyond internal systems. Organizations must also ensure that suppliers and service providers comply, with regular risk assessments forming a central part of the process. The consequences of falling short are severe, ranging from significant fines and audits to the potential withdrawal of products from the market. For our customers, the message is clear: security must be built in from the start. Compliance is not just about meeting regulations, it is also a competitive advantage. At ASSA ABLOY Opening Solutions EMEIA, security is part of our DNA.  We embed these standards into everything we do, giving customers solutions they can trust to be compliant and resilient.  The rise of AI  Artificial intelligence is transforming the digital security landscape and it cannot be separated from the regulatory framework shaping our industry. With AI advancing rapidly and new regulations coming into force, we have established a digital compliance framework to stay ahead of the curve and use AI as an enabler for improving security and achieving compliance. On one hand, AI brings powerful benefits, including more intelligent monitoring, faster anomaly detection, and smarter tools for operational efficiency. These capabilities directly support NIS2 and the CRA, particularly in the areas of proactive risk management and incident response.  AI and building cybersecurity standards On the other hand, AI introduces new risks. The attack surface is expanding and threats such as deepfakes and smarter phishing create serious threats that regulators are determined to address. Both NIS2 and the CRA emphasize continuous monitoring, transparency and accountability, principles that must now also guide the responsible use of AI.    At ASSA ABLOY Opening Solutions EMEIA, we see AI not just as a risk to mitigate, but as a capability to strengthen resilience and trust. That is why we are embedding strong governance practices around AI and building cybersecurity standards into every stage of product development. By doing so, we help our customers align with new regulations while ensuring AI serves as a tool for greater security and confidence. Trust and compliance Beyond our own operations, we are also committed to supporting customers on their compliance journey At ASSA ABLOY Opening Solutions EMEIA, we are taking NIS2, the CRA and the rise of cyber-threats seriously, ensuring compliance and enhancing trust with all our customers. We have reinforced supplier oversight, streamlined incident reporting, and embedded cybersecurity into every stage of product development and lifecycle management. Our teams also conduct ongoing risk assessments and post-incident reviews, ensuring that lessons are learned and improvements are made. By taking these steps, we not only meet regulatory requirements but strengthen the resilience of our supply chain and the trust customers place in us. Beyond our own operations, we are also committed to supporting customers on their compliance journey. Initiatives such as our recently released whitepaper “Enhancing Cyber–Physical Resilience with Digital Access Solutions” and a detailed NIS2 whitepaper developed in Germany last year provide clear, practical guidance. By showing what these regulations mean in practice and how intelligent access solutions can directly support compliance, we aim to make the path forward less complex and more achievable for our customers. Looking ahead The days when security threats to businesses and products were only physical are long passed. Today, we find ourselves in a world where the digital realm poses even more serious and constantly evolving challenges. It is therefore crucial that, as an industry, we take the necessary steps to meet the directives of NIS2 and the CRA and also constantly monitor the rise of AI. Only by doing so can we protect our customers, preserve our reputations, and build the trust that defines true leadership in security.

View all

Security beat

HID Highlights Digital Transformation, Futureproofing Among Access Trends
HID Highlights Digital Transformation, Futureproofing Among Access Trends

Multiple technology trends are transforming the physical access control market. There is a fundamental shift away from physical cards and keys toward digital identities — mobile credentials, digital wallets, biometrics, and cloud-native access platforms. These next generation access solutions are radically reshaping how buildings operate, protect staff, and perform functionally. At the same time, AI and analytics solutions are being layered onto these physical access control systems to support predictive threat detection and behavioral insights. Access data itself is becoming an asset for sustainability, space optimization, and smart building initiatives. Risk, impact operations and experience The annual HID Global Security and Identity Trends Report highlights these and other issues The annual HID Global Security and Identity Trends Report highlights these and other issues. The survey cites improving user convenience as a priority for nearly half of organizations, while 41% are focused on simplifying administration, and 28% struggle with system integration. These are not theoretical challenges, they are day‑to‑day friction points that add cost, increase risk, impact operations and experience, and, of course, must be addressed. HID Global’s commercial focus HID Global’s commercial focus is to help organizations digitize their access control — with mobile identities, biometrics, and cloud platforms — and then to use the data to deliver more value. “We are turning access control from an operational cost into a software-driven asset that improves efficiency, supports Environmental, Social, and Governance (ESG) goals and even creates new revenue opportunities,” says Steven Commander, HID Global’s Head of Consultant Relations. The impact of digital transformation Digital transformation is the method of moving access control from hardware and physical credentials Digital transformation is in the process of moving access control from hardware and physical credentials to a software-driven, integrated experience. The transformation strengthens security while also improving user convenience — transforming the “pavement to the desk” journey. HID enables this shift through mobile credentials, biometrics, cloud-native platforms, and solutions that allow third-party applications to run on door hardware. “This helps customers turn access data into operational and commercial outcomes, while also improving the overall user experience,” says Commander.  Digital transformation in access control is not focused on chasing the latest trends. Rather, transformation is about turning software, data and integration into outcomes that matter to customers, says HID. “Security becomes stronger and more adaptive,” says Commander. “Operations become simpler and more cost‑effective. Experiences become seamless and consistent. Sustainability moves from ambition to action. And the financial case becomes clearer as efficiencies are banked and new value streams emerge.” The challenge of futureproofing with long lifecycles Given that physical security technologies will be in place for 15 to 20 years, it is important to plan for how systems can evolve over time. Considering how rapidly security threats, compliance standards, and user expectations change, 15 to 20 years is a long time. The decisions made at the beginning of a system’s lifecycle can either limit flexibility later (which will be costly) or enable long-term adaptability. Support for open standards such as Open Supervised Device Protocol (OSDP) is therefore important Choosing products and platforms that are open, interoperable, and designed for updates can enable future-proof projects. Support for open standards such as Open Supervised Device Protocol (OSDP) is therefore important.  In addition, systems built on open controller platforms — such as Mercury — enable organizations to switch software providers or expand functionality without replacing core door hardware. Architectural openness is key to system lifecycles and maximizing the return on investment (ROI) from a chosen solution. Digital credentials and mobile access Flexibility and upgradeability should also be top of mind when it comes to endpoints like access control readers. While RFID cards are still commonplace, there is a clear trend toward digital credentials and mobile access. Readers that support both allow organizations to transition at their own pace, without committing to a full system overhaul. A long system lifecycle does not mean technology should remain static. Security, particularly cybersecurity, demands more frequent updates. Technologies that support firmware upgrades in the field extend the value of a deployment while helping organizations keep pace with emerging threats. In that sense, lifecycle thinking is not just about longevity — it’s about maintaining resilience and readiness over time. Applying biometrics and mobile identities Biometrics is becoming mainstream as a credential alternative, strengthening security without adding friction Biometrics is becoming mainstream as a credential alternative, strengthening security without adding friction. Many organizations are now deploying biometrics to support fast, seamless access journeys, with adoption already around 39% in access control according to HID’s recent research.  In addition, 80% of organizations surveyed expect to deploy mobile identities within the next five years. Full technology integration enables tap‑to‑access without opening an app; the user journey becomes faster, safer, and more convenient. “It is where the industry is headed and we are at the vanguard of this,” says Commander.    Ongoing challenge of cybersecurity At HID Global, cybersecurity is embedded into everything, from corporate processes and development practices to the solutions they bring to market. “Our approach ensures that customers can strengthen their overall security posture, not only by deploying secure products but by benefitting from HID’s commitment to the highest industry standards,” says Commander. HID holds multiple globally recognized certifications, including ISO 27001, ISO 14298, SOC Type 2, and CSA STAR, which demonstrate their robust information security and cloud security practices. In addition, HID’s SEOS® secure chipset is independently SEAL-certified, providing one of the most advanced levels of protection available on the market today. “Ultimately, this means organizations are not just purchasing isolated secure products; they are implementing solutions developed and delivered within a comprehensive, cybersecure framework,” says Commander. “When deployed according to best practices, HID solutions enable customers to achieve the highest levels of resilience against evolving physical and cyber threats.” Developing green and sustainable solutions A huge amount of waste is generated from the manufacture of plastic RFID access cards Digital credentials align with the sustainable solutions that everyone wants. A huge amount of waste is generated from the manufacture of plastic RFID access cards. Over 550 million access cards are sold annually. This creates 2,700 tons of plastic waste and 11,400 tons of carbon, based on a PVC card weighing 5 grams.  Therefore, digital credentials self-evidently reduce the reliance on plastic cards (helping reduce carbon emissions by up to 75% according to HID’s research), while leveraging access control system data supports energy optimization by shutting down or reducing systems in unused spaces. Energy use and CO₂ emissions can be cut dramatically, showing how access systems can contribute to sustainability goals and green building certification. What is the latest in smart buildings? Smart buildings increasingly rely on mobile access control as the backbone for digital services. Real-time access data enables new services such as automated room bookings, HVAC control, lift/elevator calling, e-bike hiring, and so on. Smart buildings increasingly rely on mobile access control as the backbone for digital services The financial upside is clear; smart, digitally transformed buildings can deliver around 8% higher yields per square foot versus traditional office space. Operational savings accrue from reduced administration, the removal of card production and shipping, and lighter IT support. This creates a value cycle — better experiences drive adoption, adoption fuels monetization, and monetization funds further improvements. Achieving technology impact in the real world One standout project is One Bangkok – a $3.9 billion mixed-use development in Thailand – which demonstrates the scale of what can be achieved when access control data is used for optimization, particularly when it comes to monitoring facilities usage and occupier behaviors. By switching lights off or lowering the temperature in unused rooms, for example, the One Bangkok building demonstrates this potential with a 22% reduction in energy consumption, saving 17,000 MWh and 9,000 tons of CO₂ annually.  Sustainability is a key factor in contributing to how properties are valued. And sustainability extends far beyond digital credentials having a lower environmental impact than plastic cards.  Buildings with recognized sustainability certifications often command rental premiums of around 6%, and three‑quarters of security decision‑makers now consider environmental impact in their procurement assessments.

Executive Protection Demand Spiking After UnitedHealthcare Shooting
Executive Protection Demand Spiking After UnitedHealthcare Shooting

The practice of executive protection changed forever on Dec. 4, 2024, when UnitedHealthcare CEO Brian Thompson was shot outside a Manhattan, New York, hotel. The shocking event raised awareness in board rooms around the world about the need for, and challenges of, executive protection. Questions followed immediately, including why was the high-level executive not protected? Combination of risk and reward  UnitedHealthcare’s stock price has gone down more than 20% since the shooting The event also highlighted what is at stake for companies, extending beyond the safety of executives and impacting many factors, even including a company’s stock price. UnitedHealthcare’s stock price has gone down more than 20% since the shooting, equating to tens of billions of dollars. “Companies are considering the combination of risk and reward like never before when it comes to executive protection,” says Glen Kucera, President of Allied Universal Enhanced Protection Services. “What are the chances this could happen? Before Dec. 4 many thought it was zero. And what are the financial implications for a company if it happens? Executive protection is a small investment to protect against a worst-case scenario.” Evaluation of an executive protection  Before the UnitedHealthcare shooting raised awareness, fewer than 50% of executives had protection. But concerns that previously fell on deaf ears now have the full attention of companies, says Kucera. “Boards of directors are having to figure this out,” he adds. “They may not have executive protection, but now they have to do it.” A threat assessment, conducted by a company such as Allied Universal, provides an independent evaluation of a company’s executive protection needs. The assessment evaluates factors such as an executive’s travel habits, the safety of their home, etc. Does the executive need protection 24/7, or just when they travel into more dangerous areas? Risks increase related to corporate earnings Sometimes, cases increase the need for executive protection, such as an internal threat In assessing threats, security professionals also look beyond the individual to consider the safety of a corporate facility, for example. “Is there a visual deterrent, controlling who comes and goes?” asks Kucera. “If there is good security, it all ties together. We do home assessment, facility assessment, route assessment, and travel assessment as needed.” Sometimes, circumstances increase the need for executive protection, such as an internal threat. Timing is a factor, and risks increase related to corporate earnings releases, new product announcements, and corporate layoffs or consolidation. Monitoring social media tracks shifting threats that impact the need for executive protection. UnitedHealthcare shooting  “He didn’t have it and probably didn’t think he needed it,” comments Kucera about the UnitedHealthcare executive who was gunned down in the streets of New York City. “He was staying at the hotel across the street and was used to walking down the street every day.” “Sometimes executives want to preserve their privacy and be able to walk down the street,” says Kucera. “Getting protection can be seen as a sign of weakness. Some CEOs in the past have said they just didn’t want it.” However, the UnitedHealthcare shooting raised the stakes of the need for more vigilance. “The bottom line is you have to yet beyond objections and make the investment to protect against a worst-case scenario,” says Kucera. Anti-capitalist sentiment in the general population An internal police bulletin warned of an online hit list naming eight executives and their salaries Threats to executives sometimes arise from anti-capitalist sentiment in the general population about perceived inequalities in wealth and power. Executives provide symbolic targets for anyone who fights the system, and social media has amplified the voices of those who oppose capitalism.  For example, a "Most Wanted CEO” card deck seeks to shine a spotlight on "titans of greed." Also, in the aftermath of the UnitedHealthcare shooting, CEO "wanted" posters appeared across New York City, threatening various executives of large companies. An internal police bulletin warned of an online hit list naming eight executives and their salaries. Careful monitoring of social media posts Careful monitoring of social media posts and other sources enables executive protection professionals to analyze data and separate the dangerous threats from the merely negative ones. Sadly, positive support of the UnitedHealthcare shooting was expressed by the 300,000 or so followers of the shooter, who became a celebrity of sorts. A huge outcry of negative sentiment toward the insurance industry led to fear that copycat incidents might occur. “There has been an unprecedented amount of positive support for committing murder,” commented Kucera. Executive protection requests HR executives can be at risk, especially at a time of layoffs or consolidation “Let’s face it, there has been a lot of controversy, from COVID to the Middle East crisis, to the political campaign, and there is negativity on both sides,” says Kucera. “People have opportunities to pick sides, and there is a lot of sentiment going both ways, and there is a small percentage of people who will act aggressively.” Executive protection requests now extend beyond the CEO to include others in the management ranks of companies. Basically, any public-facing executive is at risk, including anyone who makes statements to the press. Human resource (HR) executives can be at risk, especially at a time of layoffs or consolidation.   Private information on the Internet Typically, an executive is assigned a single armed operative for protection. The firearm serves primarily as a visual deterrent that hopefully makes a potential perpetrator think twice. “When they plan an event like this, their expectation is that it will be a soft target,” says Kucera. “If there is an officer, it gives them pause.” Controversial or high-profile CEOs are typically protected 24/7, including when they travel with their family. Adding risks is the fact that private information is now posted on the Internet, including where an executive lives and where their children go to school. Internet monitoring  Internet monitoring also includes the “dark web,” which includes sometimes dangerous information “We offer social media monitoring, and we advise them to be more careful with what they post,” says Kucera. “We monitor reactions to posts including any that might be threatening. We watch social media carefully if a company announces earnings or a change in their service or product offering.” Internet monitoring also includes the “dark web,” which includes sometimes dangerous information that is intentionally hidden and requires specific software, configurations, or authorization to access.   Own layer of protection Public and government officials can also come under fire in a variety of scenarios. FEMA officials faced threats after the recent floods in the Southeast, for example, among other situations where perceived unfair treatment promotes thoughts of retribution.  Although government agencies have their own layer of protection, there are instances when they call on companies such as Allied Universal for additional help.  Ad hoc protection for various executives In the aftermath of the UnitedHealthcare shooting, calls to Allied Universal’s Command Center increased by 600%, reflecting requests for ad hoc protection for various executives.  These requests are in addition to the company’s business providing “embedded” operatives that travel with executives all or some of the time. On that side of the business, requests for services are up probably 300%, says Kucera.

Looking Ahead To ISC West 2025: Q&A With Mary Beth Shaughnessy
Looking Ahead To ISC West 2025: Q&A With Mary Beth Shaughnessy

As the pioneering security event in the United States, ISC West is truly the global focal point for bringing together professionals across the physical and cybersecurity landscape. The event seeks to showcase innovation in security technology, nurture professional development, and explore the security implications of today’s connected world. Future of security  With the growth of cybersecurity programming and the established Cybersecurity & Connected Internet of Things (IoT) pavilion, ISC West is addressing the future of security head-on. “As the lines between the digital and physical worlds blur, collaboration and shared learning among defenders have never been more critical,” says Mary Beth Shaughnessy, Event Vice President at RX USA, who oversees all aspects of the ISC brand. Shaughnessy previews what’s new at ISC West 2025 and shares other insights in our interview. Q: For long-time attendees at ISC West, what will be the biggest surprise at the 2025 show? Shaughnessy: Long-time attendees know to expect top-tier educational content through the SIA Education@ISC West program (produced by the Security Industry Association (SIA)) in addition to cutting-edge security innovations showcased by 700+ exhibitors. New this year is our focus on technology, training, and education around cyber-physical threats. In today’s connected world, physical and cybersecurity defenders must take a unified, holistic approach to protecting their people, assets, and data. ISC West serves as a bridge between those two worlds, helping organizations tackle the complex security landscape. Q: Presenting a high-profile music concert as part of ISC West is a fun value-add for attendees. Describe how this feature has been embraced by longtime attendees, and the plans for 2025. Shaughnessy: We’re thrilled to announce that the legendary Gin Blossoms will headline the ISC West Concert, sponsored by Wavelynx. This tradition began last year and became a celebrated highlight, offering professionals a chance to unwind and connect with colleagues and peers after a productive day on the show floor. When choosing a performer, we focus on acts that resonate across generations, making the experience both entertaining and memorable for our diverse audience. We are excited to continue this fun and exciting event and networking opportunity. Q: In the past, the education program at ISC West has been seen as secondary to the Expo event. How have you sought to increase the profile of the education program, and what new features will attract more attendees in 2025?   Shaughnessy: We’ve expanded the SIA Education@ISC programming from three to four days, now beginning two days before the expo hall opens. These dedicated education days ensure professionals can engage in thoughtful discussions and gain actionable insights without overlapping with the Expo. This year, we’re proud to partner with RSA to introduce a new “IT for Security Professionals” track while also offering our core tracks, including AI & Digital Transformation, Critical Infrastructure & Data Protection, Cybersecurity & IT, InfraGard National Members Alliance @ ISC, and Video Surveillance. We will also be welcoming powerful keynote speakers — Rachel Wilson, Director of Cybersecurity, Morgan Stanley Wealth Management; Will Bernhjelm, Vice President of Security, Mall of America; and Kate Maxwell, Chief Technology Officer, Worldwide Defense & Intelligence, Microsoft. Q: What else is “new” at ISC West in 2025? Shaughnessy: Our educational programming has grown significantly — this year’s SIA Education@ISC program is our most extensive yet, offering more than 115 sessions led by over 200 distinguished experts. With broader and deeper topics, the program emphasizes the critical convergence of cyber and physical security, providing unparalleled insights for today’s security professionals. We are also significantly ramping up our cybersecurity offerings and expect to have more than 50 exhibitors in our Cybersecurity & Connected IoT pavilion with names such as Entrust and Ontic. Q: Networking is a critical aspect of ISC West. How are show organizers working to increase networking opportunities? Shaughnessy: Networking remains a top priority at ISC West, with countless opportunities to build valuable connections. Professionals can join peers at popular spots like The Bridge, The Cyber Hub, and the Career Zone (sponsored by: TEECOM). These spaces offer the chance to learn from industry experts, explore the challenges and innovations shaping the security workforce, and engage in dynamic discussions with peers. Also, returning by popular demand, the ISC West Concert, proudly sponsored by Wavelynx, delivers a vibrant evening of music and networking in a relaxed atmosphere. Together, these experiences ensure networking at ISC West is both impactful and memorable. Q: What is the biggest challenge for organizers of ISC West (and related events), and how are the organizers seeking to address the challenges? Shaughnessy: As with most events, there is a lot of pressure on organizers to ensure there’s “something for everyone,” add meaningful value, and introduce fresh, exciting features. At ISC West, we work to raise the bar each year by expanding our content with more thought pioneers, showcasing a broader range of innovative technologies, and fostering additional networking opportunities. Achieving top-quality results is no small task — it demands careful planning, collaboration, and a dedication to continuous improvement. This means actively listening to the needs of our attendees and exhibitors, staying ahead of industry trends, and ensuring we provide an experience that informs, inspires, and connects the security community.

View all

Case studies

i-PRO Cameras Enhance Barnet Council's CCTV Network
i-PRO Cameras Enhance Barnet Council's CCTV Network

Barnet Council recently undertook a major upgrade of its CCTV infrastructure, partnering with i-PRO and systems integrator DSSL to enhance security, improve urban planning, and drive smart city initiatives. The project was driven by the need to replace an aging and largely non-functional CCTV network while maximising cost efficiency and scalability. With i-PRO’s market-leading edge computing analytics, the council was able to implement a future-proof technology that not only delivers high-quality security and safety but also provides valuable data insights for business and community planning. Future-proof technology The Customer - Barnet London Borough Council, also known as Barnet Council, is the local authority for the London Borough of Barnet in Greater London, England. The borough's major urban settlements are Hendon, Finchley, Golders Green, Friern Barnet, Chipping Barnet, Whetstone, and Edgware; there are also village settlements notably Totteridge and Arkley along with rural areas and countryside part of the Green Belt. As such, the area is geographically diverse and is also the largest London borough by population, with close to 350,000 residents. Business Challenge - The council’s previous CCTV system was in a state of disrepair, with only 15-20 of its 3000 cameras operational across the entire estate. Further to this, the council also looked ahead and made the decision to future-proof existing technology and enhance the capabilities of the system by strategically upgrading to smarter technology, capable of providing deeper insights, finding new efficiencies and generally improving the quality-of-service Barnet Council could provide to constituents and local businesses alike. Prominent AI capability The Solution - To address this, Barnet opted for a phased upgrade and system enhancement using the X-series AI Processing Relay Application, integrating i-PRO cameras with a newly upgraded control room and an enhanced Genetec video management system (VMS). The decision to go with i-PRO was influenced by its prominent AI capability and the substantial cost savings— an estimate of £600,000 over five years — when compared to server-based alternatives. Additionally, the system’s scalability allowed Barnet to expand its camera network without requiring extra server infrastructure, space, or cooling requirements. “A key factor in the decision was the ability of i-PRO cameras to serve as multifunctional sensors, capturing both security footage and valuable urban analytics. The cameras are used for people and vehicle counting, feeding real-time data into Power BI for internal council reports,” states Aaron Stephens, Managing Director at DSSL Systems. Planning future expansions The analytics data has become instrumental in planning future expansions, which will include additional coverage in parks, railway stations, and high-traffic areas. The insights generated help local businesses understand customer footfall, assist in investment decisions for town infrastructure, and support the council in managing traffic and public spaces more efficiently. “Unlike traditional server-based AI technology, which place a heavy burden on network infrastructure, i-PRO cameras process analytics on the edge, transmitting only metadata rather than large video files,” continues Stephens. Video management solution This approach significantly reduces costs while enabling faster and more efficient data analysis. The system was deployed with strict cyber security compliance, in alignment with regulations such as NDAA. Installed by DSSL, the network adheres to stringent firewall policies and integrates seamlessly with the Genetec video management solution, ensuring secure and reliable data management. "The i-PRO forensic capabilities are directly embedded within Genetec Security Center, which enables control room operators to quickly find specific objects or events by filtering through attributes and characteristics captured by the cameras. This speeds up the investigative process and enhances collaboration with the Metropolitan Police," said Benjamin Durrant, Account Executive, Genetec UK & Ireland. Culturally diverse community The deployment included 127 X-series bullet cameras for general safety and monitoring, 10 fisheye cameras in libraries for heat-mapping and people counting, and dual-view 5G re-deployable units for festivals and outdoor events. In Barnet’s unmanned libraries, the cameras also play a critical role in security, with audio detection triggering alerts for disturbances and automated people counting ensuring buildings are empty before lockdown procedures are initiated. Barnet Council’s investment in smart city technology extends beyond security. Re-deployable 5G cameras are being used to track attendance at public events, festivals, and religious gatherings, providing valuable crowd insights for better planning within a culturally diverse community. Return on investment and planning “With an initial £1 million investment, the council has maximized existing infrastructure to expand its data capabilities without significant additional spending. Phase two of the project, which has already been approved, will see the addition of 60-70 new i-PRO bullet cameras,” states Stephens. Beyond security, the smart city and community safety teams are leveraging i-PRO’s capabilities for advanced applications such as people and vehicle analytics. A new trial for automatic number plate recognition (ANPR) is also set to begin, potentially leading to a larger rollout. The council has already started benefiting from i-PRO’s analytics, such as heat-mapping in libraries, but is awaiting governance approval before publicly sharing results. The system complies with data privacy regulations as it does not use facial recognition. Smart city infrastructure Looking to the future, Barnet is exploring additional IoT integrations, including environmental sensors, flood detection, and traffic signal coordination. These efforts will further enhance the council’s smart city infrastructure. “This transparency, combined with i-PRO’s compliance with strict security standards, solidified the council’s trust in the solution. The i-PRO team came in to answer questions from the council and really won them over with their knowledge and honesty,” said Stephens. “Furthermore, i-PRO’s deep integration with the Genetec security solutions portfolio created a seamless ecosystem, reinforcing its market position as a leading smart city solution provider.” Looking to the future As Barnet Council continues its journey towards a fully integrated smart city, the focus remains on future scalability and efficiency gains. The initial return on investment is still being assessed, but the long-term impact is clear: by leveraging real-time data insights, the council can optimize public spending, justify infrastructure investments, and drive smarter, more connected urban development. As more councils recognize the benefits of data-driven planning, projects like Barnet’s will set the standard for the future of smart city technology.

Milestone Systems Modernizing School Security With Arcules VSaaS
Milestone Systems Modernizing School Security With Arcules VSaaS

A leading K-12 school district in the southeastern United States, recognized for its excellence in education, innovation, and community engagement, faced the growing challenge of keeping students and faculty safe while managing a complex video infrastructure. To maintain its high standards for safety and modernization, they turned to Arcules cloud-based Video Surveillance as a Service (VSaaS).  The result is a flexible, scalable foundation that enhances visibility, strengthens cybersecurity, and simplifies daily operations. With hundreds of cameras deployed across multiple campuses, the district now manages its video infrastructure more efficiently than ever before.  Challenge: Growing district, growing demands The district’s on-premises video systems were aging, difficult to maintain, and expensive to upgrade. The addition of planned new schools and expanding facilities created greater coverage requirements that their existing technology could not meet. Administrators needed a secure, cost-efficient solution that could scale quickly, reduce maintenance time, and improve access for security staff across multiple campuses. They wanted a platform that could evolve with their needs, provide reliable visibility during emergencies, and ensure consistent performance with limited local IT resources. The system also had to align with cybersecurity and data privacy requirements while supporting the schools’ long-term digital transformation strategy. By modernizing through the cloud, administrators saw an opportunity to standardize technology across campuses and free IT staff from constant system upkeep. Solution: Modernizing security through the cloud After evaluating several options, the district selected the Arcules cloud-based VSaaS platform to replace its legacy systems. Built on Google Cloud, Arcules provides centralized monitoring, automatic updates, and strong cybersecurity protections. The subscription-based model turned large capital investments into predictable operating costs, allowing the district to expand video coverage as new schools were added, without the expense of physical servers or extensive reconfiguration. The transition also simplified security management, turning what was once a patchwork of local systems into one cohesive, always-up-to-date network, accessible from anywhere. Results: Safer campuses, simplified management The new Arcules VSaaS system gives security teams the ability to monitor all campuses from a single, intuitive interface. Real-time video access improves situational awareness and speeds up investigations. Automated updates reduce IT workload, while the cloud-based structure ensures consistent performance and uptime. With improved accessibility and lower maintenance demands, the district has gained a more reliable and cost-effective solution that supports its goal of creating safer learning environments. This success demonstrates how modern, cloud-connected infrastructure can strengthen campus safety while reducing the IT burden — a vital combination for growing school districts.

Securitas Tailored Intelligence Solutions For Comprehensive Security
Securitas Tailored Intelligence Solutions For Comprehensive Security

The multi-national Retail and Consumer organization was concerned about their lack of awareness regarding potential threats. Securitas tailored solution significantly enhanced their confidence and decision-making capabilities, providing them with a competitive advantage and assurance in critical business decisions. The challenge The multi-national Retail and Consumer organization, with stores in major cities worldwide, including a diverse tenant and occupant environment, was concerned about their lack of awareness regarding potential threats to their people, properties, third parties and brand reputation. They had limited interaction with authorities, and the information they received was often outdated, irrelevant or lacking in analysis needed to guide security decisions effectively. The complex nature of their locations further complicated matters. Limited engagement with authorities meant they may have missed out on crucial information about emerging threats. As a result, decision-makers may have struggled to respond effectively to security challenges, potentially leading to disruptions in operations, safety incidents and other negative impacts. It was vital for thier client to address these challenges promptly and proactively to protect their people, assets and reputation. The solution In response to the challenge, Securitas implemented a tailored intelligence service for thier client, leveraging advanced technology and expert insights. This service included: Real-time monitoring of threats and incidents, operating 24/7 throughout the year. Instant alerting systems to promptly notify responders and decision-makers of early warning indicators and any unfolding incidents. Regular Daily Updates to provide ongoing assurance and maintain situational awareness. Monthly Intelligence Summaries (INTSUMs) offering management a strategic overview of incidents, threats and risks, coupled with in-depth analysis of the security landscape. Additionally, Securitas offered a Request For Intelligence (RFI) service, delivering specific intelligence outputs such as reports and investigations, along with intensified monitoring during major events to ensure comprehensive security coverage. The result This tailored solution has significantly enhanced thier client's confidence and decision-making capabilities, providing them with a competitive advantage and assurance in critical business decisions, while maximizing their security and resilience. Through Securitas Risk Intelligence Services, they received advance notification of potential threats, allowing them to proactively mitigate disruptions, safeguard staff and customers, and minimize reputational impact. In the event of an incident, Securitas facilitated effective incident and crisis management, enabling swift response and recovery. Moreover, understanding of their threats supported comprehensive security risk management, empowering them to address priority risks effectively. By integrating cutting-edge technology and intelligence expertise with Securitas’ six protective services, Securitas delivered an industry-leading intelligence-led security service. With improved security and reduced business interruptions, thier client could focus on core operations, enjoying added value and peace of mind.

Securitas Protects Executive From Serious Threats
Securitas Protects Executive From Serious Threats

Securitas discovered serious threats aimed at a top executive of a global corporation, both in their professional and personal life. Addressing these challenges requires urgent and proactive measures to safeguard both the executive and the organization from harm. The challenge Securitas discovered serious threats aimed at a top executive of a global corporation, both in their professional and personal life. These threats put their work and home life in jeopardy. What's more, Securitas found signs that the culprits were planning to take action during a crucial business period to cause maximum disruption. Adding to the complexity, Securitas uncovered an insider threat perspective, meaning the culprits could exploit someone with insider knowledge and access to harm the executive and the entire organization. The threats targeting the executive client posed serious risks - safety concerns for themselves and loved ones, damage to their reputation and that of the organization, and disruption of crucial business operations and a major announcement. Addressing these challenges requires urgent and proactive measures to safeguard both the executive and the organization from harm. The solution Securitas swiftly notified their client and promptly launched an extensive assessment into the threat. Additionally, Securitas provided Protective Intelligence services, conducting a comprehensive defensive screening assessment for the Executive, identifying  potential vulnerabilities that could be exploited by threat actors. Utilizing the insights gleaned from these investigations, Securitas collaborated with their protective services to fortify the principal's safety and safeguard the organization from disruption. The measures included: Bolstering security protocols to safeguard the Executive's professional and personal information. Implementing continuous monitoring of the Executive's online presence and activities for any red flags. Strengthening executive protection measures, such as providing escorts and regular check-ins. Offering lone worker solutions equipped with alarm and tracking functionalities. Enhancing operational security by disseminating threat briefings, including indicators and warnings, to relevant personnel. Coordinating with authorities as necessary to address the threat effectively. Conducting awareness communications to educate key stakeholders on personal threats, workplace violence and insider threats and risks. The result Through the effective integration of intelligence-driven security measures and Securitas' renowned protective services, the collaborative efforts with this client yielded profound results, offering unparalleled protection to the Executive during a critical business phase. This approach not only ensured the safety and well-being of the principal but also instilled a sense of reassurance and confidence throughout the organization. By leveraging cutting-edge intelligence capabilities, Securitas proactively identified and mitigated  potential threats, thereby safeguarding the Executive's interests and preserving operational continuity during a pivotal business period. This comprehensive strategy not only mitigated immediate threats and associated risks but also established a robust framework for ongoing security resilience. In essence, the successful implementation of their solution epitomizes the transformative impact of intelligence-led security, fostering a culture of proactive risk management and instilling a sense of confidence in their client's ability to navigate challenges effectively.

View all

Round table discussion

What Is The Next Generation Of Physical Security Solutions?
What Is The Next Generation Of Physical Security Solutions?

Next-generation (Next-Gen) technologies are products, services, or infrastructures that represent a significant leap forward rather than a small, incremental update. In the physical security industry, NextGen products are those that enable disruptive change, breakthrough performance, and a fundamental change that renders previous products obsolete. We asked our Expert Panel Roundtable: What is the next generation of physical security solutions, and how will they change the industry?

What Will Be The Biggest Surprise For Security In The Year Ahead?
What Will Be The Biggest Surprise For Security In The Year Ahead?

When working in the technology marketplace, it’s always good to expect the unexpected. Increasingly, readiness to anticipate and embrace uncertainty is the baseline for survival in the world of technology. If we in the physical security industry know anything, it is that technology is in a state of perpetual disruption. Therefore, looking ahead to the next 12 months, surprises are inevitable. We turn to our Expert Panel Roundtable for guidance, asking our panelists: What will be the biggest surprise for security in the year ahead?

What Is the Most Overlooked Factor When Installing Security Systems?
What Is the Most Overlooked Factor When Installing Security Systems?

Installing physical security systems requires integrating diverse technologies (e.g., cameras, access control, alarms) that often use different protocols and must be adapted to a building's unique physical layout and legacy infrastructure.  Specialized technical expertise is required for seamless networking and proper configuration. Hopefully, no important factors are overlooked in the installation process. We asked our Expert Panel Roundtable: What is the most overlooked factor when installing physical security systems?

View all

Products

Software House GSTAR016 Cyber-Hardened Network Door Controller

Software House GSTAR016 Cyber-Hardened Network Door Controller

Software House GSTAR-ACM Cyber-Hardened Network Door Controller

Software House GSTAR-ACM Cyber-Hardened Network Door Controller

Software House GSTAR-GCM Cyber-Hardened Network Door Controller

Software House GSTAR-GCM Cyber-Hardened Network Door Controller

Illustra Flex Gen4 AI-Powered Dual Sensor Multi-Directional Camera

Illustra Flex Gen4 AI-Powered Dual Sensor Multi-Directional Camera

Software House GSTAR004-RM IP Edge Access Door Controller

Software House GSTAR004-RM IP Edge Access Door Controller

exacqVision IP04-24T-R2A IP 2U Recorder

exacqVision IP04-24T-R2A IP 2U Recorder

Software House GSTAR004-MB IP Edge Access Door Controller

Software House GSTAR004-MB IP Edge Access Door Controller

exacqVision IP08-12T-2AW IP 2U Rackmount Network Video Recorder

exacqVision IP08-12T-2AW IP 2U Rackmount Network Video Recorder

exacqVision C-Series Pro Live Video Monitoring Station

exacqVision C-Series Pro Live Video Monitoring Station

exacqVision C-Series Standard Live Video Monitoring Station

exacqVision C-Series Standard Live Video Monitoring Station

Software House USTAR-GCM Network-Ready Door Controller

Software House USTAR-GCM Network-Ready Door Controller

exacqVision IP08-08T-2AW IP 2U Rackmount Network Video Recorder

exacqVision IP08-08T-2AW IP 2U Rackmount Network Video Recorder

exacqVision IP04-12T-Q IP Desktop Recorder

exacqVision IP04-12T-Q IP Desktop Recorder

exacqVision IP04-12T-R2A IP 2U Recorder

exacqVision IP04-12T-R2A IP 2U Recorder

exacqVision IP04-30T-R2A IP 2U Recorder

exacqVision IP04-30T-R2A IP 2U Recorder

View all

White papers

Technology's Role In Securing Banks And Financial Institutions

Technology's Role In Securing Banks And Financial Institutions

Download
Security Technologies Promote Real-Time Awareness In K-12 Schools

Security Technologies Promote Real-Time Awareness In K-12 Schools

Download
An End User's Guide To Physical Security For Data Centers

An End User's Guide To Physical Security For Data Centers

Download
Hospital Safety In A High Risk World

Hospital Safety In A High Risk World

Download
Unlocking Smarter Decisions With Key Control

Unlocking Smarter Decisions With Key Control

Download
Aligning Physical And Cyber Defence For Total Protection

Aligning Physical And Cyber Defence For Total Protection

Download
Combining Security And Networking Technologies For A Unified Solution

Combining Security And Networking Technologies For A Unified Solution

Download
System Design Considerations To Optimize Physical Access Control

System Design Considerations To Optimize Physical Access Control

Download
Milestone Cloud Deployment Guide

Milestone Cloud Deployment Guide

Download
Maximizing Enterprise Security Systems In The Cloud

Maximizing Enterprise Security Systems In The Cloud

Download
The 4 Pillars Of AI In Managing High-Stakes Critical Events

The 4 Pillars Of AI In Managing High-Stakes Critical Events

Download
The Power Of Integration In Physical Security Systems

The Power Of Integration In Physical Security Systems

Download
A Modern Guide To Data Loss Prevention

A Modern Guide To Data Loss Prevention

Download
Palm Vein Recognition

Palm Vein Recognition

Download
Cybersecurity For Enterprise: The Essential Guide To Protecting Your Business

Cybersecurity For Enterprise: The Essential Guide To Protecting Your Business

Download
View all

Videos

Insta DomainLink Secret™

Insta DomainLink Secret™

The Future Is To Make At Honeywell Beyond: The Next Normal

The Future Is To Make At Honeywell Beyond: The Next Normal

Creating A Digital Ecosystem To Enhance Hybrid Working - Webinar

Creating A Digital Ecosystem To Enhance Hybrid Working - Webinar

DNAKE Explores Facial Recognition On An Android-Based Door Phone S615

DNAKE Explores Facial Recognition On An Android-Based Door Phone S615

View more

Cyber security: Manufacturers & Suppliers

  • exacqVision Cyber security
  • Seagate Cyber security
  • Hikvision Cyber security
  • Software House Cyber security
  • Honeywell Security Cyber security
  • Vicon Cyber security
  • WD Cyber security
  • Dahua Technology Cyber security

Follow us

Sections Products Video Surveillance Access Control Intruder Alarms Companies News Insights Case studies Markets Events White papers Videos AI special report Cybersecurity special report
Topics Artificial intelligence (AI) Mobile access Healthcare security Cyber security Counter terror Robotics Thermal imaging Intrusion detection Body worn video cameras
About us Advertise About us 10 guiding principles of editorial content FAQs eNewsletters Sitemap Terms & conditions Privacy policy and cookie policy Californian Residents (CCPA)
  1. Home
  2. Topics
  3. Cyber security
About this page

In-depth coverage of Cyber security, featuring latest news and company announcements, products and solutions and case studies. Read insightful analysis of product, technology and business trends related to Cyber security from security industry experts and thought leaders.

Subscribe to our Newsletter

Stay updated with the latest trends and technologies in the security industry
Sign Up

DMA

SecurityInformed.com - Making The World A Safer Place
Copyright © Notting Hill Media Inc. 2000 - 2026, all rights reserved

Our other sites:
SourceSecurity.com | TheBigRedGuide.com | HVACinformed.com | MaritimeInformed.com | ElectricalsInformed.com

Subscribe to our Newsletter


You might also like
Technology's Role In Securing Banks And Financial Institutions
Technology's Role In Securing Banks And Financial Institutions
Integrated Systems Enable Critical And Compliant Security For Transportation
Integrated Systems Enable Critical And Compliant Security For Transportation
Modernizing Physical Access Control
Modernizing Physical Access Control
Minimizing Storage, Maximizing Focus
Minimizing Storage, Maximizing Focus
Sign up now for full access to SecurityInformed.com content
Download Datasheet
Download PDF Version
Download SecurityInformed.com product tech spec