Revised ASIS Security Risk Assessment Standard

Securex 2024 Training & Education

ASIS International has announced the release of a revised American National Standards Institute (ANSI ) - approved standard dedicated to security risk assessments. The ASIS Security Risk Assessment (SRA) Standard has been revised and designed to revolutionise how organisations assess and manage security risks. Developed by a team of seasoned security professionals, the ASIS SRA Standard offers an up-to-date and forward-looking comprehensive and systematic approach to identifying, analysing, and evaluating security risks, ultimately empowering organisations to safeguard their assets, mitigate threats, and enhance resilience.

“The ASIS Security Risk Assessment Standard is the result of extensive collaboration and expertise from a diverse group of leading security professionals with expertise in conducting security risk assessments,” stated ASIS International’s SRA Technical Committee Co-Chair, Jennifer Holcomb, PE, PMP, PSP, CPP, CPD. “By outlining a systematic approach to security risk assessment, this standard empowers organisations to proactively identify and address vulnerabilities, ultimately strengthening their security posture."

The ASIS SRA Standard sets the benchmark for excellence in security risk assessment practices. With its robust framework and detailed guidance, this standard equips security practitioners with the tools and methodologies needed to conduct thorough and effective security risk assessments in diverse environments.

Key features of the ASIS SRA Standard include: 

Comprehensive scope: The standard provides a detailed outline of the scope, objectives, and principles of security risk assessments, ensuring that all aspects of the assessment process are thoroughly covered.

Establishing the SRA context: This section delves into the foundational elements of the SRA, including needs assessment, defining objectives, delineating roles, and responsibilities, and ensuring compliance with legal and other requirements.

Preparing SRA activities: This section offers practical guidance on authorisation, information gathering, planning, and documentation; preparing practitioners to execute the SRA process. 

Conducting SRA activities: From risk identification to evaluation, this section outlines the essential steps in analysing and assessing security risks, providing methodologies for both qualitative and quantitative analysis.

Post-SRA activities: Following the assessment, this section guides organisations through implementing risk treatments and establishing ongoing monitoring and improvement mechanisms.

General principles: This section emphasises impartiality, objectivity, competence, confidentiality, and the ethical and professional standards that underpin the SRA process. 

Contents of the Security Risk Assessment Report: This section provides a template for reporting findings and recommendations and ensures clarity and consistency in communicating assessment outcomes.

With its emphasis on best practices, transparency, and continual improvement, the ASIS SRA Standard is poised to become the go-to resource for security professionals worldwide. Whether you are a seasoned practitioner or new to the field, this standard offers invaluable insights and detailed guidance for enhancing your organisation's security posture.

The ASIS Security Risk Assessment Standard is now available as an eBook and in print.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Gallagher Security expands Digital Badge Programme
News & Events Access Control & Identity Management Training & Education
Following a successful launch and roll out across Australia and Papua New Guinea in 2023, Gallagher announced its Digital Badge programme is now available to channel partners and end users across the rest of APAC IMEA.

Read more...
The need for integrated control room displays
Leaderware Editor's Choice Surveillance Training & Education
Display walls provide a coordinated perspective that facilitates the ongoing feel for situations, assists in the coordination of resources to deal with the situation, and facilitates follow up by response personnel.

Read more...
The need for integrated control room displays
Editor's Choice Surveillance Training & Education
Display walls provide a coordinated perspective that facilitates the ongoing feel for situations, assists in the coordination of resources to deal with the situation, and facilitates follow up by response personnel.

Read more...
Organisations fear AI-driven cyberattacks, but lack key defences
Kaspersky Information Security News & Events Training & Education
A recent Kaspersky study reveals that businesses are increasingly worried about the growing use of artificial intelligence in cyberattacks, with 56% of surveyed companies in South Africa reporting a rise in cyber incidents over the past year.

Read more...
ONVIF launches new online learning initiative
Training & Education Surveillance News & Events
ONVIF has released the first course in a new online learning initiative designed to promote greater knowledge and understanding of ONVIF's workings. The first “Introduction to ONVIF” course is now available.

Read more...
Unique fire detection challenges in hospitals
Securiton Fire & Safety Healthcare (Industry) Training & Education
Africa’s healthcare sector is a growth opportunity for business as new hospitals bring better health for millions, and the fire safety industry has a key role to play by ensuring these long-desired new hospitals do not go up in flames.

Read more...
South African youth robotics team takes world title
News & Events Training & Education
A South African youth robotics team recently won the 2024 FIRST Tech Challenge (FTC) World Championships. FTC is an international robotics competition designed to ignite high school students' passion for STEM (Science, Technology, Engineering and Mathematics).

Read more...
SMARTpod talks to The Risk Management Forum
SMART Security Solutions Editor's Choice News & Events Security Services & Risk Management Videos Training & Education
SMART Security Solutions recently released its first SMARTpod podcast, discussing the upcoming Risk Management Forum Conference 2024, which will be held on 26 September 2024 at the Indaba Conference Centre in Fourways, Johannesburg.

Read more...
How to securely manage your digital footprint
Information Security Training & Education
Managing your online presence is critical to safeguarding your privacy and security. It is imperative to take a proactive approach, including using robust cybersecurity best practices.

Read more...
Cybersecurity fatigue: A growing risk with AI-driven social engineering attacks
Information Security Training & Education
Despite the significant amounts of time and money invested in cybersecurity training and awareness, employee carelessness and ignorance remain the most vulnerable parts of the average enterprise’s security posture.

Read more...