Security service
Ranger Fire and Security has become one of the first businesses in the fire and security industry to offer fully equalised private medical insurance (PMI) and life assurance benefits. It means that every employee across Ranger, regardless of role, seniority or which business within the Group they work for, will now receive the same wide-ranging and comprehensive package of workplace benefits. The move, which forms part of a wider set of workplace initiatives, breaks from an industry standard in...
Thales announces an expanded collaboration with Google Cloud to help enterprises address emerging security and governance challenges associated with agentic AI, bringing integrated protection, visibility, and policy enforcement to AI-driven workflows on Google Cloud. The integration of Thales AI Security Fabric with Google Cloud Gemini Enterprise helps organizations apply security, governance, and visibility across interactions among users, agents, models, and tools in real time. Next generati...
Camelot Secure and its parent company, DigiFlight Inc., announced Tuesday a partnership with the Baltimore Ravens, becoming the team’s “Proud Cyber Resilience Partner” and bringing decades of experience supporting national security and mission-critical operations to one of the National Football League’s (NFL’s) most recognized franchises. The partnership connects the two worlds of professional football and cybersecurity, where preparation, resilience and performanc...
Euralarm has published a new guidance document, Guideline on Disposal of Fire-Fighting Foam Media (UK & Europe), providing practical recommendations for the safe, compliant and environmentally responsible handling and disposal of fire-fighting foam media. The publication reflects the rapidly evolving regulatory landscape surrounding PFAS-containing firefighting foams and supports organizations in adopting best practice throughout the disposal process. The guidance has been developed for man...
Teledyne FLIR, part of Teledyne Technologies Incorporated, announces the launch of the Si2a-LD and Si2a-Pro, completing the new Si2a-Series portfolio of fixed-mount acoustic imaging solutions for continuous condition monitoring in industrial and utility environments. Designed to provide always-on visibility into asset health, the Si2a-LD and Si2a-Pro help organizations move beyond periodic inspections by continuously monitoring critical systems for developing issues. Integrated with the FLIR As...
Nutanix, a hybrid cloud pioneer and AI platform company, announces its acquisition of Ryax Technologies (Ryax), an AI-driven compute orchestration and management platform company based in France. The acquisition will accelerate Nutanix’s strategy to empower enterprises to build, run, and govern agentic AI anywhere by integrating the Ryax platform’s advanced GPU utilization and smart scheduling capabilities directly into Nutanix Kubernetes Platform (NKP) and Nutanix Enterprise AI (NAI...
News
HackerOne, a global pioneer in Continuous Threat Exposure Management (CTEM), announces the upcoming integration of Anthropic’s Claude Mythos across select H1 Platform products: H1 Code Security Audit and H1 Code. The integration will make frontier cyber AI available in existing security workflows, connecting agentic vulnerability discovery with validation, prioritisation, and remediation. Enterprises are identifying possible exposures faster than ever, yet falling further behind on validating true exposure and making fixes. Frontier AI is widening that gap in both directions. According to H1 Platform data, critical vulnerability mean time to remediate (MTTR) improved by more than 50% over the past 12 months. Existing engineering workflows Over the same period, the unresolved critical backlog grew 29x. As frontier cyber AI increases the speed and depth of discovery, organizations need a scalable way to validate and prioritise what it finds. The H1 Platform harness will be available with Mythos through discovery of source code vulnerabilities with controls designed to improve coverage, validate model outputs, and bring validated exposures into existing engineering workflows. "Frontier cyber AI models can do one of two things to a security team," said Nidhi Aggarwal, Chief Product Officer at HackerOne. "It can hand them a longer list, or it can hand them a list they can act on. Which one depends entirely on what sits between the model and the security team. A harness helps turn model output into a validated exposure a security team can act on. We ran and validated the H1 Platform harness for ourselves before any customer saw it." Surface complex vulnerabilities On the discovery side, H1 Code Security Audit scans full repositories to surface complex vulnerabilities, including compositional vulnerabilities that can span years of commits and multiple authors, and H1 Code reviews pull requests. “Attackers are already using frontier AI to find and exploit vulnerabilities faster than humans alone can respond,” said Kara Sprague, Chief Executive Officer at HackerOne. “Defenders need access to advanced cyber-capable models, with people accountable for the decisions those models inform and the actions those models take. Finding vulnerabilities faster matters only if organizations can validate, prioritise, and act on them.” Complementary layers of continuous security Frontier cyber AI is one layer of coverage. An elite community of security researchers provides another, bringing creativity, contextual understanding, and real-world adversarial expertise to complex attack chains, business logic flaws, and novel exploitation paths. Together, frontier cyber AI and human expertise provide complementary layers of continuous security. HackerOne does not use or permit use of confidential researcher submissions or customer vulnerability data to train, fine-tune, or otherwise improve generative AI models. The select H1 Platform offerings will soon be available with Mythos. Users can also read more about what HackerOne found running Mythos on its systems as part of Project Glasswing and learn more about the H1 Platform.
Colt Technology Services (Colt), the global digital infrastructure company and an Oracle partner, today announced it will offer connectivity to Oracle EU Sovereign Cloud through Oracle Cloud Infrastructure (OCI) FastConnect in the Frankfurt and Madrid regions. Oracle customers can use Oracle Cloud locally to innovate faster, scale with confidence and drive business growth. As demand for digital sovereignty accelerates across Europe, enterprises and public sector organizations are seeking cloud architectures that deliver performance, resilience and regulatory compliance. Meeting sovereignty requirements By extending its connectivity to Oracle EU Sovereign Cloud, Colt is helping organizations accelerate cloud adoption while meeting sovereignty requirements. Through Colt’s high performance, low latency Dedicated Cloud Access services and OCI FastConnect, customers can privately connect to Oracle EU Sovereign Cloud, bypassing the public internet and supporting multi region architectures for business continuity and disaster recovery. Colt is already an established OCI FastConnect partner in Europe, the Middle East, Asia, and the United States. Peter Coppens, VP – Product, Colt Technology Services said, “Data sovereignty is a priority for businesses in Europe. Together, Colt and Oracle are helping give organizations a resilient, future ready approach to sovereign cloud in the region while balancing regulatory assurance with real world performance.” High-performance connectivity options With OCI, customers benefit from best-in-class security, consistent high performance and global pricing, and the tools and expertise needed to bring enterprise workloads to the cloud quickly and efficiently. OCI’s extensive ecosystem of more than 110 OCI FastConnect global and regional partners provide dedicated connectivity to Oracle Cloud Regions and services, giving organizations flexible, high-performance connectivity options anywhere in the world. OCI is designed to run any application faster, and more securely, for less. As the only hyperscaler capable of delivering 200+ AI and cloud services at the edge, in a customer’s datacentre, across clouds, or in the public cloud, OCI also helps address a variety of data privacy, sovereign AI, and low latency requirements. In addition, Oracle’s distributed cloud delivers the benefits of the cloud with greater control and flexibility while also providing the consistent performance, SLAs, and global pricing for which OCI has become known.
Riverbed, the pioneer in AIOps for observability, announced new Riverbed intelligent network observability solutions that combine 360-degree network visibility with agentic AI to help network operations teams accelerate troubleshooting, identify root causes, predict emerging issues and increasingly prevent disruptions before they impact users. About Riverbed Network 360 The new Riverbed Network 360 offerings natively integrate the powerful agentic AI capabilities of Riverbed IQ and Q into Riverbed’s AppResponse and NetProfiler solutions while extending network visibility across remote users, Zero Trust and public cloud environments with NPM+. Together, these new offerings unify deep network evidence, expanded visibility across the enterprise, and causal, predictive, generative and agentic AI, to help NetOps teams prevent disruption. Integration benefit “For decades, network monitoring tools have surfaced the evidence, but network professionals have still had to manually connect the dots,” said Richard Tworek, Chief Technology Officer, at Riverbed. “That model can no longer keep pace as applications span data centers, public clouds and SaaS environments, employees work from anywhere, and Zero Trust architectures add new visibility gaps across networks IT may not own or control." "With Network 360, Riverbed is bringing agentic AI directly into network operations by turning deep network evidence from hybrid environments into contextual insight, faster root-cause identification, predictive awareness of emerging issues and recommended next actions. This is how we help NetOps teams move from tedious, reactive investigations that once took hours or days to guided, AI-driven workflows that accelerate resolution today and lay the foundation for increasingly autonomous action before disruptions impact users or the business.” Powerful agentic AI for network operations Riverbed NPM 360 addresses these challenges. Riverbed IQ is the intelligence layer behind NPM 360, applying causal, predictive, generative and agentic AI across connected operational data. It helps network teams correlate evidence, identify likely causes, anticipate emerging issues and determine appropriate actions. Riverbed Q provides a conversational, natural language interface to the Riverbed intelligence layer, allowing network professionals to accelerate investigations without navigating multiple dashboards, queries and tools. Together, IQ and Q analyze and correlate network evidence, recommend next steps and allow practitioners to drill into underlying flows, packets and other connected evidence when needed. Natively bringing AI to AppResponse and NetProfiler Riverbed AppResponse and Riverbed NetProfiler provide two foundational sources of network intelligence. AppResponse delivers full-fidelity packet capture and analysis, while NetProfiler provides enterprise-scale flow monitoring and analytics across complex network environments. With the new NPM 360 offering, Riverbed IQ and Riverbed Q become native capabilities within the AppResponse and NetProfiler intelligent network observability experience. This brings causal, predictive, generative and agentic AI directly into the products network teams already rely on to monitor, troubleshoot and optimize performance. Riverbed NPM+ extends visibility across remote users, Zero Trust architectures, data centers and cloud environments, significantly expanding the breadth and depth of network evidence available to NetOps teams. By unifying packet, flow and endpoint-derived network intelligence with AI-powered analysis and guidance, Riverbed NPM 360 helps IT teams rapidly isolate the source of performance issues, understand business and user impact, predict emerging risks, and accelerate resolution. Riverbed NPM 360 includes: Riverbed IQ: SaaS-based AI-driven intelligence and automation layer that pinpoints issues and speeds resolution—no additional infrastructure needed. Riverbed Q: A generative AI chat or conversational assistant that helps IT teams quickly investigate performance issues, uncover insights and take informed action using natural-language queries. NPM+: Endpoint-based network observability that extends visibility across remote users, Zero Trust, public cloud, and networks the enterprise does not own or control. Professional Services: Helps customers design, deploy and operationalize their Network 360 environment, together with AppResponse or NetProfiler, to deliver the right network and data coverage, workflows and operational outcomes from day one. Riverbed IQ Intelligence layer “Riverbed is in the upper echelon of companies redefining network operations through the application of AI,” said Whit Walters, Field CTO & AI Category Lead, GigaOm. “What makes Riverbed’s approach particularly compelling is that this intelligence isn’t isolated to network operations. The same Riverbed IQ intelligence layer extends across Riverbed Aternity and the digital employee experience. Combining network and employee experience intelligence through a common AI foundation creates a powerful opportunity for enterprises to transform IT operations.” 2026 GigaOm Radar Report Riverbed was recently recognized as a Leader and Fast Mover in the 2026 GigaOm Radar Report for Network Observability, underscoring the company's continued innovation and market leadership in intelligent observability solutions. The recognition highlights Riverbed's ability to deliver full-fidelity visibility, unified data, and AI-driven intelligence through its Network Observability suite, enabling organizations to gain deeper insights across increasingly complex enterprise networks and accelerate operational efficiency. Availability and additional resources NPM 360 is available immediately and is initially offered at no premium to current AppResponse and NetProfiler pricing, giving customers expanded AI and network visibility capabilities without increasing the price of the underlying offering.
Fime announces the acquisition of Red Alert Labs, taking a further step in its strategy to become a global Digital Trust Provider. The acquisition adds cybersecurity evaluation, certification expertise and compliance automation to Fime’s established capabilities across payments, smart mobility and digital identity. Trust infrastructure As digital ecosystems become increasingly interconnected, trust can no longer be addressed in silos. Payments, digital identities, connected devices and emerging AI-enabled services increasingly rely on the same foundations: security, interoperability, compliance and the ability to demonstrate that technologies continue to operate as intended. Fime’s ambition is to provide the trust infrastructure that enables these ecosystems to scale, combining expertise, testing and assurance platforms, independent evaluation and certification capabilities across the lifecycle of digital products and services. Red Alert Labs strengthens this strategy with deep cybersecurity expertise and its CyberPass compliance automation platform. Alongside accredited security evaluation, CyberPass enables manufacturers to assess and continuously improve their compliance readiness, while helping schemes and certification ecosystems manage and industrialize assessment and certification processes at scale. This capability is increasingly critical as new cybersecurity regulations come into force. From 11 September 2026, Cyber Resilience Act (CRA) reporting obligations apply, with the Act’s main obligations taking effect from 11 December 2027. Manufacturers will increasingly need to demonstrate cybersecurity compliance not simply at launch, but throughout the lifecycle of their products. Together, Fime and Red Alert Labs will support customers from advisory and security by design through implementation, testing, evaluation and certification to continuous assurance. This extends Fime’s established approach in payments and digital identity into cybersecurity, enabling customers to bring trusted technologies to market faster and maintain trust as products, regulations and threats evolve. Expert insights “Our ambition is to make Fime a global Digital Trust Provider,” said Lionel Grosclaude, CEO of Fime. “For more than three decades, we have helped build trust in payments, and we have extended that expertise into digital identity and smart mobility. Cybersecurity is the next natural step. These markets are converging: customers increasingly need to prove not only that a product works and interoperates, but that it is secure, compliant and remains trustworthy throughout its lifecycle. Red Alert Labs brings us world-class cybersecurity expertise together with a platform approach that will help us deliver that trust at scale.” “Red Alert Labs was built around the idea that cybersecurity assurance needs to become scalable and continuous,” said Roland Atoui, founder and Managing Director of Red Alert Labs. “Joining Fime gives us the opportunity to combine our accredited evaluation expertise and CyberPass platform with Fime’s global testing, certification and digital trust capabilities. Together, we can help manufacturers continuously assess their compliance readiness, help schemes industrialize certification, and extend cybersecurity trust into digital identity, wallets and emerging agentic ecosystems.” Future of Red Alert Labs Red Alert Labs will continue to operate as an accredited and independent cybersecurity laboratory, preserving the accreditations and technical autonomy that underpin its reputation. Under the identity Red Alert Labs, cybersecurity by Fime, it will combine its established security expertise and technology with Fime’s global capabilities and reach. Roland Atoui will continue to lead Red Alert Labs, with an expanded scope encompassing Fime’s security activities globally,
As autonomous agents make the digital world more dangerous, Rubrik, the Security and AI Operations Company, unveils Rubrik Code Guardian, a custom Claude Mythos 5 harness that red-teams customers’ code based on an air-gapped copy of their repository. Bringing cyber resilience up to speed of AI “Rubrik is one of the partners we are working with to put Claude Mythos 5's cyber capabilities in defenders' hands, so they can find and validate attack paths before attackers do," said Michael Moore, Cybersecurity lead at Anthropic. “Rubrik will use the model to test code faster and at far greater scale, and to bring cyber resilience up to the speed of AI.” The new service uncovers and prioritizes the multi-step vulnerability chains an attacker would actually exploit, validates each for exploitability, and turns confirmed critical issues into tracked remediation. Frontier AI “Frontier models are advancing at a fast pace. In the wrong hands, these models can be used to discover, chain, and exploit vulnerabilities at machine speed,” said Arvind Nithrakashyap, Co-Founder and Chief Technology Officer at Rubrik. “To move just as fast, we are using frontier AI to scale vulnerability detection faster than our traditional code scanning tools. We took Anthropic’s powerful model and built a Rubrik software harness to test on our code. We are using that experience and success now to give customers access to the harness, with a secure, isolated environment, which means we can run analysis of their code away from live repository and production systems.” The next milestone in agentic cyber resilience Rubrik Code Guardian makes critical enterprise systems more resilient to even the most advanced frontier AI-powered attacks. The product embeds and harnesses Anthropic’s Claude Mythos 5 into a service that operates directly on air-gapped copies of source code, enabling frontier model level vulnerability analysis while minimizing risk and impact on production environments. Rubrik Code Guardian proactively secures the core intellectual property that powers modern businesses: Red-Team Customer Code, Safely: Runs Claude Mythos 5 through Rubrik’s custom security harness against a secure clone of the immutable, air-gapped copy never against the live repository or production environment. Attack Chains, Not Alerts: Reasons across files, services, authentication patterns, and cloud boundaries to surface previously undetectable vulnerabilities, even “chained vulnerabilities” that advanced AI attacks now exploit. Validated Findings, Prioritized by Business Criticality: Validates attack chains for real exploitability before surfacing them and prioritizes findings by exploitability, blast radius, and business criticality. Accelerated Remediation: Pushes confirmed critical issues into developer workflows through Jira or GitHub issues with file-level remediation guidance. Built-In Code Resilience: Maintains recovery workflows so organizations can restore a known-good codebase if a security event or bad build occurs. Rubrik Code Guardian is currently accepting select design partners for private preview.
As AI agents take on more of the work inside the enterprise, the biggest barrier to adoption isn’t capability – it's confidence. Customers need to trust that AI is secure, governed, and worth the cost before they let it run at scale. Today, Cisco closes that gap through new Splunk innovations, giving customers the ability to safely and cost-efficiently scale AI wherever their data already lives. This includes an expanded partnership with NVIDIA to bring Splunk AI to on-premises customers. “One of the biggest roadblocks to enterprise AI today is that it’s too hard to deploy,” said Jeetu Patel, President and Chief Product Officer, Cisco. “Customers want to know: Can I trust it to do the job? Can I afford it? And, most importantly, can I secure it? By running Splunk AI on the infrastructure customers already trust, they can move faster to put AI to work in their business with confidence and control.” Self-managed Splunk AI, accelerated by NVIDIA For customers who can’t move sensitive data to the cloud, Splunk AI has remained out of reach – until now. Cisco and NVIDIA are expanding their partnership to bring self-managed AI directly to Splunk Enterprise customers, across their own on-premises, private cloud, and air-gapped environments. Cisco Secure AI Factory with NVIDIA is the reference architecture that brings the full AI stack together, built from Cisco AI PODs. The newest of these configurations, Cisco AI POD for Splunk, brings Splunk AI to on-premises customers with new AI runtime software, Cisco infrastructure, NVIDIA accelerated computing, and Kubernetes-based architecture – pre-validated and optimized for Splunk AI workloads. Cisco AI POD for Splunk is available today. For customers who have their own infrastructure, partners like bitsIO, Wipro, and World Wide Technology are ready on day one to help customers stand it up. Splunk AI Assistant (available now) and Agent Launchpad (coming later this year) run on this layer. Together, they bring ad-hoc agentic investigations and custom agent building for a broad variety of use cases including the agentic SOC to teams that run Splunk in their own data centers. Customers can also self-host a selection of open and proprietary generative AI models for their Splunk Enterprise workloads, including the Cisco Deep Time Series Model, Google Gemma 4, and OpenAI GPT-OSS 20B, with NVIDIA Nemotron open models in the coming months. Teams can use the model best suited for the job without sending data outside their environment. “Enterprises need to bring AI where their data lives, especially when security and sovereignty requirements require critical workloads to stay on-premises,” said Justin Boitano, Vice President of Enterprise AI at NVIDIA. “By enabling Splunk AI workloads to run with NVIDIA Nemotron open models on NVIDIA accelerated computing, Cisco and NVIDIA are working together to bring AI agents directly to Splunk and giving organizations a high-performance, full-stack foundation for agentic security operations wherever they run their infrastructure.” Observe agent performance and track token spend in one view New observability innovations give Cisco customers one full-stack view into how their AI agents are actually performing. AI agents behave in ways that the people running them can’t always predict, running up costs that stay invisible until the invoice lands. Splunk Agent Observability, with its new Tokenomics capabilities, is closing that visibility gap and giving organizations a real-time view into agent performance and AI token spend. This enables teams to see exactly where and why AI costs accumulate before they become a budget problem. Splunk Agent Observability, announced initially as an on-premises offering, is now available in Splunk Observability Cloud and in Cisco Cloud Control, extending visibility to customers working across the Cisco portfolio. It evaluates agent and model behavior, observes performance across the AI stack, and applies runtime guardrails that block inaccurate or unsafe actions, like hallucinations or leaking sensitive data. As part of Splunk Agent Observability, the new Tokenomics solution extends that visibility to spend – tracking and attributing token expenditure across AI agents and employees’ use of coding agents like Claude Code, Codex, and Cursor. It will also forecast consumption patterns to project where spend is headed before a billing period ends, using the Cisco Deep Time Series Model. These insights help organizations to operationalize a tokenomics framework and tie AI spend to business outcomes. Cisco is also helping organizations strengthen their infrastructure resilience by minimizing visibility gaps and cost barriers that hinder autonomous troubleshooting. The Observability Studio enables teams to ensure new applications are “born observable,” measurable and production-ready from the start. The new Network Intelligence App brings Cisco network topology, device health, and events into Splunk, so network teams can trace an alert straight to the device behind it and the network around it. Also, the new editions for Observability Cloud – Essentials and Premier – simplify how customers buy and expand observability across their business, with cost-effective log analytics to debug application and infrastructure problems. Trusted autonomy for the agentic SOC The AI threat landscape is on track to outpace the human-led defense model. Never has it been more critical for organizations to be able to understand and address potential exposure and vulnerabilities across their entire IT landscape – from the infrastructure to the applications. Stopping these AI-era threats requires an agentic SOC capable of reasoning and defending at machine speed, without compromising the data sovereignty and human governance enterprise leaders demand. Splunk is advancing the agentic SOC by combining enterprise-wide telemetry with specialized AI agents powered by leading frontier and domain-specific models. New purpose-built agent capabilities expand the Splunk Agentic SOC Workforce and mirror how elite security operations teams work across detection engineering, proactive threat hunting, autonomous investigation, coordinated response, and policy governance. By correlating rich, full-stack machine data across network, cloud, application, and identity environments, these agents deliver deep reasoning and transparent, explainable verdicts that cut alert noise and accelerate mean time to remediate. Attackers are now using AI to hunt for vulnerabilities at scale, probing infrastructure, applications, and identity systems continuously and indiscriminately. Recent exploitation campaigns have made complete exposure visibility a board-level requirement. New Exposure Analytics enhancements deliver on that with broader asset coverage, historical change tracking, and business-specific risk insights. Connecting exposure context to live security activity across Splunk, Cisco, and an extensive third-party ecosystem, so teams see their entire estate rather than one vendor’s slice of it. Agents use that context to pinpoint what matters most and where risk is active. New capabilities in Splunk Enterprise Security Essentials bring agentic security operations and greater autonomy to far more security teams. Splunk Enterprise Security Premier adds deeper agentic autonomy and the full power of Splunk Enterprise Security. Building the agentic enterprise together: Cisco’s Splunk and AWS The same urgency is driving Splunk’s next chapter with AWS. Splunk and AWS are expanding their long-standing relationship into joint product development through a multi-year agreement. The work advances the agentic SOC to match the speed of AI-driven attacks. Those attacks now move faster than human-led response processes can answer. Matching that speed takes deep security intelligence and the scale to act on it instantly. Splunk brings the data platform and detection depth security teams already run on. AWS brings global cloud scale. Together they will put agentic support in the hands of analysts across detection, investigation, and response. Security teams won’t give up oversight to move faster. What’s ahead is agentic action at scale, with the governance and analyst control enterprises require.


Expert commentary
Physical security isn’t a one-time project or a static system. It’s a dynamic, ongoing process and program that requires constant attention and management to remain effective. While the initial implementation of a security system — what we often call Day 1 — is critical, the ongoing maintenance, service, and adjustments made after systems are operational, or Day 2, are equally essential. Security program long-term Organizations that fail to focus on post-occupancy security operations risk falling victim Organizations that fail to focus on post-occupancy security operations risk falling victim to a phenomenon known as "program drift," where systems and policies gradually deviate from their intended standards over time. To manage your security program long-term, you often need an outside perspective. By engaging a security partner to provide managed services, organizations can achieve a strategic solution for maintaining their security programs' integrity, effectiveness, and efficiency over the long term. Let’s look at the reasons why. Moving beyond Day 1 Day 1 is the milestone moment when a security system is launched — whether it’s a new system, an upgraded access control platform, or a transition to advanced surveillance technology. On this day, all components align with established policies and standards. Yet, Day 1 is only the beginning of a security program's lifecycle. What happens on Day 2 and beyond is often where the real work begins. Without a robust plan for ongoing service and maintenance, security systems can quickly fall out of compliance. Policies become outdated, configurations drift, and vulnerabilities emerge. This gradual degradation — program drift — occurs not due to neglect but as a natural result of decentralized management; competing operational priorities; and the lack of dedicated, knowledgeable resources to oversee the systems. Avoiding program drift Drift is particularly pronounced in physical security because, unlike other building systems Program drift occurs when a security program’s elements — such as access controls, camera placements, or intrusion detection settings — gradually become misaligned from their intended standards. Think of a straight line representing perfect compliance on Day 1. Over time, various factors push individual components off this line. Left unchecked, these deviations accumulate, leading to significant vulnerabilities and deferred remediation costs that would be much easier to manage and predict with a more proactive approach. Drift is particularly pronounced in physical security because, unlike other building systems such as lighting or HVAC, security measures are often viewed as inconveniences. Even when systems function as designed, features like turnstiles, visitor management, or additional access controls may face pushback for being "in the way" of daily operations. This resistance and the Day 2 problems that often result — along with the lack of centralized oversight — exacerbate the risk of misalignment and ongoing inefficiencies. Why centralized post-occupancy management matters Post-occupancy management is critical for maintaining the long-term health of a security program. Facility managers, who are often tasked with overseeing security systems, may lack the technical expertise or bandwidth to handle the complexity of modern security infrastructure. Partnering with dedicated professionals to help meet these responsibilities ensures systems are managed effectively and vulnerabilities are addressed proactively. It also helps improve system availability and uptime, accelerate break/fix response and resolution times, lower ownership costs by reducing unnecessary and repeat service dispatches, and achieve a more consistent end user experience. Moreover, centralized management provides a consistent framework for handling security systems across multiple sites. This consistency is vital in preventing Program Drift, ensuring that local variations or individual decisions do not undermine the organization’s overall security posture. The case for managed services Hiring outside consultants offers a proactive and professional approach to mitigating program drift Hiring outside consultants offers a proactive and professional approach to mitigating program drift. Specialized providers have the expertise, tools, and resources to manage complex security systems effectively and ensure those systems remain aligned with organizational policies and performance expectations. By acting as a dedicated external resource and interfacing regularly with your security team, your consultant can help you build, manage, and optimize a variety of services that help keep your program on track. These services range from system health and availability management (break fix); move, add change management; system configuration administration; and program/project management offices. Key benefits in the following areas Let’s look at how a managed services a partner can yield key benefits in the following areas: Standards compliance. Centralized management ensures that security systems and processes remain in compliance with established policies and standards, reducing vulnerabilities caused by ad hoc changes or decentralized management. Operational efficiency. Managed services streamline maintenance and support workflows, minimize downtime, and ensure quick issue resolution. Enhanced security resilience. Proactive monitoring and maintenance reduce the likelihood of system failures and improve overall system reliability. Standardized processes for move-add-change (MAC) activities ensure that security configurations remain consistent across locations. Cost savings. Outsourced providers help organizations optimize resources, avoid errors, and benefit from economies of scale in service delivery. Strategic focus. Outsourcing also allows internal teams to shift their focus from routine operational tasks to higher-value activities, such as strategic planning, threat analysis, and incident response. Long-term value of security investments While Day 1 success is the foundation of a comprehensive program, what happens on Day 2 determines your ability to realize the long-term value of your security investments. As the complexity of security challenges grows, leaders must prioritize sustained management and professionalized oversight to protect their organizations, making the conversation around post-occupancy security more critical than ever. By adopting innovative strategies, implementing mature toolsets and processes, and leveraging specialized expertise, organizations can ensure their programs remain robust, aligned, and prepared to meet the challenges of tomorrow.
The days of being reactive are over. That’s right, we as an industry, can no longer afford to be reactive. As threats evolve, the need for proactive security is critical. While traditional methods, including physical barriers and security personnel, are still necessary, the future of our approach is built on the backs of emerging technologies. Substantial vulnerabilities As an industry, we’ve operated reactively for decades, it has been common for security teams to address threats only after they occur. The growing risk landscape proves that this approach has significant limitations. Human oversight, delayed responses, and the inability to monitor large areas have exposed substantial vulnerabilities. Emergence of AI AI enables real-time monitoring, advanced data analysis, and more accurate risk detection Times are changing though and it’s largely due to the emergence of AI. AI is revolutionizing the security landscape by making technology smarter. It enables real-time monitoring, advanced data analysis, and more accurate risk detection. This ensures a higher level of security and safety, minimizing potential incidents' impact while enhancing overall safety. Focus on strategic aspects AI's ability to process vast amounts of data quickly and accurately is, quite frankly, a game-changer. It can identify patterns and anomalies that can provide stakeholders with critical insights to respond in a more prepared manner. By automating routine tasks and highlighting potential issues, AI also allows operators to focus on more complex and strategic aspects of security management, rather than responding to false alarms. The future is AI The future of security lies in AI. The Security Industry Association (SIA) has recognized AI as one of the top security megatrends in 2024. However, the challenge is not adopting AI, it is about effectively using it to enhance security. AI can enhance video surveillance by improving object detection and enabling real-time, informed responses AI systems can easily integrate with existing infrastructures, providing a layered defense that combines traditional methods with more modern technology. For example, AI can enhance video surveillance by improving object detection, reducing false alarms, and enabling real-time, informed responses. This ensures that security measures are adaptive, scalable, and capable of addressing the evolving risk landscape. Don’t react, anticipate One of AI's most significant benefits is its ability to provide proactive insights. AI can predict potential breaches by analyzing behavior patterns and detecting anomalies allowing security pioneers to do something before an event happens. This shift, from reactive to anticipatory measures, marks a significant advancement in asset protection and risk management. AI systems can also continuously analyze data and distinguish between everyday events and real-world threats. It’s AI's continuous learning capabilities that mean the systems can adapt and improve over time to become more accurate and efficient in threat detection and response. Save money, scale on demand Contrary to common belief, adopting AI technologies will not put a security department over budget. It may be surprising, but these solutions offer cost-effective and scalable alternatives to traditional security measures. An initial investment in AI technology can result in substantial long-term savings (and ROI) by reducing the need for physical infrastructure and on-site security personnel. Customizable solutions The ability to scale and customize AI solutions makes them an efficient choice for enhancing perimeter defense AI systems are also inherently scalable and can be tailored to meet the specific needs of different environments. This ensures the system can evolve with emerging threats and technological advancements without requiring a complete system overhaul. The ability to scale and customize AI solutions makes them a practical and efficient choice for enhancing perimeter defense. How’s that for staying within budget? Embrace the possibilities Integrating AI into perimeter security is the future of proactive and intelligent security. As these technologies continue to evolve, we can expect even more refined solutions that are predictive, autonomous, and capable of directly addressing new and emerging threats. We’re experiencing an exhilarating transformation as AI becomes more trusted, precise, and advanced on multiple levels. This evolution is bigger than pilots and small, low-profile deployments. AI in perimeter security For instance, France is preparing to deploy AI-powered video surveillance as it gears up to host the 2024 Olympics, part of its efforts to detect sudden crowd movements, abandoned objects, and suspicious activities. Think about the sheer scale of that project. We’re finally moving forward, and staying one step ahead must be our priority. But this shift requires a significant change in mindset. Are you ready to make the change?
In the realm of physical security, the distinction between being perceived as a security vendor and a security partner holds great importance. While both may seem interchangeable at first glance, how an organization is viewed by its clients can have a huge impact on the success of its security programs. At the heart of this differentiation is the concept of relationships and how they shape the dynamics between providers and their clients. Time, care, and diligence For security vendors such as systems integrators, security dealers, monitored services providers or manufacturers that sell directly to the end user elevating from supplier to partner requires a greater investment of time, care, and diligence. However, the eventual payoff can be incalculably advantageous to the organization. Not only does this approach better serve the client but it also cultivates longer-term business and is more likely to generate referrals. Clients will change vendors often but stick with partners for the long haul. Simple installation and/or service Security end-users should look to their security products and service providers to partner with them Security end-users should look to their security products and service providers to partner with them, be vested in their success, and be part of the solution. They should seek out and expect more than a simple installation and/or service in the absence of any real, tangible, and value-added relationship with stakeholders. That means looking deeper than the similar cameras or equipment most vendors provide. Doing so brings benefits from the partnership in solving problems and creating strategies for mitigation. Vendors have short shelf lives A security vendor is typically seen as a transactional company that offers products or services to address specific security needs or challenges. When an organization engages with a vendor, the focus is primarily on the exchange of goods and/or services for a fee. The relationship tends to be more transactional, with limited interaction beyond the scope of the security solution being provided. Tools, technologies, or service offerings The relationship between a security vendor and a client is often short with a one-time purchase Security vendors often play a crucial role in the security industry by offering specialized tools, technologies, or services that can help organizations improve their defenses against threats. Examples would be video surveillance, access control, intrusion detection, or fire/life-safety systems, as well as the monitoring of any of them from a central monitoring station or security operations command center. The thing about it is, however, that the relationship between a security vendor and a client is often short with a one-time purchase and limited ongoing engagement or consultation. Partners prove their value On the other hand, a security partner is viewed as a member of the team that works closely with an organization to address its security challenges. Unlike a vendor, a security partner is invested in the long-term success of their clients and is committed to building a strong relationship based on expertise, trust, and transparency. Creating custom solutions Security partners go beyond offering products or services by engaging with companies and organizations Security partners go beyond offering products or services by engaging with companies and organizations to understand their unique security needs, goals, and challenges. They work concurrently with organizations to develop customized security solutions, provide support and guidance, and adapt to ever-changing threats and risks. When this kind of scenario is developed, the potentially distracting and detracting focus on monetary cost moves to the back burner because the value and return on investment (ROI) are so thoroughly compelling. Relationships bring real benefits The core of the difference between being perceived as a security vendor and a security partner hinges on the crucial role of relationships. While vendors focus on transactions and sales, partners prioritize collaboration and a sense of being in it together. Building strong relationships based on trust, communication, and shared goals is essential for forging a successful security partnership. Personalized approach Security partners navigate complex security challenges, drive innovation, and deliver incredible value over the long term Security partners are not just providers of security solutions; they are trusted advisors who are invested in the success and well-being of their clients. They can be reached easily when needed and emphasize a personalized approach with custom-tailored solutions. By building strong relationships based on respect and understanding, security partners navigate complex security challenges, drive innovation, and deliver incredible value over the long term. Operational opportunities Businesses and facilities often encounter or face very specific security needs that can only truly be solved in concert with a vendor that essentially acts like an extension of the end-user organization. Furthermore, when communicating and collaborating on that level, additional security/safety and sometimes even operational opportunities for improvement come to light. This amplifies the value for both the end customer and their security vendor. Talk about a win-win! Prosper with partner power While vendors offer products or services, partners offer teamwork, expertise, and a shared commitment At the end of the day, the difference between being a security vendor and a security partner is not merely a matter of semantics. It is about the fundamental difference in approach and mindset toward physical (electronic and networked) security. While vendors offer products or services, partners offer teamwork, expertise, and a shared commitment to reducing losses and crime. Quality of relationships Ultimately, it is the quality of relationships that separates providers in the security space and determines the success of security initiatives in the current rapidly changing security landscape. This unification of intent, practice, and purpose enables practitioners and the public alike to harness the full power of pioneering-edge technologies that support the security industry’s core mission of protecting people and property. Security partners are not just providers of security solutions; they are trusted advisors who are invested in the success and well-being of their clients.
Security beat
The shift from standalone systems to fully integrated solutions is one of the biggest shifts the security industry has experienced in recent years. There is a higher demand for integrated solutions that go beyond just security at the device and software level, and manufacturers have been continuously developing improved application programming interfaces (APIs), and hybrid and cloud-connected solutions. Artificial intelligence (AI) Also, artificial intelligence (AI) plays an important role in modern intrusion systems by helping enable automated threat detection, real-time response, and predictive analysis. AI algorithms can analyze vast amounts of data to identify patterns and anomalies that may indicate security breaches. Security solutions are being developed with a focus on AI and machine learning to provide more proactive and resilient defenses against increasingly sophisticated cyber threats. Benefits of AI AI-driven security solutions can continuously learn and adapt to new threats, providing more robust protection “The practical benefits of AI in security systems include enhanced accuracy in detecting threats, reduced response times through automation, and the capability to anticipate and prevent potential vulnerabilities before they are exploited,” says Sergio Castillejos, President, of Commercial Security at Honeywell. Additionally, AI-driven security solutions can continuously learn and adapt to new threats, providing businesses with more robust and dynamic protection. Unified Intelligent Command user interface Honeywell meets the challenge of better-integrated systems with a unified Intelligent Command user interface (UI). Castillejos says Honeywell continually innovates with the latest analytics and encryption to keep up with evolving threats. Honeywell’s products integrate with many offerings for partners to construct a robust and modern system relevant to their security needs. Advanced cloud-based security Advanced cloud-based security technologies have been developed that offer real-time monitoring, automated threat detection Advanced cloud-based security technologies have been developed that offer real-time monitoring, automated threat detection, and remote management, essential for hybrid work environments, says Castillejos. “These solutions enhance scalability, improve data analytics capabilities, and provide seamless updates reducing significant maintenance costs that help companies to respond swiftly to emerging threats and enable robust, adaptive security measures.” Physical and digital security The best security systems are a combination of physical, digital, and national security, says Castillejos. While Honeywell focuses on providing the best in physical and digital security within their solutions, protecting sensitive and/or personal information must also be within the responsibility of the organizational policy. Cybersecurity for connected devices Some of the challenges in the next five years will likely include integrating advanced technologies Security systems can safeguard this information by being highly configurable while also notifying users of unwanted activity. Sometimes, just restricting access to sensitive areas can be enough. However, in the world of data analysis and machine learning, security systems can audit and report on users who have accessed data to ensure that the protections are in place. Some of the challenges in the next five years will likely include integrating advanced technologies such as AI and the Internet of Things (IoT) while securing cybersecurity for connected devices, notes Castillejos. Balancing act “Additionally, there will be a growing need for skilled professionals to manage and maintain these complex, connected systems,” he says. “Balancing cost-effectiveness with the demand for resilient security solutions will also pose a significant challenge, especially for smaller businesses.” Legacy systems that are susceptible to vulnerabilities like cloning or unauthorized access present the largest challenge to overcome. “However, as technology evolves, it becomes more challenging for a customer to manage a unified security system rather than a collection of unique solutions that all operate independently,” says Castillejos. Disruptive technology But investing in the newest analytics, AI and IoT will not improve a company’s physical security systems if they do nothing with the data. “They are not a replacement for the devices that keep people and property safe,” says Castillejos. “They can enhance a user’s experience and speed up the time to respond when they are planned correctly.” The best security systems will look at disruptive technology as another tool in the overall system. However, the focus should remain on the user experience. If the latest technology is not properly integrated or configured, it will turn into more noise that most operators will ignore. {##Poll1720586145 - Which is the most useful benefit of artificial intelligence (AI) in security systems?##}
Fueled by mounting concerns about the cybersecurity vulnerability of U.S. ports, President Joe Biden has signed an Executive Order aimed at shoring up defenses against cyberattacks. Cybersecurity initiative The cybersecurity initiative marks a significant shift in policy, empowering key agencies and outlining concrete actions to bolster defenses. By empowering agencies, establishing clear standards, and fostering collaboration, the initiative aims to strengthen U.S. ports against the evolving threat of cyberattacks, safeguarding the nation's maritime economy and national security. Expanded authority for DHS The proactive approach aims to prevent incidents before they occur The Executive Order grants expanded authority to the Department of Homeland Security (DHS) and the Coast Guard to address maritime cyber threats. DHS gains the power to directly tackle these challenges, while the Coast Guard receives specific tools. The Coast Guard can compel vessels and waterfront facilities to address cyber vulnerabilities that endanger safety. The proactive approach aims to prevent incidents before they occur. Real-time information sharing Reporting any cyber threats or incidents targeting ports and harbors becomes mandatory. This real-time information sharing allows for swifter response and mitigation efforts. The Coast Guard also gains the authority to restrict the movement of vessels suspected of posing cyber threats. Inspections can be conducted on vessels and facilities deemed risky. Mandatory cybersecurity standards The standardization aims to eliminate weak links in the chain and prevent attackers from exploiting Beyond these broad powers, the Executive Order establishes foundational elements for improved cybersecurity. Mandatory cybersecurity standards will be implemented for U.S. ports' networks and systems, ensuring a baseline level of protection across the board. This standardization aims to eliminate weak links in the chain and prevent attackers from exploiting individual vulnerabilities. Importance of collaboration and transparency Furthermore, the initiative emphasizes the importance of collaboration and information sharing. Mandatory reporting of cyber incidents fosters transparency and allows government agencies and private sector partners to work together in mitigating threats. Additionally, the Executive Order encourages increased information sharing among all stakeholders, facilitating a unified response to potential attacks. Maritime Security Directive The Executive Order encourages investment in research and development for innovative cybersecurity solutions To address specific concerns, the Coast Guard will issue a Maritime Security Directive targeting operators of Chinese-manufactured ship-to-shore cranes. This directive outlines risk management strategies to address identified vulnerabilities in these critical pieces of port infrastructure. The long-term success of this initiative hinges on effective implementation. The Executive Order encourages investment in research and development for innovative cybersecurity solutions, recognizing the need for continuous improvement and adaptation to evolving threats. Recognizing the urgency of cyber threats The initiative has been met with widespread support from port authorities, industry stakeholders, and cybersecurity experts who recognize the urgency of addressing cyber threats. However, some concerns exist regarding the potential burden of complying with new regulations for smaller port operators. Effective communication, resource allocation, and collaboration among all stakeholders will be crucial to ensure the successful implementation of this comprehensive plan. Enhancing cybersecurity The more impactful and noteworthy piece is the associated NPRM from the U.S. Coast Guard (USCG) “This Executive Order is a positive move that will give the U.S. Coast Guard (USCG) additional authority to enhance cybersecurity within the marine transportation system and respond to cyber incidents,” comments Josh Kolleda, practice director, transport at NCC Group, a cybersecurity consulting firm. The more impactful and noteworthy piece is the associated Notice of Proposed Rulemaking (NPRM) from the U.S. Coast Guard (USCG) on “Cybersecurity in the Marine Transportation System,” adds Kolleda. Portions of the notice of proposed rulemaking (NPRM) look similar to the Transportation Security Administration (TSA) Security Directive for the rail industry and the Emergency Amendment for the aviation industry. Coordinating with TSA on lessons learned The USCG should be coordinating with TSA on lessons learned and incorporating them into additional guidance to stakeholders and processes to review plans and overall compliance, says Kolleda. “At first glance, the NPRM provides a great roadmap to increase cybersecurity posture across the various stakeholders, but it underestimates the cost to private companies in meeting the requirements, particularly in areas such as penetration testing,” says Kolleda. Cyber espionage and threats The focus is on PRC because nearly 80% of cranes operated at U.S. ports are manufactured there “It is unclear if or how the federal government will provide support for compliance efforts. As this seems to be an unfunded mandate, many private companies will opt for the bare minimum in compliance.” “Cyber espionage and threats have been reported by the Director of National Intelligence from multiple nation-states including China, Russia, and Iran,” adds Paul Kingsbury, principal security consultant & North America Maritime Lead at NCC Group. The focus here is on the People’s Republic of China (PRC) because nearly 80% of cranes operated at U.S. ports are manufactured there, he says. Destructive malware “The state-sponsored cyber actors’ goal is to disrupt critical functions by deploying destructive malware resulting in disruption to the U.S. supply chain,” says Kingsbury. “These threat actors do not only originate in China or other nation-states but also include advanced persistent threats (APTs) operated by criminal syndicates seeking financial gain from such disruptions." "The threat actors don’t care where the crane was manufactured but rather seek targets with limited protections and defenses. The minimum cyber security requirements outlined within the NPRM should be adopted by all crane operators and all cranes, regardless of where they are manufactured.” PRC-manufactured cranes Kingsbury adds, “The pioneering risk outlined in the briefing is that these cranes (PRC manufactured) are controlled, serviced, and programmed from remote locations in China." "While this is a valid concern and should be assessed, there are certainly instances where PRC-manufactured cranes do not have control systems manufactured in PRC. For example, there are situations in maritime transportation system facilities where older cranes have been retrofitted with control systems of European Union or Japanese origin.” Monitoring wireless threats “The Biden Administration’s recent Executive Order is a critical step forward in protecting U.S. ports from cyberattacks and securing America’s supply chains,” says Dr. Brett Walkenhorst, CTO at Bastille, a wireless threat intelligence technology company. “To ensure proper defense against malicious actors accessing port-side networks, attention must also be paid to common wireless vulnerabilities." "Attacks leveraging Wi-Fi, Bluetooth, and IoT protocols may be used to access authorized infrastructure including IT and OT systems. Monitoring such wireless threats is an important element in a comprehensive approach to upgrading the defenses of our nation’s critical infrastructure.”
Companies at GSX 2023 emphasized new ways that technologies such as artificial intelligence (AI) and the cloud can address long-standing issues in the security market. Among the exhibitors at the event in Dallas were companies seeking creative ways to apply technology, lower costs, and make the world a safer place. Reflecting on the exhibition, here are some additional takeaways. Expanding AI at the edge i-PRO is a company reflecting the continued expansion of edge AI capability in the security market. Today, more than half of the company’s lineup supports AI at the edge so the customer has a wide choice of form factors when seeking to leverage the feature set. AI processing relay, extended warranty i-PRO is increasing their warranty period from 5 to 7 years, which could be a lifetime warranty in some cases I-PRO also has an “AI processing relay” device that accepts non-AI video streams and applies edge analytics. AI has progressed from a high-end technology to a feature available in a variety of cameras at different price points. i-PRO is also increasing its warranty period from 5 to 7 years, which could be a lifetime warranty in some cases depending on a customer’s refresh schedule and lifecycle management. Active Guard, MonitorCast The company’s video management system (Video Insight) is continuing to build new features including “Active Guard,” an integrated metadata sorter. Their access control platform, MonitorCast, is a Mercury-based solution that is tightly integrated with Video Insight. Their embedded recorders now have PoE built in. “We can move at a faster pace to fill out our product line since leaving Panasonic,” says Adam Lowenstein, Director of Product Management. “We can focus our business on adapting to the market.” Emphasis on retail and other verticals Shoplifting is a timely issue, and retail is a vertical market that got a lot of attention at GSX 2023. “We see a lot of retailers who are primarily interested in protecting employee safety, but also assets,” says Brandon Davito, Verkada’s SVP of Product and Operations. “Shrinkage is a CEO-level priority.” “Retailers are getting more engaged with security posture, instead of letting perpetrators walk,” Davito adds. Intrusion detection Verkada has an intrusion product that will notify a central station if there is an alarm On the alarm side, Verkada has an intrusion product that will notify a central station if there is an alarm, and operators can review videos to confirm the alarm. Other capabilities seeking to discourage trespassers include sirens, strobes, and “talkdown” capabilities. International expansion Verkada continues to expand internationally with 16 offices in all, including Sydney, Tokyo, and London. The core value proposition is to enable customers to manage their onsite infrastructure more simply, including new elements such as PTZ cameras, intercoms, and visitor management. Verkada emphasizes ease of use, including a mobile application to allow access to be managed across the user base. Forging partnerships “We are committed to the channel and industry, and we continue to build relationships and expand our reach,” says Davito. Among the industry relationships is a new partnership with Convergint, which was hinted at during the show and announced later the same day. They are also expanding their partnerships with Schlage, Allegion, and ASSA ABLOY. Working with other verticals They offer new features for K -12 schools, and a new alarm platform is easier to deploy and manage Verkada has also found success across multiple other verticals, notably healthcare, where they integrate with an electronic medical records system. They offer new features for K-12 schools, and a new alarm platform is easier to deploy and manage. They are integrating wireless locks to secure interior doors in schools, looking to secure the perimeter, and installing guest management systems. Transitioning the Mid-Market to the Cloud Salient is squarely focused on the “mid-market,” a large swath of systems somewhere between small businesses and enterprise-level systems. Pure cloud systems are not as attractive to this market, which has a built-out infrastructure of on-premise systems. Adding a camera to an existing system is easier and less expensive than tying it to the cloud. Benefits of cloud It’s a market that may not be ready for pure cloud, but there are benefits to be realized from adding a cloud element to existing systems. “We are continuing to augment our premise-based solutions with added cloud capabilities and flexibility,” says Sanjay Challa, Salient’s Chief Product Officer. The feedback Salient hears from their customers is “I want to own my data.” The hybrid cloud approach offers the right mix of control, flexibility, and unit economics. Cloud add-on capabilities We want to provide the flexibility for customers to go full-cloud as it becomes more economically attractive" Cloud add-on capabilities include bringing more intelligence about system operation to the user via the cloud. Over time, Salient expects to sell more cloud-centric offerings based on feedback from integrators and customers. “We want to provide the flexibility for customers to go full-cloud as it becomes more economically attractive over time,” says Challa. Vaidio AI technology Salient seeks to be a transition pioneer to help customers realize the path to the cloud. Their approach is “crawl, walk, run,” and helping customers make the transition at each stage. Salient has added AI to its product offering, incorporating Vaidio AI technology from IronYun into a powerful suite and broad array of on-premise analytics, which are gaining traction. The seamless approach makes it easy for customers to embrace AI analytics, although Salient remains broadly committed to open systems. Addressing ‘Soft’ Features for Integrators AMAG is in the process of enhancing its product line with the next generation of access control panels. However, “product” is just part of the new developments at AMAG. In addition to “hard” features (such as products), the company is looking to improve its “soft” features, too; that is, how they work with the integrator channel. Integrator channel Rebuilding a process to make your organization more efficient, is relatively easy; it just takes a lot of persistence" “We have the depth of our legacy customer base we can learn from, we just need to close the feedback loop quicker,” says Kyle Gordon, AMAG’s Executive Vice President of Global Sales, Marketing, and commercial Excellence, who acknowledges the value of reinstating face-to-face meetings after COVID. “We are laser-focused on nurturing our integrator channel,” he says. “Developing new features takes time, but rebuilding a process to make your organization more efficient, that’s relatively easy; it just takes a lot of persistence,” says Gordon. More cohesive internal communication is another useful tool, he says. Disrupting the cloud based on price Wasabi is working to make cloud applications less expensive by offering a “disruptive” price on cloud storage, $6.99 per terabyte per month (80% less than hyperscalers). Contending “hyperscalers” like AWS are charging too much for cloud storage, Wasabi is using its own intellectual property and server equipment co-located in data centers around the world. Wasabi sells “hot cloud storage,” which refers to the fact that they only have one tier of storage and data is always accessible. In contrast, a company such as AWS might charge an “egress fee” for access to data stored in a “colder” tier. Cloud storage “We saw that several video surveillance companies had not yet adopted cloud storage, and we saw an opportunity to make it easy to use,” said Drew Schlussel, Wasabi’s Senior Director of Product Marketing. “We just install a little bit of software that allows them to store data in the cloud and bring it back from the cloud.” Performance, protection (cybersecurity), and price Wasabi works with integrators, resellers, and distributors and also integrates with VMS companies Wasabi works with integrators, resellers, and distributors and also integrates with VMS companies such as Genetec and Milestone. Emphasizing performance, protection (cybersecurity), and price, their data centers are certified to SOC 2 and ISO 27001 standards. Faster throughput for weapons detection Xtract One is a young company focusing on weapons detection in a time of accelerated concern about gun issues post-COVID. Founded in Canada and based on technology developed at McMaster University, Xtract One has found a niche in providing weapons detection at stadiums and arenas. These customers already have budgets, and it is easy to shift the money to a newer, faster technology. Madison Square Garden in New York City is among its customers. Cost savings solution Xtract One can increase throughput to 30 to 50 people per entrance per minute (compared to 5 to 6 people per minute when using metal detectors). The solution doesn’t require anyone to empty their pockets and the system alarms on items beyond guns and knives. Using Xtract One allows customers to reduce the number of screening lanes and security staff, providing additional cost savings, all while getting fans through the screening process in half the time. Purpose-built sensors The system uses purpose-built sensors looking for specific characteristics, such as reflective and density properties In addition to stadiums and arenas, Xtract One, formerly Patriot One, is also getting “inbound” interest from schools, hospitals, manufacturers, and other verticals that makeup 50% of their business. “We’re on a rocket ride, mainly because the weapons issues are not going away,” says Peter Evans, CEO and Director at Xtract One. The system uses purpose-built sensors looking for specific characteristics, such as reflective and density properties, all correlated by an AI engine. Providing early warning of violence ZeroEyes is another company focused on weapons detection. Their AI gun detection system works with video images to identify if someone is “brandishing” (carrying) a weapon. In other words, the system does not detect concealed weapons. Identifying someone carrying a weapon provides early warning of a possible violent act. Increased response with AI-enables images Images are identified by AI and sent to a monitoring center where a human confirms the image before contacting first responders. Knowing the location of a shooter enables staff to lock entry points, move people to safety, and direct first responders. The company was founded to leverage existing camera views to stop mass shootings and gun violence by reducing response times.
Case studies
Security requirements for critical infrastructure are changing rapidly. Recent events, such as the discovery of a drone at Leipzig Airport, have once again demonstrated how quickly modern technologies can become a security challenge. This makes dialog between industry, authorities and emergency services all the more important. Security Essen, which will take place at Messe Essen from 22 to 25 September 2026, is placing precisely this exchange at the heart of two key program highlights: the European Drone Conference and the Emergency Services Forum. Unmanned aerial systems open up a wide range of potential applications – from inspecting critical infrastructure to supporting security and emergency services. Protection of critical infrastructure At the same time, they present new challenges for operators of sensitive facilities. The European Drone Conference on 23 and 24 September will therefore bring together experts from the security industry, public authorities, academia and politics to discuss current developments, the regulatory framework and effective protection strategies. The conference is organized by the Drone Expert Committee of the German Security Industry Association (BDSW), together with Security Essen and the Confederation of European Security Services (CoESS). Experts discuss drone deployment, detection and countermeasures Around 20 specialist presentations will examine drone technology from various perspectives – ranging from regulatory issues and the protection of critical infrastructure to detection and counter-drone systems. Managing new risks In his statement, Cornelius Toussaint, Vice-President of the BDSW and Chair of the Drone Expert Committee, will focus on security and drone technology in Germany. Marcus Schermann (DB Sicherheit GmbH) will discuss the protection of critical infrastructure, using multicopter operations as an example. Drone management, with a particular focus on detection and countermeasures, is the main theme addressed by the two speakers, Ralf Holstein and André Danner (German Business Protection GmbH). The program is complemented by presentations on research and development, as well as international keynote speeches from the worlds of politics and the security industry. The central question is how to capitalize on the opportunities offered by the technology whilst effectively managing new risks. Public safety authorities Emergency Services Forum (Blaulichtforum) takes place for the first time In collaboration with Feuerwehr-Magazin (Fire & Rescue Magazine) and Rettungs-Magazin (Emergency Medical Services Magazine), the Emergency Services Forum 2026 will make its debut at Security Essen. On 22 September, the new forum will bring together public safety authorities and organizations (BOS), the security industry and public authorities, focusing on a key question: How are new threat scenarios and technologies changing security and emergency response? On stage, experts from the fire service, police, civil protection, the security industry and defense will discuss current challenges: What role will drones and autonomous systems play in future operations? Shared situational picture How well is Germany prepared for CBRNE incidents and hybrid threats? And how do control centres, communication technologies and networked systems ensure that a shared situational picture emerges in an emergency? The focus will also be on cooperation between civilian and military actors. Specialist conferences included in the trade fair admission ticket Both the European Drone Conference and the Emergency Services Forum will take place directly in Hall 5. Admission is already included in the Security Essen trade fair ticket. Tickets for Security Essen 2026 are available online. A day ticket costs €49. The trade fair is open from 9 am to 6 pm from Tuesday to Thursday and from 9 am to 4 pm on Friday.
iDenfy, the global RegTech solution provider that delivers identity verification and fraud prevention tools, has implemented Czech Bank iD into its electronic identity verification software. The addition of the new digital ID or non-document verification method for the Czech market gives businesses a native alternative for verifying Czech citizens through their existing bank login credentials, without asking for a physical document during the onboarding process. Czech Bank iD is a nationwide, bank-issued digital identification system introduced in the Czech Republic in 2021. It allows citizens to use their internet banking credentials to authenticate themselves for both e-government and private sector services. Separate identity document The system is currently used by over 5,000,000 internet banking users, which corresponds to an adoption rate of 57% across the Czech Republic with 9 million people. Czech Bank iD runs on the OIDC protocol and operates through a bank delegation model, meaning the verification is confirmed directly by the user’s bank rather than through a separate identity document. iDenfy’s non-document verification platform was built to operate alongside the platform’s standard document-based KYC flow. Businesses can configure the platform to automatically route users to the Czech Bank iD path when traditional document capture is unavailable or produces insufficient image quality, a scenario that iDenfy’s internal data consistently shows as a recurring source of session drop-off. The combined flow is available to all iDenfy clients at no additional cost and can be activated in the dashboard settings without any additional integration work. Additional integration work To perform a successful verification, Czech Bank iD checks the person’s given name, family name, middle name, full name, date of birth, nationality, sex, phone number, and full address details. Where available, it can also return document data, such as document type, number, issue date, expiration date, issuing country and authority. This gives businesses a verification result that is both broad in scope and consistent in structure, since the data is returned directly by the bank network rather than extracted from a scanned image. As defined by Regulation (EU) 2024/1183, each of the EU 27 will have to implement the EU Digital Identity Wallet for citizens and residents by the end of 2026. Every bank, payment, and electronic money institution will have to support wallet-based credentials as Strong Customer Authentication measures. Bypassing security controls The Czech Republic has the third-highest risk of cyber fraud globally, according to security firm Gen Digital, which conducted research from Avast, AVG, and Norton companies. Social engineering attacks, a form of psychological manipulation in which criminals trick people into giving up private data, downloading malware, or bypassing security controls, made up 86% of the threats that happened in the country. iDenfy states that for businesses that serve Czech market users, the ability to verify identity through a credential that more than five million adults already use for banking and government access can remove a document capture step that often contributes to onboarding drop-off. It still maintains a secure enough compliance procedure to keep the process trustworthy for both the user and the business so it can validate a real person behind it. Digital identity networks “Czech Bank iD has become one of the most widely trusted digital identity credentials in the Czech Republic. Our clients that serve that market can now meet Czech users on those terms and present a verification path that feels familiar and requires no additional physical document capture at the point of onboarding,” said Domantas Ciulde, the CEO of iDenfy. It is worth mentioning that iDenfy’s KYC software currently covers over 16,000+ government-issued documents across over 200+ countries and territories. If a case is not resolved automatically, it is reported to iDenfy’s internal compliance review team, which works 24/7 to review identities and fix any onboarding issues. “Czech Bank iD is deeply embedded in how Czech citizens already access banking, government, and private sector services. For our clients, adding Czech Bank iD is not just an onboarding improvement. It is a direct connection to one of Central Europe’s most established digital identity networks,” added Domantas Ciulde. Czech Bank iD support is available now across iDenfy’s identity verification platform.
Willis Tower, an iconic symbol in Chicago for over 50 years, has undergone significant transformations to become a modern workplace and community hub that delivers the best experiences for its tenants, area residents and visitors. Originally known as Sears Tower, it was renamed Willis Tower after a change in ownership in 2009. Major renovations took place in 2017, culminating in a complete transformation in 2022. Currnetly, Willis Tower offers a range of amenities from short-term workstations to traditional leases, as well as dining, retail, and entertainment spaces. The Skydeck on the 103rd floor, 1,353 feet above street level, provides breathtaking views of up to 50 miles across four states, attracting millions of visitors annually. Challenge As part of Willis Tower’s transformation, the structural separations between the office and Skydeck areas were eliminated, creating a more open and accessible space for visitors and tenants. Recognizing the need for a customized strategic security plan, Director of Security Keith Kambic, CPP, spearheaded efforts to find the right partners to ensure the safety and security of tenants, visitors, and employees. Kambic’s first step was to engage with the national security and technology consulting firm Guidepost Solutions. The next priority was to establish a strong partnership with a Chicago-based integration partner and to identify the best security solutions in the market. Kambic chose 4S Security as the integration partner because of their holistic approach to achieving optimal results. The partnership with 4S Security elevated the security measures at Willis Tower to new heights. “We are different than the average integrator,” said Leor Elfassy, Director of Business Development at 4S. “We have software developers on staff who write integrations, and as a matter of business principle for the last 30 years, we only work with software manufacturers that allow us to do so.” Solution The upgrade to Willis Tower involved retrofitting the access control system to a cloud-based solution and the new Video Management System (VMS), Salient CompleteView, was selected based on its ability to integrate seamlessly with the access control platform. “In the end the client wants a single pane of glass that they can work from and Salient’s CompleteView is well-designed to let integrators bring their vision to life,” continued Elfassy. Salient’s open architecture was an essential factor in the decision, along with product features like Dynamic Resolution Scaling (DRS), a powerful bandwidth management tool, and agnostic integration to analytic platforms for future system enhancements. Specific features like snapshot and CompleteView’s interactive mapping feature were also important selection factors. While all of these product capabilities are important, in the end it came down to the personal attention of Salient team members – from the President to the system engineer – and their efforts to go above and beyond in every way. Salient’s dedication to working cohesively with the Willis Tower and 4S teams created an effective partnership that propelled the project forward. Kambic said, “when we selected Salient, we did so not only for their product, but because we could tell that both of our companies were cut from the same cloth – great service, and great people.” Both Salient and 4S provided learning tools prior to implementation to ensure a seamless transition to the new VMS for the Willis Tower security team. 4S created customized training videos and pamphlets and held onsite training sessions, while Salient educated the security team through its YouTube training videos. Results The result of the partnership between 4S and Salient was a 40% reduction in bandwidth usage across the Willis Tower network. In addition, the integrated system provided immediate awareness of events such as forced-open doors, tailgating, and panic alarms. Ongoing top-notch local support from both Salient and 4S ensures smooth and timely software release updates and exploration of new technological capabilities, advancing video surveillance through CompleteView. Pleased with the results, the Willis Tower team attests to the success of the partnership, efficacy of Salient’s product, andoutstanding level of service from Salient both before and after the sale.
In alignment with the State of Mississippi’s mission of “Empowering Mississippi citizens to stay connected andengaged with their government,” Salient's CompleteView Video Management System (VMS) is being installedthroughout more than 150 state boards, commissions, and agencies in order to ensure safety for thousands ofconstituents who access state services daily. Challenge Determining the right path to success wasn’t a quick process. The elaborate undertaking of converting all State of Mississippi buildings from its legacy video system, which included analog cameras across a disparate video platform, to match their standard of excellence took a lot of planning. This involved researching and interviewing multiple manufacturers of IP cameras and video management systems. The plan was strategic, as it was important to State officials to find an open architecture solution that could utilize as much existing technology as possible, thereby preserving current taxpayer investment. Solution After a thorough evaluation, the decision came down to three competitive VMSs, all based on total cost-of ownership, scalability requirements, software performance capabilities, along with support assessments. Salient’s CompleteView was ultimately determined the top choice. “In the selection process, three VMS manufacturers were deemed a reasonable fit. The choice of CompleteView over these competitors came down to one critical component, partnership. The culture at Salient embodies an unmatched support you don’t typically see in an industry leader. Their greatest value-add is that open line of communication between the RSM, technical support, and engineering. If I need something, I know I can pick up the phone and get immediate assistance” said Mike Cooper with MS Department of Public Safety. Once CompleteView was selected, another strategic decision was made to have personnel from The Statehandle the design and installation of CompleteView internally rather than engage outside consulting. This hasproved to be an effective option, allowing them to tailor each installation to suit individual property needs. The State works through the channel for procurement, then handles all programming and administration internally. This offers them the most flexibility while still achieving uniformity across each deployment as well as complete control of the process. Result The conversion to CompleteView is underway and will take approximately 3-5 years to complete. The State now benefits from a centralized platform that allows for greater administrative control, as well as a product that meets the State of Mississippi standard for NDAA compliance. According to Cooper, “we now have a platform that is easily managed and visibly organized in an efficient manner. We also appreciate having a system that’s permission based with tighter controls.” Finally, The State’s technical team is committed to keeping the system updated as Salient releases newer versions of its software each quarter. These upgrades ensure they are taking advantage of all security enhancements and feature improvements that CompleteView has to offer. The State has also planned integration of its access control system, Open Options, with CompleteView, tying video directly to specific door openings. This gives State personnel an enhanced view into their security operations, with quick and easy auditing of badge events through a single interface. Further initiatives will explore the addition of AI video analytics to add weapons detection, appearance search, and cross-camera tracking — all to help speed up investigations. Salient’s open platform makes these integrations possible. Staying present on these new releases and innovative integrations ensures an advanced level of protection from potential threats and works to achieve the ultimate end game – keeping community members safe.
The Community Builders (TCB) is a nonprofit organization whose mission is to build and sustain strong communities where all people can thrive. They work with businesses, institutions, and public officials to revitalize neighborhoods in ways where all people can live in healthy homes with equitable access to resources and opportunities to pursue their dreams. Their partnership with Salient Systems exemplifies the use of video technology in vulnerable neighborhoods to help achieve these goals. Challenge TCB operates and manages 150 sites and properties across the country, employing over 600 staff members. These locations range from campus environments to individual buildings, each presenting unique security challenges to ensure overall resident safety. The primary focus for implementing a video management system is not only to ensure safety and security but also prevent property maintenance issues. Under Joe Giggey’s leadership as senior director of Information Technology, TCB established enterprise- level security standards. These standards enabled access to video remotely through smartphones, iPads, and laptops for a central team of sites in 30 cities. Additionally, seamless integration with existing cameras and access control systems was required, considering TCB’s extensive network of 30+ access control systems and about 6,800 different camera models. Affordability was another crucial factor, as is often the case for nonprofit organizations. Having an easy-to-administer VMS, reliable search and video export functionalities, scalability for future property acquisitions, and centralized management in a distributed environment were also significant requirements. Solution Salient’s CompleteView VMS met all the specified criteria, marking the beginning of the partnership between TCB and Salient in 2016. The deployment of CompleteView has grown to 85 site recording servers and over 2,300 camera licenses. Given the widespread nature of TCB’s properties, certified regionalized integrators have been selected to install CompleteView across TCB locations. These integrators have been trained and received certification from Salient Systems professional trainers on installation, executing upgrades, expanding systems, and customizing the deployment ensuring effective implementation and ongoing support. In addition, manufacturer support by Salient’s own System Engineering team has been utilized and according to TCB personnel, “has been phenomenal.” Results TCB staff help address complaints, educate residents on lease rules, and avoid evictions. Salient’s CompleteView has assisted in resolving disputes, and investigating incidents. In addition, the ability to verify details of incidents in progress helps pinpoint the location and gives first responders details about the situation they may face on arrival. Video footage provided by Salient’s VMS, CompleteView has proven invaluable in multiple instances and according to Giggey “The VMS paid for itself immediately, highlighting the effectiveness and value of this partnership.” The collaboration between TCB and Salient Systems has become an exemplar of how technology can be harnessed for the greater good, building trust and effecting positive changes in vulnerable neighborhoods. With ongoing support from Salient Systems, TCB is committed to making a lasting impact and ensuring strong communities where all people can thrive.
The HilverZorg Foundation in the Netherlands is a large organization that provides residential nursing care at seven locations as well as home nursing care for all phases of aging. One of the facilities, Zonnehoeve, is HilverZorg’s expertise center for people with dementia. Located on the Zonnestraal estate, in the middle of the beautiful Loosdrechtse forest, residents can enjoy peace and the outdoors. Zonnehoeve is comprised of multiple departments and a ward with single rooms and apartments. Computerised key management The Challenge - Keeping the residents safe at Zonnehoeve necessitates that the provision of keys is done in a good, reliable, and safe way. At one point, over 500 issued keys were distributed, and challenges occurred when many would take keys home. For security reasons this proved to be inconvenient and unsafe. The Solution - It was soon determined that procedures to access keys between residents and nursing staff, was vitally important to be supplied by computerised key management. The organization then started looking for an alternative for the distribution of keys with registration which could serve as a basis for tightening the procedures. The key management system KeyWatcher® met the set criteria and wishes. In addition, the KeyWatcher® had already proven its functionality and reliability with its use in other departments of the organization. Old-fashioned key cabinets Morse Watchmans Solution – Because allocated keys are only released to users with the appropriate authorization, the KeyWatcher® helps to pursue a certain policy and to ensure that procedures are followed. On a minimum-sized wall surface the ergonomically executed system eliminates old-fashioned key cabinets, unreliable handmade journals and sloppy ID tags. It files the history of each key including the user, date and time of distribution and return of the key. The solidly executed stainless steel cabinet has been designed to prevent abuse and it is manipulation-proof. By using the KeyPro™ Performance Software users can manage, if they are authorized, one or more KeyWatcher® systems through the network of any work station within the organization. They are able to change the data in the database, retrieve reports, release keys, cancel alarms etc. This way, the opportunity is created to manage and check the access to buildings and rooms, subject to time and place, 24/7. Key management system Implementation - After opting for the KeyWatcher® key management system, Zonnehoeve decided to install the system at a central point which is only accessible by staff. The Key Watcher manages the access to the keys and the keys can be tracked when they are in use, including the times and user names. The personnel are authorized different levels of access to the smart keys with keys. This way, efficient control is managed and carelessness or inadvertences will be prevented. By means of the KeyPro™ Performance Software the KeyWatcher® systems are managed at a distance both centrally and locally through a modem connection and the transactions and reports are filed. The Result - Thanks to the use of the KeyWatcher® key management system of Morse Watchmans and the KeyPro™ Performance Software, Zonnehoeve has been able to create a stricter key policy and to tighten the procedures concerning management and reporting. The possibility of time-saving and single use for example by temporary workers, have also been of importance in successfully deploying the system.


Round table discussion
Artificial intelligence (AI) transforms physical security from a passive, reactive function into an autonomous, proactive one. Rather than just alerting human guards after an event, new systems driven by intelligent agents analyze, decide, and act in real time—handling routine deterrence, investigating anomalies, and reducing alarm fatigue. We asked our Expert Panel Roundtable: What is agentive (or agentic) AI and how is it changing physical security?
When working in the technology marketplace, it’s always good to expect the unexpected. Increasingly, readiness to anticipate and embrace uncertainty is the baseline for survival in the world of technology. If we in the physical security industry know anything, it is that technology is in a state of perpetual disruption. Therefore, looking ahead to the next 12 months, surprises are inevitable. We turn to our Expert Panel Roundtable for guidance, asking our panelists: What will be the biggest surprise for security in the year ahead?
In many cases, architectural design and layout dictate optimal placement of security devices like cameras, access control readers, and sensors. Poor design can lead to blind spots, reduced coverage, and ineffective surveillance. However, planning that involves all the various stakeholders can maximize both security and design elements. We asked this week’s Expert Panel Roundtable: When are building design and physical security systems complementary? When are they at odds?
Products


Videos
Security service: Manufacturers & Suppliers
- Bolide Security service
- Dedicated Micros Security service
- Dahua Technology Security service
- VIVOTEK Security service
- Seagate Security service
- Hanwha Vision Security service
- ITI Security service
- Vigilant Vision Security service
- Vanderbilt Security service
- OT Systems Security service
- Messoa Security service
- HID Security service
- Tamron Security service
- Nedap AEOS Security service
- LILIN Security service
- AMAG Security service
- Parabit Security service
- Panasonic Security service
- Pelco Security service
- Videotec Security service
