Centralising Telkom’s national security access system

Access & Identity Management Handbook 2014 Access Control & Identity Management

National telecommunications provider, Telkom, has centralised its access control system nationally. Telkom’s presence comprises a national footprint of buildings with telecommunication equipment, technical and administrative personnel. The company’s security policy restricts access to certain areas for staff, contractors and visitors. The levels of access further restrict staff who execute functions internally and externally, that is, core side and client side.

A primary obstacle is the management of keys for remote locations and governance regarding the access to the sites. Although a key register is used to manage the site keys, delays in acquiring the keys posed an operational challenge, since multiple staff required keys simultaneously. A combination of physical and logical media was proposed to validate access.

Sam Moodley, manager, Telkom Asset & Revenue Protection Services (TARPS)
Sam Moodley, manager, Telkom Asset & Revenue Protection Services (TARPS)

An internally devised conceptual design was presented to management in early 2000. This design, that incorporates a national surveillance centre, was approved as the national security programme. At that time, there were six regional centres that managed the security operations for Telkom, monitoring all the intruder detection systems. The access control systems were standalone site devices and were locally managed. No national standard and no centralised database existed at the time, making investigations of security breaches labour intensive and time consuming.

The project for the new national security programme began with the drafting of an enterprise secur-ity policy that incorporated the networked surveillance system. An access card policy was also drafted to align all elements of the access control system to ensure seamless integration of the various modules. As a singular unit, the system would enrol a person, print a security access badge and provision access to any one of the sites that was incorporated onto the new enterprise system.

Various logical levels of access were provisioned for, such as management, security surveillance and maintenance staff. Furthermore, multiple physical access layers were also created, such as national, regional, sub-regional, site and door areas. A user also has the opportunity to have a combination of access permissions to these areas, together with timed duration. This methodology also provided other levels of access control, such as vehicle or parking management through a single access card.

Among others, milestones such as naming conventions, door permissions, grouping of access permissions, specific user access requirements, network provisioning and management formed the critical path for this project. The enterprise architecture, fragmented into the various regions, sub-regions and sites needed to be concise and provide for future growth. The architecture incorporated existing buildings that would also transform where churn needed to be accommodated.

A solution of this magnitude is primarily dependent on a team that is fully conversant with IT and communication networks with the ability to adapt to an ever-evolving landscape such as cloud-based servers and virtual environments. Although Telkom has not extended the programme to all its sites as yet, the organisation is tracking the changes within business to accommodate new needs from this system.

Forward compatibility is an integral part due to the changes and updates on the operating systems. A development environment is available to perform testing of all updates to the software so that the system is not compromised.

During events such as the FIFA World Cup 2010, remote management of the telecommunications rooms at all the stadiums was made possible by extending the current solution to these sites. Provision of access and surveillance of these rooms were centrally managed with great success.

The benefits derived from this programme extend to all users within Telkom. Workforce management enables supervisors to manage multiple staff working on a 24-hour shift basis and the management of staff at remote locations. Immediate provision or denial of access, together with situational analysis of the various sites, is provided. Instantaneous reports at any of the national sites are now available and centralised management and surveillance of the remote sites is provided. In all, this has been a highly successful project and has achieved all the goalposts and benchmarks originally assigned to it.

For more information contact Sam Moodley, +27 (0)12 311 3189, [email protected]





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Keenfinity creates two security businesses
News & Events Access Control & Identity Management Perimeter Security, Alarms & Intruder Detection
The Keenfinity Group, today announced the creation of two dedicated businesses from its former Intrusion & Access portfolio. Radionix will focus exclusively on intrusion alarm systems, while MiCOS will become a dedicated access control company.

Read more...
Security has an identity problem
Access Control & Identity Management Information Security
Cybersecurity discussions have mainly focused on defence, including stronger firewalls, tighter network controls, and better endpoint security. However, in today's world, those traditional defences have become less relevant.

Read more...
Connecting access control, logistics and asset tracking
Access Control & Identity Management Asset Management Logistics (Industry)
Physical barriers matter, but a site is not secure just because the gate is strong or the container is locked. True security requires verifying every movement, tracing handovers, making exceptions visible, and allowing intervention before minor issues become major losses.

Read more...
Gallagher Security assists St Vincent School for the Deaf
Gallagher News & Events Access Control & Identity Management
At a time when vehicle purchase and running costs are higher than ever, St. Vincent School for the Deaf will have a more reliable vehicle thanks to a recent donation from Gallagher Security.

Read more...
Solo replaces legacy access control
Paxton Access Control & Identity Management
Paxton’s new Solo system is giving student accommodation providers a simpler way to manage access at scale. This case study examines how a phone-based, cloud-hosted security system modernised access for 500 students without requiring network infrastructure.

Read more...
Readers support employee badge in Apple Wallet
Gallagher Access Control & Identity Management Products & Solutions
rf IDEAS, a global manufacturer of RFID credential readers, today announced that its WAVE ID readers support Gallagher Employee Badge in Apple Wallet, expanding the range of credential technologies supported across its reader platform.

Read more...
AI agents become ‘First Class Identities’
Access Control & Identity Management
AI agents are now approving transactions, accessing systems, triggering workflows, and making decisions autonomously. But uncontrolled AI agents are becoming one of the largest security gaps in modern enterprises.

Read more...
Balancing secure access control and fire safety
Editor's Choice Access Control & Identity Management Fire & Safety
In modern building management, few topics create as much tension as the intersection between security access control and fire evacuation safety. Nichola Allen of G2 Fire sheds light on this delicate balance.

Read more...
Securing water infrastructure for industry and community
Access Control & Identity Management Fire & Safety Government and Parastatal (Industry)
The Badirammogo Water User Association needed a solution that could secure remote sites, reduce reliance on physical guards, and ensure uninterrupted service delivery while remaining aligned with its values and long-term strategy.

Read more...
Disconnect between confidence in identity security and operational reality
Access Control & Identity Management News & Events
New FIDO Alliance and HID study reveals gap between identity security confidence and reality; 94% of enterprises claim they can revoke employee access within 24 hours, yet 35% experienced delays or failures in the past two years.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.