Records in place now, not later

Issue 7 2022 Editor's Choice, Security Services & Risk Management

It is important, after an incident, to have records in place as soon as possible. Too often the matter is left for the day when the company is going to court, or a disciplinary hearing is scheduled.

We are all familiar with how long after an incident a matter will be brought to court or the hearing activated, and how often the proceedings will be postponed. This fact alone should be enough reason to ensure records are secured without any delay.

Incidents happen at very inconvenient times and usually management will only hear about it much later. By that time too many people are already involved or have had something to say.

The number of people involved can be controlled by ensuring they all submit the necessary affidavit within a day or two after the incident. Soon the message will be clear and the ‘crime scene’ purified.

The good and standard practice of ensuring completed, signed and dated affidavits for all criminal and disciplinary matters are on record without delay will prove to be the golden standard for any department, organisation or company. Take note: an affidavit is only valid when signed and dated.

Record-keeping basics

Ensure your organisation or department is familiar with records that may be requested as part of criminal or disciplinary proceedings. A checklist for records to be in place should be available and should be reviewed annually at the least.

The records must be evaluated for correctness in terms of references to the incident, and the relevant dates reflected in these documents complete the chain of evidence and chain of custody. All records must be traceable to the date and time of the incident.

Securing the relevant records (including affidavits) within days is important for the following reasons:

• The relevant person may not be available in future to provide the records/affidavit.

• The relevant person left the environment, has no commitment to the environment anymore and such a request at a later stage may simply be ignored.

• The relevant person needs to rely on their memory of the incident at a later stage to complete the records or to submit an affidavit.

• A record or affidavit provided at a much later stage than the date of the incident will leave room for the defence to question the credibility of the information and the person’s memory.

• Indicating in court that records were compiled by notes that were made at the time of the incident may result in the court requesting access to the mentioned notes.

• Such a request by the court must be complied with and can potentially lead to more questions being asked on the matter, especially if the notes do not relate to the affidavit.

• If, for some reason, such notes are not available as referred to, the person will be seen as an unreliable witness.

• Departments, organisations and companies with a history of many incidents must have a policy and a sound system in place, ensuring the records are in place within 2 to 3 days of the incident.

• An organised environment creates trust and usually has an easier day in court.

• The message will soon be clear that the required records are available and sound.

Managing the records is an essential part of the process. The saying ‘what gets managed, gets done’ has a lot of value, as often experienced by management.

Records must be secured in an organised manner by having all information related to a specific incident easily available and together. Records must be referenced and traceable to the specific incident (see article in Hi-Tech Security Solutions, Issue 8 2021, www.securitysa.com/14945r). The referencing system to use needs to be documented and not determined by each individual working on these cases.

Archiving of records must also be done in such a manner that the records do not deteriorate over time.

A policy needs to be in place on how long records need to be archived, taking into consideration possible claims at a later stage. It is recommended that legal advice is obtained on this matter. On the completion of the criminal case, there is also the possibility of a civil case.

Policies and procedures are of great value in providing a standard approach, and can also be used for managing performance.

Rather be prepared for the worst than lose a case because of a lack of sound records when it was possible to have such records secured.

For more information contact Sonja de Klerk, +27 82 778 9249, sonsdeklerk@gmail.com, www.linkedin.com/in/sonja-de-klerk-034909202/



Sonja de Klerk.

Sonja de Klerk retired from the SAPS Forensic Science Laboratory as a brigadier. She provides expert advice on CCTV management to secure images as evidence and presents training courses on CCTV management for footage to be presented in court, forensic evidence to expect as part of criminal activities, evidence management, how to present expert testimony in court and the importance of traceable records. Her expertise is also available for independent and confidential audits, evaluations and consultation on the traceability of records in an organisation. She is also the author of ‘The Complete Manual on CCTV Management’ (second edition).




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

“This Is Theft!” SASA slams Mafoko Security
News & Events Security Services & Risk Management Associations
The Security Association of South Africa (SASA) has issued a stark warning that the long-running Mafoko Security Patrols scandal is no longer an isolated case of employer misconduct, but evidence of a systemic failure in South Africa’s regulatory and governance structures.

Read more...
Making a mesh for security
Information Security Security Services & Risk Management
Credential-based attacks have reached epidemic levels. For African CISOs in particular, the message is clear: identity is now the perimeter, and defences must reflect that reality with coherence and context.

Read more...
From friction to trust
Information Security Security Services & Risk Management Financial (Industry)
Historically, fraud prevention has been viewed as a trade-off between robust security and a seamless customer journey, with security often prevailing. However, this can impair business functionality or complicate the customer journey with multiple logins and authentication steps.

Read more...
Security ready to move out of the basement
AI & Data Analytics Security Services & Risk Management
Panaseer believes that in 2026, a board member at a major corporation will lose their job amid rising breaches and legal scrutiny, as organisations recognise that cyber risk is a business risk that CISOs cannot shoulder alone.

Read more...
Cyber remains top business risk, but AI fastest riser at #2
News & Events Security Services & Risk Management
The Allianz Risk Barometer 2026 ranks cybersecurity, especially ransomware attacks, as the #1 risk, while AI is the biggest riser and jumps from #10 to #2, highlighting the emerging risks for companies in almost all industry sectors.

Read more...
Access trends for 2026
Technews Publishing SMART Security Solutions RR Electronic Security Solutions Enkulu Technologies IDEMIA neaMetrics Editor's Choice Access Control & Identity Management Infrastructure
The access control and identity management industry has been the cornerstone of organisations of all sizes for decades. SMART Security Solutions asked local integrators and distributors about the primary trends in the access and identity market for 2026.

Read more...
Access data for business efficiency
Continuum Identity Editor's Choice Access Control & Identity Management AI & Data Analytics Facilities & Building Management
In all organisations, access systems are paramount to securing people, data, places, goods, and resources. Today, hybrid systems deliver significant added value to users at a much lower cost.

Read more...
Zero Trust access control
Technews Publishing SMART Security Solutions CASA Software NEC XON Editor's Choice Access Control & Identity Management Information Security
Zero Trust Architecture enforces the rule of ‘never trust, always verify’. It changes an organisation’s security posture by assuming that threats exist both inside and outside the perimeter, and it applies to information and physical security.

Read more...
OT calculator to align cyber investments with business goals
Industrial (Industry) Information Security Security Services & Risk Management
The OT Calculator has been developed specifically for industrial organisations to assess the potential costs of insufficient operational technology (OT) security. By offering detailed financial forecasts, the calculator empowers senior management to make well-informed decisions.

Read more...
SA availability of immutable backup storage appliance
CASA Software Infrastructure Security Services & Risk Management
CASA Software has launched the newly released Nexsan VHR-Series, a fully integrated, enterprise-class, immutable backup storage appliance purpose-built for Veeam software environments, with usable capacity ranging from 64 TB to 3,3 PB.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.