A U S T R A L A S I A’ S L E A DI N G S E C UR I T Y R E S OUR C E F O R BU S I N E S S A N D G O V E R N ME N T
FEB 2019 ISSUE 115
THE ROLE OF PRIVATE SECURITY
IN COUNTER-TERRORISM
Prepared to
support you
at every level.
Effective cybersecurity is about assessing risks and consequences and taking appropriate steps. It’s about products, people, technology and ongoing processes. And it’s about partnering with a solutions provider who’s prepared to support you at every level. Which is where we enter the picture. We are 100% focused on cybersecurity, and we do everything in our power to mitigate its risks. We have strict requirements for our own products and we work diligently with our partners—and you—to fight this threat.
Learn about our layers of protection at www.axis.com/cybersecurity
V SA E TH E E AT D
GAIN YOUR COMPETITIVE ADVANTAGE AT AUSTRALIA’S LEADING INDUSTRY EVENT For over three decades the Security Exhibition & Conference has been the most established and respected trade event for the security industry in Australia, bringing together the full spectrum of manufacturers, distributors, security professionals and end users. Position your business and amplify your brand among the industry’s most powerful influencers. Network with the most established names, discover the latest technology and create profitable opportunities.
To book a stand contact the team Melissa Clendinen Event Manager 03 9261 4662 mclendinen@divcom.net.au
Lead Industry Partner
Abigail Ford Account Manager 03 9261 4650 aford@divcom.net.au
FIND OUT MORE AT
SECURITYEXPO.COM.AU #SECURITY2019 The peak body for security professionals
ISSUE 115
CONTENTS
86
FEATURES
46
26 34
cover story
74
50
There are more than 120,000 licensed security guards in Australia. Security personnel are the eyes and ears on the ground; they are the day-to-day interface with the community and, when an incident does occur, they are the real first responders. Why then is the private security sector not mentioned in any of the top-level strategic counter-terrorist plans?
60
26 IDENTIFYING SOMEONE WHO MAY BECOME A THREAT
Insider threats to an organisation come from a number of sources and there is no absolute distinction that classifies someone as high risk. However, there are patterns of behaviour that can trigger a warning.
38 NEW VIDEO COMPRESSION
Internationally renowned CCTV author, lecturer, innovator and consultant Vlado Damjanovski explains HEIC and its potential future impact on IP CCTV.
56 PROVE CYBERSECURITY VALUE TO BUILD A
REGULARS 06 LETTER FROM THE EDITOR 08 LEADERSHIP
How do you apply an Enterprise Risk Management model to security?
CULTURE OF CYBERSECURITY
If you want senior executives to buy into cybersecurity, you need to prove the value cybersecurity brings to the core business. But how exactly should you do that?
68 PRISON: MILITANT JIHADIST RECRUITING GROUNDS OR REFUGE FOR REHABILITATION?
We look at issues of recruiting for violent extremism in prisons and examine vulnerabilities for prison radicalization and potential prevention and intervention strategies for the management of violent extremism in prisons.
10 CYBER SECURITY
Why does cyber security need to extend beyond the security department to be successful?
12 MARKET ANALYSIS 14 HUMAN RESOURCES
Greg Byrne examines the challenges around dismissing an employee for under performance.
16 RISK MANAGEMENT
How we can improve risk management through the use of pictures.
18 STRATEGY
Can you grow your business by helping improve your client’s sales processes?
20 LEGAL
How should you structure your business to better protect your assets?
22 THINKING ABOUT SECURITY
What are the realities of protecting people in crowded places?
30 ALARMS
Is 5G the future of intruder alarms?
34 OPERATIONS
Richard Kay examines procedures to help improve public safety around the use of firearms.
42 BUSINESS
How can you create the ultimate competitive advantage for your security business?
52 AVIATION SECURITY
Steve Lawson looks at the challenges around securing airside access.
60 CCTV
How To Minimise Roulette Wheel Motion Blur
64 PROFESSIONAL DEVELOPMENT
Why do people deliberately set fires?
74 LOSS PREVENTION 78 PRODUCT SPOTLIGHT 82 PRODUCT SHOWCASES 86 SHOP TALK
Company announcements from within the industry.
24 EVENTS CALENDAR
A look at upcoming industry events.
4 // SECURITY SOLUTIONS
securitysolutionsmagazine.com
FROM THE EDITOR FROM THE EDITOR www.securitysolutionsmagazine.com
EDITORIAL www.securitysolutionsmagazine.com
EDITOR John Bigelow EMAIL john@interactivemediasolutions.com.au EDITORIAL SUBEDITORS Sist, Ged McMahon EDITOR JohnHelen Bigelow EMAIL john@interactivemediasolutions.com.au SUBEDITORS Helen CONTRIBUTORS Sist, Ged McMahon
Bob Ansett, Jacque Brittain, Jason Brown, Greg Byrne, Brian Contos, Vlado Damjanovski, Rebekah CONTRIBUTORS Doley, Alex Ganin, Richard Kay,Foster, Garry Kevin Barnes,Foster, Jason Brown, Greg Byrne, Kevin Stephen Lawrence, Steve Lawson, Richard Johnson, Kay, SteveJustin Lawson, Justin Lawrence, Scott Tim Rippon, Adrian Shajkovci, Anna Silwon, Anne O’Driscoll, Rita Parker, Don Williams, Lamie Saif, Speckhard, Lisa Alex Warren, Don Williams Anne Speckard, Sidernko, Ardian Shajkovci, Ami Toben, Simeon Votier
ADVERTISING Keith Rozairo ADVERTISING
Keith Rozairo PHONE 1300 300 552 PHONEkeith@interactivemediasolutions.com.au 1300 300 552 EMAIL EMAIL keith@interactivemediasolutions.com.au
W D
hen we first launched Security
changed significantly and dramatically in the last
Solutions back in February of 1999
20 years. Terrorism has become a very real concern
under its original title Security Oz oes Australia really take security Magazine, there were around 27,000 seriously? Yes, Government claims
for the Western world, Australia included. And while Australian’s do have a very relaxed attitude we may have seen a significant increase in to security because they believe, rightly orsecurity
licensed security another to, personnel and some in ofVictoria, the corporate 33,000 ‘thereabouts’ in New South Wales, a further sector demonstrate a passing
infrastructure andhappen planning across both the wrongly, that “itspending will never here”. This corporate and government sectors, it would seem is a sentiment we can only hope remains true.
12,000 or so in Queensland and unknown interest from time-to-time, but an what of the number across the rest of the country. I say unknown average man and woman on the street? Dobecause we
that oneas of the the old country’s powerful, effective and However, axiommost states, one should available resources is still being treated as something always expect the best but plan for the worst and
these were thesecurity basic and approximate honestly take seriously or donumbers we, as awe
akin toto a drunken uncle with a proclivity for politically prepare be surprised.
were working offlip after initialtoenquiries nation, just pay service the ideato various licensing and regulatory bodies when researching the of security? sizeAsofwe theenter market withwe a view to establishing 2018, should be thankfulthe that
incorrect statements at your 16th birthday. Of course, one should notdaughter’s have to rely upon we of head into a newincident year andto new election someAs form devastating occur in cycle, is finally timeto fortake whichever party that ends order toitforce people security seriously.
viability of such a magazine. Australia has never suffered a major terrorist
up running Australia for the future to There is a great deal that theforeseeable security industry
Jonathan Rudolph PHONE 1300 300 552 PHONEgraphics@interactivemediasolutions.com.au 1300 300 552 EMAIL EMAIL graphics@interactivemediasolutions.com.au
incident the likes of 9/11, the BostonPolicy bombings, Last year, The Australian Strategic Institute
can do toget educate business community about finally seriousthe about our security and, if nothing
the bombings of July 7,issues 2005related in London or the and (ASPI), which examines to defence
the benefits ofsome taking seriously. In past else, address ofsecurity the fundamental issues that
MARKETING AND SUBSCRIPTIONS MARKETING AND PHONE 1300 300 552SUBSCRIPTIONS
terrorist October 12, 2002 in Bali. national attacks security,of released a Special Report Safety in
issues Security Solutions Editor-At-Large would go a long way toward bringing the Rod private
PHONEadmin@interactivemediasolutions.com.au 1300 300 552 EMAIL EMAIL AUD admin@interactivemediasolutions.com.au $62.00 inside Aust. (6 Issues)
However, a result, the Australian Numbers as – Australia’s private securitycommunity guard force and
Cowan hasindustry writteninto about security canfold, act as security thehow national security such
$62.00 AUD Aust. (6 (6 Issues) $124.00 AUDinside outside Aust. Issues) $124.00 AUD outside Aust. (6 Issues)
has become somewhat complacent with regard counter-terrorism. The report was launched on 17
a differentiator for business and give companies as a national licensing scheme and standardised
ACCOUNTS ACCOUNTS PHONE 1300 300 552
to security. I often hear manythe of our readers who October by Senator Reynolds, Assistant Minister are managers withincover largestory, corporations for security Home Affairs. This issue’s written by
a competitive edge. across the country. training requirements
DESIGN AND PRODUCTION Jonathan Rudolph DESIGN AND PRODUCTION
PHONEaccounts@interactivemediasolutions.com.au 1300 300 552 EMAIL EMAIL accounts@interactivemediasolutions.com.au
PUBLISHER PUBLISHER
ABN 919463 ABN56561,606 606Joseph 919463 Blackburn, Victoria 3130 Level Level 1,34 34 Joseph St, St, Blackburn, Victoria 3130 PHONE PHONE 1300 1300300 300 552 552 EMAIL enquiries@interactivemediasolutions.com.au EMAIL enquiries@interactivemediasolutions.com.au WEBSITE WEBSITE www.securitysolutionsmagazine.com www.securitysolutionsmagazine.com DISCLAIMER DISCLAIMER
The of this this Thepublisher publishertakes takes due due care care in in the the preparation preparation of magazine and magazineand andtakes takes all all reasonable reasonable precautions precautions and makes the accuracy accuracy of of makesall allreasonable reasonable effort effort to to ensure ensure the material but is is not not liable liable materialcontained contained in in this this publication, publication, but for The publisher publisher forany anymistake, mistake, misprint misprint or or omission. omission. The does not assume any responsibility or liability for any does not assume any responsibility for any loss inaccuracy lossor ordamage damage which which may may result from any inaccuracy or use of of oromission omissionin inthis this publication, publication, or from the use information makes no no informationcontained contained herein. herein. The publisher makes warranty, any of of the the warranty,express express or or implied implied with respect to any material materialcontained contained herein. herein. The reproduced Thecontents contentsof of this this magazine magazine may not be reproduced inANY ANYform formin in whole whole OR OR in in part without WRITTEN in WRITTEN permissionfrom from the the publisher. publisher. Reproduction includes permission includes copying,photocopying, photocopying, translation translation or reduced to copying, to any any electronicmedium medium or or machine-readable machine-readable form. electronic form.
WRITTENCORRESPONDENCE CORRESPONDENCE TO: WRITTEN Level1, 1,34 34 Joseph Joseph St, St, Blackburn, Blackburn, Victoria Level Victoria 3130 3130 1300300 300552 552 1300 enquiries@interactivemediasolutions.com.au enquiries@interactivemediasolutions.com.au
comment on the between attitudes Don Williams, onedifferences of the original authors of the report to security in Australia and to America, they and a long-time contributor Securitywhere Solutions,
If we havewe learned anything from been tragicat least 14 To date, know that there have events have plots occurred globally in recent majorthat terrorism foiled in Australia by our various years, it must be that worldagencies has changed – law enforcement andthe security over recent
often have travelof and According tohis many provides anto outline thework. report’s finding. In security understand thatmore openingmanagers, comments,Americans Williams writes, “There are
permanently – and cannot keep pretending years. However, as we former US Secretary of Defense that it hasRumsfeld not. 9/11 wasrightly not anand isolated incident Donald once so eloquently
terrorism is a clear andsecurity presentguards danger a than 120,000 licensed in and Australia. fact of daily life and thus, they treat security No one knows the exact number, as each jurisdiction
and if groups ISIS against have their way, such pointed out, like defence terrorism requires a attacks will become There government to get itmuch right more every frequent. time. A successful
and security workers with the due respect. In has a different way of defining security operators, contrast, they believe that Australian’s have a determining who should be licensed and how.” very blasé attitude towards security and it is this However loose that figure might be, 120,000 attitude that makes us much more vulnerable is still a significant increase in the number of to attack. licensed security personnel in Australia from the In my opinion, having recently travelled ‘guesstimated’ 80,000 of two decades earlier. through Egypt and Jordan, they are correct. However you choose to count them, licensed security
is a great deal more work to be done to ensure terrorist attack only requires the perpetrators to get it that we create the kind of effective security right once. Therefore, it is reasonable to conclude that culture within organisations and the broader if hostile groups intent on causing significant harm community that will enable Australian’s to be continue in their efforts, at some point in Australia’s safe and secure. And the work must begin with future we will inevitably join the rest of the Western security professionals. Let’s make 2018 the year world in experiencing a major terrorism incident. that Australia begins to take security seriously. n When that time comes, the question must and will
personnel have come to represent a significant
be asked, “Was everything that could be done to
portion of Australia’s national security apparatus.
prevent this incident actually done?” In reality,
A 2016 Productivity Commission report puts
until significant changes are made in the way that
police numbers, as of 2018, at more than 70,000. That
government and law enforcement across Australia
would mean that there are currently almost double
view the private security sector and the contribution
the number of licensed private security operatives
it can and does make to national security, then the
than there are sworn police in Australia. And yet,
answer must be no.
according to the ASPI report, the private security
The report outlines the issues, the actual and
sector is not mentioned in any of the top-level
potential capabilities and the problems that are
strategic counter-terrorist plans. The first and only
holding the sector back from being an active
mention is in the Mass Gathering Strategy issued
participant in the national counter-terrorist plans,
by the Australian New Zealand Counter Terrorist
and presents recommendations to enable the
Committee issued in 2017.
private security industry to become a recognised and
Both this issue’s cover story and the ASPI report
effective part of the counter-terrorist capability. n
PR O
SECURIT Y
PR
RALIA LTD UST FA RALIA LTD
Official Official Partners Partners O rigin a l Siz e Original Size
PR O
Y P R OV RYI TP R O V I D I D E E RCIUT
CU
SE SE
SECURITY
illuminating. However, my point is this: almost 20
N
USTRA F SAT R A L L I A A OU IA
STRALIA LTD AU OF STRALIA LTD AU
SECURITY
O C I AT I ASS ON O C I AT I ASS O
RS
SPAAL SPAAL
read both as they are extremely interesting and
OF
OF
PR O
RS
SSOCIAT RS A IO DE N SSOCIAT VI RS A IO DE N VI
years later, I find it frustrating to find that government
D LT D LT
SECURIT Y
why this is the case, and I would encourage you to
SSOCIATI ON O SSOCIATI RS A ON DE O VI
RS A DE VI
UST FA
O
go on to outline a wide variety of reasons as to
and law enforcement across the country still espouse blue colour changed to this colour green. blue colour changed to this colour green.
COPY/ARTWORK/TYPESETTING APPROVAL COPY/ARTWORK/TYPESETTING APPROVAL Please proof read carefully ALL of this copy/artwork/typesetting material BEFORE Please proof read carefully of this material BEFORE signing your approval to print.ALL Please paycopy/artwork/typesetting special attention to spelling, punctuation, signing your approval numbers, to print. Please pay special to spelling, punctuation, dates, times, telephone addresses etc, asattention well as layout.It is your responsibility to dates, times, telephone numbers, addresses etc,Press as well as layout.It is your responsibility to bring to our attention any corrections. Minuteman assumes no responsibility our attention anybeen corrections. Minuteman Press assumes responsibility for bring errorstoafter a proof has authorised to print and print re-runsno will be at your cost. for errors after a proof has been authorised to print and print re-runs will be at your cost. Signed.................................................................. Date........................ Signed.................................................................. Date........................
// SECURITY SECURITY SOLUTIONS SOLUTIONS 46 //
the same prejudices towards, and dismissal of, the John Bigelow value of private security in Australia. The world has Editor
John Bigelow Editor
securitysolutionsmagazine.com securitysolutionsmagazine.com
MFB are certified manufacturers of Class C and Class B cabinets including custom sizes upon request.
Nothing except craftsmanship. This has been the uncompromising tradition for more than 45 years as MFB builds its sought-after data cabinets and server/equipment racks.
DESIGNERS & MANUFACTURERS OF 19� RACK SYSTEMS
MFB’s products are practically designed and skilfully handcrafted to suit any need in any environment. And, importantly, they are made from quality materials. MFB is backed with years of experience in meeting specifications for all types of industries, matched with additional in-house quality standards and customer reporting, MFB stand proud as a leader to military, air traffic control and navy industries. MFB - an Australian Design Award recipient - is justifiably proud of its products. There is no need to accept second best.
AUSTRALIAN MADE MAKES AUSTRALIA
www.mfb.com.au
VIC NSW -
P (03) 9801 1044 P (02) 9749 1922
E sales@mfb.com.au E sydney@mfb.com.au
LEADERSHIP
ENTERPRISE RISK MANAGEMENT I
n this article, I will
Defining Risk Criteria
expand on the Enterprise
The organisation should specify the
Risk Management Model
amount and type of security risk that
and look at the process
it may or may not take relative to
as applied to security. As
objectives. It should also define criteria
readers of the previous article will recall,
to evaluate the significance of the risk
ISO31000 is the Australian Standard for
and to support the decision-making
Risk Management and the basis for
processes. Risk criteria should reflect
security risk planning, but there are other
the organisation’s values, objectives
models that can contribute.
and resources and be consistent with
COSO is an Enterprise Risk
BY JASON BROWN
policies and statements about risk
Management – Integrated Framework
management. The criteria should be
expands on internal control, providing
defined, taking into consideration
a more robust and extensive focus on
the organisation’s legal, regulatory
the broader subject of enterprise risk
and all other obligations, along with
management. It is not intended to and
stakeholder views.
does not replace the internal control framework, but rather incorporates the
Risk Assessment and Analysis
internal control framework within it;
The purpose of risk identification is
companies may decide to look to this
to find, recognise and describe risks
enterprise risk management framework
associated with security that might help
both to satisfy their internal control
or prevent an organisation achieving its
needs and to move toward a fuller risk
objectives. Relevant, appropriate and
management process.
up-to-date information is important in
COBIT 4.1 is an IT governance framework and supporting toolset that allows managers to bridge the gap between control requirements, technical issues and business risks. COBIT enables clear policy development and good practice for IT control throughout organisations. COBIT emphasises regulatory compliance, helps organisations to increase the value attained from IT, enables alignment and simplifies implementation of the enterprises’ IT governance and control framework. The risk management process applied to security involves the systematic application of policies, procedures and practices to the activities of communicating and consulting, establishing the context and assessing,
identifying risks. Risk assessment should be conducted systematically, iteratively and collaboratively, drawing on the
Risk Treatment
outcomes should be a planned part
The purpose of risk treatment is to select
of the risk management process, with
and implement options for addressing
responsibilities clearly defined.
risk. Risk treatment involves an iterative process of: • • •
knowledge and views of stakeholders. It should use the best available information supplemented by further enquiry as necessary. The purpose of security risk analysis is to comprehend the nature of risk arising from security and its characteristics including, where appropriate, the level of risk. Risk analysis involves a detailed consideration of uncertainties, risk sources, consequences, likelihood, events, scenarios, controls and
The risk management process for security
treatment options
and its outcomes should be documented
planning and implementing risk
and reported through appropriate
treatment
mechanisms. Decisions concerning
assessing the effectiveness of that
the creation, retention and handling of
treatment; deciding whether residual
documented information should take
risks are acceptable •
Recording and Reporting
formulating and selecting risk
if not acceptable, taking further treatment.
Selection of Risk Treatment Options Selecting the most appropriate risk treatment option(s) involves balancing the potential benefits derived in relation to the achievement of the objectives against costs, effort or disadvantages of implementation. Risk treatment can also introduce new risks that need to be managed.
their effectiveness. Preparing and Implementing Risk
into account, but not be limited to, their use, information sensitivity, and internal and external context. Over the 2019 edition, each of these process steps will be looked at in detail to assist in building your risk management process for security. n Jason Brown is the National Security Director for Thales in Australia and New Zealand. He is responsible for security liaison with government, law enforcement and intelligence communities to develop cooperative arrangements to
Risk Evaluation
Treatment Plans
The purpose of risk evaluation is to
The purpose of risk treatment plans is
support decisions. Risk evaluation
to specify how the chosen treatment
involves comparing the results of the
options will be implemented so that
risk analysis with the established risk
arrangements are understood by those
criteria to determine the significance
involved and progress against the plan
of risk. Decisions should take account
can be monitored. The treatment plan
process is often presented as sequential,
of the wider context and the actual
should clearly identify the order in which
served on a number of senior boards
in practice it is iterative.
and perceived consequences for
risk treatments should be implemented.
and committees, including Chair of
treating, monitoring, reviewing, recording and reporting risk. The dynamic and variable nature of human behaviour and culture should also be considered throughout the risk management process. Although the risk management
The organisation should define
minimise risk to Thales and those in the community that it supports. He is also responsible for ensuring compliance with international and Commonwealth requirements for national security and relevant federal and state laws. He has
the Security Professionals Australasia;
internal and external stakeholders.
the purpose and scope of its risk
Decisions should be made in
Monitoring and Review
member of ASIS International Standards
management for business security.
accordance with legal, regulatory and
The purpose of monitoring and review
and Guidelines Commission; Chair of
The internal and external context
other requirements.
is to assure and improve the quality
Australian Standards Committee for
and effectiveness of process design,
Security and resilience. As of February
is the environment in which the
The outcome of risk evaluation
organisation seeks to define and
should be recorded, communicated and
implementation and outcomes. Ongoing
2017, Jason has been appointed Chair of
achieve its objectives arising from
then validated at appropriate levels of
monitoring and periodic review of
the International Standards Committee for
security activities.
the organisation.
the risk management process and its
Risk Management.
8 // SECURITY SOLUTIONS
securitysolutionsmagazine.com
The Cobalt is an innovative low voltage motor driven door lock for swing doors. It has been designed to secure double acting doors and addresses the two biggest issues in door locking; the ability to align a misaligned door and the ability to release when requested, even with excessive load on the door. The Cobalt successfully overcomes these issues and offers the user an array of other features. To learn more about our complete range of smart and secure access solutions, contact dormakaba.
T: 1800 675 411 www.dormakaba.com.au
More than just a lock
CYBER SECURITY
CYBERSECURITY IS EVERYONE’S RESPONSIBILITY
BY TIM RIPPON
• Do not use the same passwords for multiple applications or online accounts. • Educate employees on what websites are okay to visit and what is to be avoided. • Use due diligence online when opening emails, clicking on links or downloading attachments. • Run continual email phishing campaigns with employees who are obliged to report suspect messages to the technology team. e work in an always
effective way to reduce the number
on, digital world
and ferocity of cyberattacks. Having
security-based information
cybersecurity awareness
where we are
a sound cyber awareness program
at hand, in a timely manner?
campaign so employees become
electronically
in place helps the integrity of
For example, are they aware
aware of what they can do and
connected every minute of every
sensitive corporate information to
of current threats and
day. Company reputation and
be better maintained.
vulnerabilities or have a
A conversation with your
W
fortune is based on all employees
• Technology: Do technology have
• Have an ‘it is personal’
what to avoid.
security information and event
cybersecurity staff or consultant
and suppliers maintaining effective
cybersecurity awareness program
management (SIEM) solution for
can enhance your cyber awareness
security practices. To develop
at every level of the organisation is
timely analytics?
footprint, where the first step is
cybersecure maturity, some simple
required to effectively mitigate risks
questions are required to be asked,
relating to cyberattacks.
Therefore, a holistic
for example: 1. Do employees adhere to policies
The Executive
• Legal: Are they actively
educating your executive to sponsor a
involved with security incidents
cyber awareness program in order to
when required?
protect your digital online assets. n
At the executive level, there should
Every Employee
be regular standing security items
It is personal!
and trainer of cybersecurity and
that are actively discussed in
Often, employee online security
business continuity. He holds a certified
meetings on a regular basis. Security
behaviours at home can determine
Master of Information Security (ISO
cybersecurity practices across
should be discussed frequently and
how they operate in the work
27001), certified Master of Business
our business functions?
their endorsement of cybersecurity
environment. Hence, considerable
Continuity (ISO 22301) and Lead
initiatives is paramount to a
effort in the workplace is required
Cyber Security Manager (ISO 27032)
your executives demonstrating
successful cybersecurity program, in
to educate and raise awareness on
from PECB. Tim is actively involved in
to employees?
turn reducing the number, as well as
cybersecurity, for example:
various industry groups, including the
severity, of cyber risks.
• Keep an eye out for suspicious
Australian Women in Security Network
and good governance? 2. Are your online habits at home the same as in the office? 3. Do we ‘bake in’ good
4. What cybersecurity culture are
As agreed by most security
Tim Rippon is an author, speaker
behaviours of co-workers
(AWSN) and the Business Continuity
professionals, humans are the
Across the Business
and have an anonymous
Institute, where he volunteered for
weakest link in the information
Various essential functions across
reporting mechanism.
five years, including two years being a
security chain; hence, cybersecurity
the business have their own roles to
really is everyone’s responsibility.
play, like:
discounted anti-virus/firewall
Tim is founder and director of elasticus,
• Human resources: Are adequate
software for home use.
advising Australian-based executives
Most organisations have
• Consider offering employees
board member of the BCI Australasia.
multiple insider threats that occur
background checks in place
• Do not share passwords and
each year; therefore, the human
when employing new staff?
enforce them to be changed
disaster recovery and business
element in cybersecurity must
Is cyber awareness training
every few months.
continuity prior to the occurrence of
never be underestimated, as good
included as part of the
cyber awareness is often the most
induction process?
10 // SECURITY SOLUTIONS
• Ensure personal passwords are not used in the workplace.
on how to best manage cybersecurity,
a major disaster or crisis. He can be contacted via mobile 0417 036 026.
securitysolutionsmagazine.com
Inbuilt ÂŽ Wi-Fi , Z-Wave & 433MHz radio Quick & easy install
Control lighting, temperature + appliances
Remote monitoring & control via UltraSync app TM
Wide range of accessories
Future Proof
24x7 monitored solution
Live streaming with audio
The latest in wireless home security & automation. As the NBN rolls out across Australia, many alarm systems that utilised traditional copper-based landlines will become obsolete. ZeroWireÂŽ offers a future proof solution, utilising IP or 3G communication methods, Wi-Fi, Z-Wave and 433MHz radio to deliver a state-of-the-art security and home automation system, that can be controlled via the UltraSyncTM app on smartphone or tablet. HSS0046-Dec18-V1
For more information on these and other best-in-class solutions from Hills call us on 1300 HILLS1 (445 571) or visit hills.com.au
facebook.com/HillsLtd/ CONNECT
E N T E RTA I N
SECURE
MARKET ANALYSIS
WHO’S WHO IN AUSTRALASIAN ACCESS CONTROL BY ALEX GANIN
n this issue, we
13 most popular players in the
was second place, which went
in almost all countries around the
explore the access
market as defined by users. In order
to dormakaba. This was worthy
world and there is no reason to
control market in
to achieve this, we targeted our
of further investigation because,
expect this region would be any
Australia and New
findings on the brands that are
while dormakaba (formerly KABA)
different. The top 10 is rounded
Zealand. In order to build this chart,
being used, or at least mentioned,
regularly feature in the top 10 in
out with the usual names such as
we examined information from
by a minimum of 25 companies
most other countries, the company
Aiphone, Honeywell, HID and Assa
3,973 companies that work in the
across our respondents.
rarely makes it into the top three,
Abloy, none of whom are strangers
which makes its second-place
to the top 10 ranking in most areas of the global market. n
I
security market. Based on the
The most acknowledged
number of players in access control,
company in the Australia and New
ranking in the Australia and New
it would be almost impossible to
Zealand market was Australia’s
Zealand markets quite exceptional.
analyse the performance and
own Inner Range. Given the size
As for DSC, a third place is not going
popularity of every brand.
and strength of this company
to make market watchers looking
and so on, check the source at
Therefore, we have refined our
locally, this was interesting, but not
to place a bet anytime soon. DSC
Global market for surveillance and
research findings to include the top
unexpected. What was unexpected
regularly rates within the top five
security equipment.
12 // SECURITY SOLUTIONS
To view more brands, companies
securitysolutionsmagazine.com
Smart Vehicle Identification
Photos credits: Shutterstock - aressy.com 04/18 - 10917
New Spectre reader: Let the good go, kick the bad out. Without delay. Meet the challenge of fast-track security at your vehicle gates. Spectre’s UHF-based vehicle ID reader is the first of a new generation: discreet by design, flexible in its configuration, secure and encrypted in its communication. Our new long-range reader is built to perform for up to 4 driveways, even in highly challenging environments. It’s the most robust reader on the market, yet intuitively easy to use. Welcome to speed and security - in a single solution.
SCALABLE | SMOOTH | SECURE | AGILE | STEALTH | INSTINCTIVE
www.stid-security.com Security Meetings Trophées de la sécurité Expoprotection ISC West APS
HUMAN RESOURCES
DISMISSING AN EMPLOYEE FOR UNDERPERFORMANCE BY GREG BYRNE
O
f all the ways in which
Employers must also be aware
he is going to improve, and then both
you can dismiss an
that the ‘three strikes and you are out’
parties should sign an improvement
employee, dismissing
situation cannot be used as a base for
plan to set the employee back on
for underperformance
underperformance dismissals.
track. Often, this type of conversation
is more complicated than terminating
All employers, either in the
• accrued annual leave or long service leave entitlements • redundancy or severance pay entitlements, where applicable. Double check that you are satisfied: • the reason for the dismissal is valid • the employee has been notified of the reason and given an opportunity to respond • that the warnings provided have
will improve performance for
been recorded and signed by at
employment for inappropriate
Australian security industry or
some time; it can sometimes be a
least the employer and preferably
behaviour, fraud or theft.
not, should follow a process when
permanent fix.
the employee. If the employee
The Fair Work Commission
managing staff, including when
refuses to sign a warning, ensure
defines poor performance as, “when
managing their performance.
3. Step three
that refusal is noted on his
an employee is not doing their job
When dismissing employees for
If the conduct does not improve,
personnel file and performance
correctly, or is behaving unacceptably
underperformance, the Australian
then you need to take further action.
at work, and includes:
Human Resource Institute
Provide the employee with a formal
• not carrying out their work to the
recommends a four-step process
written warning. If this is not done,
requirements of the National
as follows:
the employee has grounds to say that
Employment Standard and that
they had no idea there was a problem,
this complying has been recorded
1. Step one
or that the issue was resolved.
on the personnel file and the
All employees should be on a
You should never assume that an
performance management plan that
employee knows there is a problem.
Organise a meeting, tell the employee
for example, telling inappropriate
clearly outlines their key performance
Staring daggers and the cold shoulder
of the reason for the meeting and offer
jokes
areas, targets, review dates and
is not acceptable employer behaviour.
the employee a support person. The
• disruptive or negative behaviour
agreed-upon milestones. This plan
The quicker you take action, the
meeting should be held in a neutral
at work, for example, continually
should be in writing and signed off
faster it will be resolved. You may
setting, such as a conference room,
speaking negatively about
by the employer and the employee.
have to provide the employee with
with at least a witness appointed
the company.
The plan should be placed in the
more than one written warning.
by you and preferably one from the
There is a difference between
employer’s file or personnel file and
Although this sounds tedious and
employee as well.
underperformance and serious
regularly reviewed at meetings. At the
unnecessary, if you end up in the Fair
misconduct.”
meeting, the employee’s performance
Work Commission it is far better to be
verbal and written in the form of
required standard or not doing their job at all • not following workplace policies, rules or procedures • unacceptable behaviour at work,
What you are asserting in a
plan • you have complied with all
management plan.
The termination should be both
against the criteria of the plan should
standing on the moral high ground
a termination letter that puts your
dismissal for underperformance
be discussed and consensus reached
than struggling to explain why the
decision in writing and explains
is that the performance of the
on how they have gone. This meeting
employee was not given an adequate
how and when final compensation
employee is poor, that you have
and outcome should be documented
chance to improve.
and benefits will be distributed.
informed them of such and they have
on the plan and filed back in the
failed to improve, and therefore there
personnel file.
Notes should be taken to document 4. Step four
the employee’s response and all of
If attempts at improving performance
these documents should be kept in
2. Step two
have failed, you can terminate
the personnel file. If all goes well,
If performance against the key
the employee. This is of course
hopefully, you will never need them.
of underperformance is very
performance areas and other
if the employee has not already
subjective (see above), which has
measurable areas of the plan is
realised that he cannot match the
might be stressful for you, it is also
in the past been open to abuse
below what is expected and agreed
requirements of the job or the whole
very stressful for the employee.
by employers who are trying to
to, inform the employee that you
situation is just getting too hard and
The Fair Work Ombudsman has
rid themselves of employees who
are going to organise a meeting. You
he resigns. This is, of course, the
repeatedly stated, “Failing to dismiss
have ticked them off, or not done
can inform him that he can have a
easy way out. If you do not manage
an employee appropriately and
a particular job in the manner or
support person present, although it is
to garner a resignation, then follow
sensitively can lead to unhealthy and
to the level that was expected.
not compulsory. Make it clear in the
this process:
unproductive outcomes that may
Or the employer imposed the
meeting that if his conduct does not
tag of underperformance to rid
improve, you may have to dismiss him.
all his entitlements, including:
themselves of an employee for
Ensure this is in writing. Post-meeting,
• outstanding wages
other reasons.
have the employee think about how
• any payments instead of notice
is no room for improvement and it is time for them to go. However, the definition
14 // SECURITY SOLUTIONS
Ensure the employee has received
One final note; although this
affect your entire staff.” n Greg Byrne is the CEO and founder of Multisec Consultancy.
securitysolutionsmagazine.com
CIRCLELOCK
TOURLOCK
SPEEDLANE LIFELINE
TURNLOCK
The full entrance security product suite Boon Edam Australia is uniquely positioned to offer a full entrance security product suite. Ranging from full height turnstiles and speed gates, through to high security revolving doors and portals, Boon Edam has your entry secured. Find out why the world’s biggest names, including Fortune 500 companies and government institutions, rely on Boon Edam for their entrance security.
ASK US ABOUT INNOVATIVE NEW LEASING PLANS AVAILABLE ON ALL ENTRANCE SECURITY PRODUCTS.
Boon Edam Australia 1300 689 905 www.boonedam.com.au
RISK MANAGEMENT
RISK MANAGEMENT WITH PICTURES
BY DR KEVIN J. FOSTER
other elements of physical security design could be included in such a standards-based graphical user interface. The building is located in a precinct; imagine zooming recently attended a
When it comes to protecting
is a great example of where such
out from the 3D building user
Standards Australia
society from terrorism and violence,
a new user interface is needed.
interface and clicking on the areas
forum that focused
any approach to improving
Imagine a 3D picture of a building
around the building to provide
on future strategies
coordination of expertise amongst
on a website that you can access
links to other standards, relevant
for standards development and
all building professionals and
on your smartphone, tablet or
legislation and references needed
dissemination. One of the
trades has to be a good thing.
computer. If you are an architect
to consider the risk and resilience
wanting to know about standards
planning for the area. This could
I
innovations that grabbed my
Most design and risk
attention was the use of images to
management standards are
relevant to blast protection
include traffic control, pedestrian
create links to standards that we all
typically in the form of a book.
options for windows, click on a
movements, planning issues and
need to use.
Traditionally, this has been in paper
window on the building and you
precinct-wide design principles
form, but most people now use PDF
are immediately presented with
based on crime prevention through
development by Standards Australia
versions of those books for ease
links to all the relevant standards.
environmental design.
is HB188, which aims to describe
of reference. Like many people, I
If you are an engineer needing to
the use of physical security for
keep a list of standards that I have
know about bollard standards for
with building and precinct
addressing the risk of terrorism and
regularly used, but I am not always
protection of the building against
design, construction and facility
violent extremism inside, outside
aware of updates to standards or
vehicles used as a weapon, then
management should be formulated
and in the surrounding precinct
the publication of new standards.
click on the picture of the bollard
using graphical interfaces. Imagine
of a commercial building. There
Also, some older standards might
outside the building and that will
the impact on multi-disciplinary
are already many standards that
be withdrawn. Up until now,
present links to all the current
design, construction and
could be used to help executives,
conducting searches of standards
relevant standards on this subject.
management coordination! n
designers and builders decide
databases has been one way to
which measures they should
try to keep on top of the changing
perimeter door in the 3D picture
consider. However, there are so
standards landscape. However, this
will provide links to standards and
managing director of Foster Risk
many standards, guidelines and
can be laborious and not always
references that detail what needs to
Management Pty Ltd, an Australian
reference documents that need to
effective. There is a need for a
be considered for the selection of a
company that provides independent
be utilised in the decision process
better user interface that guides us
security door. Clicking on a picture
research aimed at finding better
that it is sometimes difficult to
to the standards we need to read
of a CCTV camera will provide links
ways to manage risk for security and
know where to start, and very easy
and use.
to standards. Lighting, vehicle
public safety, and improving our
access, structural blast protection,
understanding of emerging threats
pedestrian access control and all
from ‘intelligent’ technologies.
A handbook currently under
to overlook important standards or industry benchmarks.
16 // SECURITY SOLUTIONS
The use of physical security in and around a commercial building
Perhaps all standards associated
Clicking on an outward opening Dr Kevin J. Foster is the
securitysolutionsmagazine.com
NEW!
STRATEGY
GROW FASTER BY HELPING YOUR CUSTOMERS SELL TO THEIR OWN BY STEPHEN JOHNSON
I
skilling your clients can be a great
Develop Assets
businesses in the
to make it very successful. The asset
way to apply leverage and help
If your clients are in similar sectors
security market, you
you bring is not money but the
them lift sales. And along the way,
but in different regions, then the
sell to other
knowledge of how they can better
it will lift your sales to them.
marketing collateral you build
f, like most
businesses rather than consumers, you might be forgiven for thinking
And it can take very little money
is probably similar. So you can
spend their own money. You can win in at least two ways
Benchmarking
transfer it between clients with
you have little control over the
and sometimes three:
If you sell to a lot of different
little customising. This means
consumption of what you sell;
1. You win more sales.
companies, in different territories,
you have marketing assets you
because the performance of your
2. You win more clients.
then you can consider taking what
can repeat.
clients’ businesses plays a key
3. And, if you help your
you know works in one place and
factor in the performance of your
resellers, then you win better
applying it to another. You can also
Develop Systems
own. For example, you can only sell
brand quality.
help clients measure themselves
Borrow from the franchising model
against similar but non-competing
and develop the processes that use
as many cameras to your client as your client can sell to his or
Here is how you can help your
companies, and help them improve
your assets, like campaigns and
her customers.
clients and profit from doing so:
what they do and how they do it.
sales models, and enshrine them
This is not an expensive exercise.
in ways that make it easier for your
Your marketing, selling and retention of old customers might all
Collateral And Execution
It simply makes better use of what
clients to consistently get it right.
be very healthy. But if your clients
If your own team can generate
you already have access to.
This makes the process you build
are not doing as well, all you can do
marketing and selling collateral
is stack them up with your product
for you, like brochures, ads and
and wait.
scripts, then they can also generate
Retention, Database And Social Media
it for your clients. Most companies
If your clients have adequate lead-
Develop Training And Community
to help your customers sell more.
do not adequately represent
generation and lead-conversion,
Train your clients in how to use
This applies whether they are
themselves in their online, printed
you might be able to help them
your marketing and sales aids and
reselling your product or they are
or scripted materials and they do
keep their customers longer or
help them network. Become a
just consuming what you sell them
not execute campaigns very well. If
obtain more post-sales from their
builder of a community of kindred
as they sell their own.
you can improve both sides of the
customers. Retaining clients can
companies in non-competing
marketing multiplier – the message
be hard and getting clients to refer
sectors or regions and you will
and selling skill-set above your
and the efforts that take that
others or increase their spend with
build your own place in the
clients, you can take these skills
message to market – then you can
you can also be difficult if you do
industry. n
and inexpensively apply them for
achieve a lot for your clients with
not know how. So applying your
your clients.
minimal effort. They still cover the
knowledge to your clients can
Stephen Johnson is a Director
hard spend. You simply make that
help them leverage their wins,
of Strategy and Action, a business
spend more effective.
and boost their consumption of
strategy and marketing consultancy
your own product or service along
serving Brisbane, Sydney and
the way.
Melbourne. Stephen has created
So a strategy you can adopt is
If your company has a marketing
If it sounds like a lot of effort, and like a rather indirect way to grow sales, think again; this is a highly
once, work many times more.
leveraged way to increase business.
Sales Conversion
Your conventional marketing efforts
Some companies do not fail in
are a ‘push’ strategy. But helping your
their lead-generation but in their
efforts truly profitable is to bottle
growth strategies for companies
clients can create a ‘pull’ strategy by
lead-conversion. They fail to close
what you do so that you can roll it
from most sectors in Australia.
increasing their demand for what you
sales as well as they could. Using
out to more clients, faster, for less
He can be contacted at info@
sell them.
your company’s sales skills and up-
effort. You do this in three ways:
strategyandaction.com.au
18 // SECURITY SOLUTIONS
The way to make all these
and executed breakthrough
securitysolutionsmagazine.com
YO UR AC CES S TO REVO LUTI O N
FlowMotionÂŽ
For more information | 1300 364 864 | info@magnetic-oz.com | www.flowmotion-access.com |
LEGAL
STRUCTURING YOUR BUSINESS TO PROTECT YOUR ASSETS BY JUSTIN LAWRENCE
any people own their
Pty Ltd – then even if the business
own businesses, but
is sued, Callum has shielded the
life, Callum should undertake an
and the contributions are for
this is a mistake. At
lease from the firing line as best
asset protection risk assessment.
consistent and reasonable amounts.
this point, you are
he can, and the business will still
As part of that assessment, Callum
Similar strategies exist if the
probably asking yourself what I am
have premises from which to trade.
should ask himself what the most
risk assessment reveals matrimonial
talking about. People should not
If Callum is the sole director and
important thing is that he is trying
breakdown or claims against
own businesses in their personal
shareholder of Callie Dude Pty
to protect and who represents the
estates as Callum’s most pressing
capacities. Businesses should be
Ltd, then the company will take
greatest threat to that asset.
asset protection issue.
owned not by the proprietors of
whatever steps Callum directs
them, but by other people or
anyway, so he does not lose
protection structures may protect
things now will greatly assist
entities who are separated from the
any control.
assets from creditors, but not from
Callum – and his business – in the
matrimonial breakdown. Some
long run. n
M
day-to-day operation of the
Similarly, the business name
At any time during its trading
For example, some asset
the early days of Callum’s business
Giving some thought to those
business. But how do business
of Callum’s Security Distribution
structures may protect assets from
owners structure themselves
should also be held by an entity
matrimonial breakdown, but may
appropriately? Here is a bit of an
other than Callum. Ideally, Callum
not protect from claims brought
with Henderson & Ball Solicitors,
action plan.
would have a separate company
against Callum’s estate after he
5 Wellington St, Kew, Victoria, and
that owns the business name
dies. Once Callum has undertaken
practises in the areas of Commercial
should be registered in the name
– that is, a company other than
his full assessment, he can structure
Litigation, Criminal, Family and
of a company or other entity. Take,
Callie Dude Pty Ltd. Then, even
and plan his asset protection risk
Property Law. Henderson & Ball
for example, Callum’s Security
if the company holding the lease
strategy. Let us look at one of those.
have Law Institute of Victoria
Distribution. Now, Callum is a
is wound up or liquidated, the
young go-getter full of ideas about
business name would be kept free
has assessed his own personal
of Business Law, Property Law and
how to turn his standalone, shop
from claims.
bankruptcy as his greatest threat. To
Commercial litigation. Mr. Lawrence
start with, Callum should not own any
and Henderson & Ball can be contacted on 03 9261 8000.
For starters, the business name
Let us assume that Callum
Justin Lawrence is a partner
accredited specialists in the areas
front operation into a multi-state,
When Callum’s Security
fully franchised operation. Callum
Distribution buys materials and
assets of significance. His house and
intends to lease modest, yet
supplies, it should do so under a
car should not be in his own name. As
comfortable, premises in a semi-
name other than Callum’s private
a proprietor of a business, Callum’s
taken to ensure its accuracy, the
industrial part of the city and to
name. Given that the business
assets are best held in the names
information contained in this
throw his doors open for business.
name is owned by a company, that
of others (even though Callum will
article is intended to be used as a
name could do. However, in an
be advised that holding his home
general guide only and should not
named on his lease? Not Callum,
ideal world, a new company would
in the name of a company will have
be interpreted or taken as being
that is for sure. Why? Because at
be set up for that purpose. That
tax consequences which would not
specific advice, legal or otherwise.
this stage, the business is Callum. If
company – let us call it Callum
otherwise apply if the house was in
The reader should seek professional
something happens to Callum – he
Security Pty Ltd – would apply
his own name). If he can manage it,
advice of a suitably qualified
is sued or he is in a car accident
for credit, issue purchase orders
Callum should pay as much money as
practitioner before relying upon
and is unable to keep working or
and pay invoices on behalf of the
he can afford up to the threshold into
any of the information contained
pay the rent – then anyone chasing
business. If, for any reason, the
his superannuation fund.
herein. This article and the opinions
the business for money will chase
business had insufficient funds
If, despite his best efforts,
Callum. If he loses that fight, he is
available to pay creditors, then
Callum is made bankrupt, he can
opinions of the author and do not
a good chance to lose the business
Callum Security Pty Ltd would be
prevent the money paid into his
necessarily represent the views
and the lease.
the entity sued for the money. At
superannuation fund being clawed
or opinions of Australian Media
the same time, the business name
back by his trustee in bankruptcy.
Group Pty Ltd or any advertiser
the name of a separate entity – let
and lease would be quarantined
While this strategy is limited, it can
or other contributor to Security
us call his company Callie Dude
from that law suit.
be effective if it is put in place from
Solutions Magazine.
Who should be the tenant
If, however, the lease is held in
20 // SECURITY SOLUTIONS
Whilst every effort has been
contained in it represent the
securitysolutionsmagazine.com
THINKING ABOUT SECURITY
POOH AND CROWDED PLACES BY DON WILLIAMS
W
innie-the-Pooh has
Why else would there be all
consequence table and therefore,
the reality of such attacks, then
such an ability to see
these reviews and guidance on
makes the resultant risk rating
we can show owners how they
and state the true
terrorism and crowded places
unacceptable. As a result, most
can continue to operate and
nature of things that
unless it was to guarantee a safe
assessments would recommend
manage the risks in a realistic and
environment? We know better.
the activity not occur. We saw
practical manner.
Benjamin Hoff has likened him to a Taoist Master. Perhaps the ability to
We can restrict the ways in
this when local councils looked at
It may not be palatable;
identify and explain that which is
which an attack can be launched,
cancelling ANZAC Day events last
owners and operators (and the
obvious but not always recognised
and we can limit the size and
year. Of course, if the business
public) may want to hear that they
is something we should develop.
speed of a vehicle that can enter
relies on crowds, then closing
are protected and no one will die
a crowded place. We can limit
down is not an option. How can
from an attack in a crowded place,
at the moment on protecting
the size of an explosive item
we provide effective and accurate
but the simple truth is that they
crowded places. Should we, as
brought into an area. We may be
risk assessment?
will. To pretend otherwise and to
security specialists, point out
able to search people to prevent
that we cannot. We can reduce
There is a lot of emphasis
Perhaps we need to point
work with risk assessments that
weapons being introduced. But,
out that if the incident being
avoid this fact is delusional and
the attack vectors and we can
the nature of the event, the built
assessed is an attack in a
not helpful.
put measures in place to limit the
environment, the ‘image’ of the
crowded place, then multiple
number of fatalities, particularly
site and the willingness of the
injuries/fatalities will occur.
inner Pooh and be willing to see
those that may die later. What
owners, operators and patrons all
The ideal consequences would
and state the obvious. n
we cannot do is stop someone
limit the likelihood controls. We
be no fatalities, but medium
from entering a public place and
can also look at how the site will
consequences – for this type of
committing an atrocity.
respond after an incident; what
incident – would be multiple
is a recognised thought leader in
Perhaps we should access the
Don Williams CPP RSecP ASecM
Somebody has to state the
consequence mitigation measures
casualties and high end/
security, emergency management
obvious; there appears to be a
are in place to limit the loss of life
unacceptable consequences
and related disciplines. His book
perception, or perhaps a desire,
and to prevent further deaths?
would be additional post-
Bomb Safety and Security: the
incident fatalities.
Manager’s Guide is available from
by the public and even elements
One of the biggest problems
within government that everyone
is how we assess risks. Normally,
If we are willing to adjust
can be protected everywhere.
a fatality is at the high end of the
the risk definitions to match
22 // SECURITY SOLUTIONS
Amazon. Don can be contacted via email donwilliams@grapevine.net.au
securitysolutionsmagazine.com
Intelligent security solutions from Dahua Technology Discover Dahua, a world leader in video surveillance, offering high value total security solutions to safeguard assets, communities and infrastructures.
now available at Hills! Unified Management Platform Video Surveillance
Unified UnifiedManagement Management Platform Platform Video VideoSurveillance Surveillance
Unified Management Platform Video Intercom Video Intercom
Video Surveillance - Advanced video collecting and analysing - Wide coverage w/o blind angle
Video Surveillance Video Surveillance
Unified Management Platform Unified Management Platform
- Advanced video collecting and analysing - Advanced video collecting and analysing - Wide coverage w/o blind angle - Wide coverage w/o blind angle
- High reliability with low running cost - High reliability with low running cost - Scalable and customisable - Scalable and customisable
HSS0031-July18-version 1
For more information on these and other best-in-class solutions from Hills call us on 1300 HILLS1 (445 571) or visit hills.com.au
facebook.com/HillsLtd/ CONNECT
E N T E RTA I N
SECURE
- High reliability with low running cost - Scalable and customisable
Video Intercom Video Intercom - Support both IPIP and Analogue - Support both and Analogue - Attractive design - Attractive design
EVENTS
for industry professionals to protect their organisations and clients from both physical and cyber threats. CSE provides holistic solutions for today’s connected organisations. Working with SIA, ISC West also features world-class education to learn about every facet of the security industry. Visit www.iscwest.com for more information.
PNG Security Congress 4–6 March 2019
register.html to register your interest
use technology and data to better
Security Exhibition & Conference 2019
Port Moresby, Papua New Guinea
or email info@sectecpng.com for
understand and manage their
24–26 July
Now is the time to plan to attend a
more information.
building performance.
International Convention Centre,
Visit www.sectecpng.com/
world-class security and technology
and strategic advice on how to
For more information visit
conference and exhibition – SecTec
Total Facilities
PNG Congress.
20–21 March 2019
www.totalfacilities.com.au.
Darling Harbour, Sydney In 2019, the Security Exhibition & Conference is heading back
International Convention Centre,
ISC West
and professionals will converge
Darling Harbour Sydney
10–12 April 2019
on Port Moresby, PNG, in March
Total Facilities is a two-day live
Sands Expo Convention Center,
Conference is the industry’s annual
2019 for the first Oceania premier
experience and celebration of ideas,
Las Vegas
opportunity to reunite for three
security industry event, with a
connections and opportunities for
ISC West is THE largest security
days of quality networking and
security conference and exhibition,
the nation’s FM and building-related
industry trade show in the U.S. At ISC
unrivalled education alongside a
real-world challenges presented and
communities. With an exciting new
West, you will have the chance to
showcase of the most innovative
a glimpse into the future of global
Smart Zone featuring innovative
network with over 30,000 security
solutions to the Australian
security integration and trends.
start-ups, lively speaker discussions
professionals through New Products
market. For over three decades,
and the very latest FM solutions,
& Technologies encompassing
it has been the largest and most
electronic security and safety
as well as exclusive leadership and
everything from access control to
established commercial event for
solutions for aviation, banking,
networking events, Total Facilities
unmanned vehicles from over 1,000
the security industry in Australia,
infrastructure, industrial sites,
is the most valuable and rewarding
Exhibitors & Brands.
bringing together the entire
mines, commercial buildings,
destination for anyone in the FM &
residential towers, building and
CRE industry.
Security industry specialists
The Congress will feature
development; the best of the best in
Our 2019 event will feature a
In 2019, ISC West will
distributors, security professionals and end-users to connect
• new products and technologies,
and create unparalleled
• intelligent CCTV, access control
hub of technological innovation
encompassing everything
which presents new technologies
from access control to
and solutions to help you create
unmanned vehicles.
solutions
smarter, greener buildings. The new
supply chain of manufacturers,
attractions including:
Smart Zone designed as a thriving
• advanced video surveillance
The Security Exhibition &
offer attendees a host of
world class offering: and alarms systems
to Sydney.
• Unmanned Security Expo,
business opportunities. The entire team is looking forward to once again reuniting with more than 4,500 security
• intelligent traffic solutions
zone offers visitors a dedicated
introduced in 2017, is an event
professionals and over 150 leading
• asset management systems
environment to look for integrated
within ISC West focusing on
suppliers. The 2019 show is set
• drone capability
and cloud-based solutions to
unmanned aerial vehicles (UAVs),
to see some interesting new
• software cyber management
improve operations and deliver
unmanned ground robotics and
innovations as well as a host of
business value.
vehicles (UGVs), and the various
new attractions.
solutions • innovative video intercoms
According to industry research,
• large enterprise systems
IoT technologies will be more
• mechanical locking integration
pervasive in smart commercial
software and applications that support them. • Connected Security Expo (CSE)
Make sure you put the dates in your diary. We look forward to seeing you again in Sydney in
buildings than anywhere else over
moved to the ISC West show
2019 for the Security Exhibition &
• emerging technologies.
the next three years. This zone
floor in 2017! As the digital
ASIAL Conference!
Do not miss out! Schedule, budget,
is designed to deliver visitors
and physical worlds collide,
plan to be there and stay informed.
seeking industry-class solutions
it is increasingly important
with electronic security solutions
24 // SECURITY SOLUTIONS
Visit securityexpo.com.au for more information. n
securitysolutionsmagazine.com
THE ALL-NEWTXF-125E BATTERY OPERATED QUAD BEAM Introducing the eagerly anticipated TXF-125E; a high performance Quad Beam sensor designed for battery operation - perfectly suited for rapid deployment in creating temporary or permanent secure perimeter intruder systems. With 4 selectable frequencies, multiple beam sets can be used without crosstalk, whilst adjustable detection distance allows a single beam set to be re-deployed in a variety of installations throughout its operational life. Two 3.6V (17Ah) batteries power each unit for up to 5 years of service.
NEW!
ACTIVE IR BEAMS The ultimate in trouble free perimeter detection for distances up to 200m outdoor / 400m indoor.
+61 (3) 9544 2477
email: oz_sales@takex.com
HIGH-MOUNT PIR Triple mirror optics for maximum detection performance at 2 to 6m.
BEAM TOWERS Rugged floor and wall mounted enclosures in 1/1.5/2/3m heights.
INDOOR PIR Spot, 360°, wide angle, and curtain detection from 2 to 4.9m height.
OUTDOOR PIR Hard-wired or battery operated outdoor PIR up to 180° x 12m .
1300 319 499 csd.com.au www.takex.com
TAKEX AMERICA
VIC: Mulgrave, Tullamarine NSW: Northmead, Waterloo ACT: Fyshwick QLD: Loganholme SA: Marleston WA: Balcatta
FEAUSRE
IDENTIFYING SOMEONE WHO MAY BECOME A THREAT
INSIDER ATTACK PREVENTION
26 // SECURITY SOLUTIONS
securitysolutionsmagazine.com
BY DR LISA WARREN
With the advent of the World
Ideological motives based on
Wide Web in 1993, the workplace
politics, culture or religion are an
changed forever. Traditional
increasing concern, arising when
methods of work have been
people are influenced by extreme,
replaced by sophisticated software
often highly right-wing views.
and communication technologies,
Radicalisation may occur
and companies are much more
where employees become
exposed to external scrutiny. The
sympathisers of extremism and
modern workplace heaps pressure
cause threats to staff safety, the
on employees, mental health
security of protected data and IP,
has become more complex and
and business continuity. Explains
companies are exposed to more
Dr Lisa Warren, “Radicalisation
risk vectors than ever before.
can take several forms, such
With this massive growth in
as condoning violence against
technology comes a rise in the
particular targets, or adopting
vulnerabilities around storage
more extreme and radical
of intellectual property (IP).
views. This becomes the basis
Cybersecurity threats to data
and justification for criminal
and IP can severely compromise
activity perpetrated against an
an organisation and do serious
organisation.”
damage to brand credibility.
Insider attacks include data theft, malicious software
Identifying an Insider Threat can be Critical for Risk Avoidance Insider threats to an organisation
securitysolutionsmagazine.com
downloads that halt or delay critical systems, violence, as well as blackmail and extortion. “It pays to be aware
come from a number of sources
of employees who hold
and there is no absolute
particularly strong and fixed
distinction that classifies someone
views that set them apart from
as high risk. However, there are
the organisational culture,
patterns of behaviour that can
particularly when their colleagues
trigger a warning.
report feeling apprehensive or
SECURITY SOLUTIONS // 27
FEAUSRE
fearful of them. When these
or hers. In one case, Dr Warren
destroy the reputations of
this should be raised with line
fixations are about the responses
provided threat management for
individuals and companies.
management, security or HR.
they are planning for the
an organisation targeted for many
injustices they perceive from
Fixation behaviour involves
As well as a potential violation
years by an ex-employee who
the situation where an employee
of code of conduct, such views
their employer this should also
believed he was unfairly dismissed
keeps bringing a conversation
can be a behaviour that signals
herald concern. These employees
six weeks into the probationary
back to a defined grievance, which
the person is on a pathway to
justify in their minds how the
period of his employment.
is a sign that he is stewing on a
violence,” explains Dr Warren.
company has done badly by them,
Poor psychological health
particular topic or problem.
This also relates to changes in
thereby justifying an attack on the
can be a root cause of this over-
organisation as a way of evening
interpretation, as individuals
is another sign that can lead
an employee changes his or her
up the ledger.”
become fixated on one aspect of
to internal threats. “We all say
personal identification quite
their life and work to the point
something about who we are
rapidly, such as shaving their head
for example, may incite an attack
where it consumes them. In cases
and who we identify ourselves
and getting tattoos, or dressing in
based on the person’s perception
where the individual is fixated
as by the way we dress, the jobs
a military style in the workplace.
that a company has polluted
on his workplace grievances, a
we choose and how we interact
the environment, or someone
dip in performance or something
with others. This extends to what
with very strong societal beliefs
not going according to plan may
we do with our time outside the
might have a grievance based on
result in grudges and attempts to
workforce and the views and
What Drives most Crimes against an Organisation?
a company using child labour in
strike out against the company.
attitudes that we describe to
Ultimately, the majority of
developing nations.
Social media, Dr Warren explains,
others. However, if you notice a
crimes against an organisation
can provide a place to vent, seek
colleague starting to talk about
are motivated by the common
involve something as simple
confirmation from others – many
a particular, often divisive topic,
factor of money. Embezzlement
as missing out on a promotion
of whom have no knowledge
such as radicalised religious
is a frequent form of attack and,
someone thought was clearly his
of the situation – and publicly
groups, politics or violence, then
in many cases, is motivated by
Environmental extremism,
Over-interpretation may
28 // SECURITY SOLUTIONS
Identification behaviour
behaviour – for example, where
securitysolutionsmagazine.com
“Cybersecurity threats to data and IP can severely compromise an organisation and do serious damage to brand credibility.”
risky situation, identify the
into human resources and
threat and nullify it with as
mental health strategies
little fuss as possible. A threat
in workplaces.
management approach is both
The two sectors leading the
restorative and educative and
way in Australia are police forces
more effectively sets clear
such as Queensland Police and
boundaries and expectations,
the Australian Federal Police
reducing persistence and violence
(AFP), who have developed
risks more effectively than a
Fixated Threat Assessment
punitive approach.
Centres, and universities who utilise threat management in
Becoming Proactive rather than Reactive towards Insider Threats from the IT space is important
Three Steps towards Recognising and Mitigating the Risk of Insider Attack
as well, as it allows a company
1. Provide organisations with the
Moving the discussion away
to evaluate threats at the source
opportunity to expand their
and become proactive.
definitions of insider threats
A collaborative response
an addiction to gambling. This can involve the theft of data, files or anything that can be
• Are there warning behaviours in this situation? • Where are the opportunities
their Safer Community teams.
to cover all circumstances
between policing, security and
where current or former staff
forensic mental health addresses
have taken a more radical
risk in many situations, from
position in their attitudes, and
counterterrorism to workplace
use this as a justification for
violence to family violence. “Aggressive employees can
any problem. 2. Broaden what constitutes
sold or passed on for monetary
for triaging risk, preventing
be supported to understand
a high-risk individual and
gain. Stealing to feed a gambling
escalation and managing
the harm they have done to
couple this with a strong
addiction is not limited to any
the threat to negate it
themselves and others by their
set of rules and corporate
particular demographic, but can
before it becomes a force in
behaviour, and have structures in
be both male and female, involve
the organisation?
place so that they do not choose
3. Take a boundaried, educative
problem behaviours in future.”
and stepwise rather than
older and younger workers, and not necessarily be tied to employees at the lower end of the pay scale.
What Steps can an Organisation take to Recognise the Danger Signs? Warning signs, or trigger
What Measures should an Organisation take to Mitigate the Risk of Insider Attack?
Large organisations in the
governance.
punitive approach, letting
US have for decades employed
decision makers know what
forensic mental health and
areas to be concerned about,
threat assessment experts to map
then allowing the organisation
A code of conduct is a very
out risk mediation solutions and
to form ideas based around
important tool for an enterprise
proactively protect employees
that knowledge and the
to include in its security and
and the organisation. This has
company’s own ideologies. n
risk plan. “A code of conduct
begun in Australia, but is less Dr Lisa Warren presented
allows an organisation to hold
well-developed. Dr Warren
behaviours for rogue employees
people accountable for problem
believes it is only a matter
at the 2018 ASIAL Security
is an area where psychologists
behaviour, rather than punishing
of time before Australian
Conference, held at the Security
examine violent threat assessment
them for it. Punishing problem
companies look routinely at
Exhibition & Conference. For more
and ask the questions:
behaviour has never worked.”
threat management as a means
great insights like this, secure your
• What are the factors that
It is critical to provide
of de-escalating insider threats
tickets to this year’s conference at
should cause concern?
the right tools to approach a
by building threat management
securityexpo.com.au
securitysolutionsmagazine.com
SECURITY SOLUTIONS // 29