Physical Security
It is generally accepted that if someone has physical access to any computing resource, that system can inevitably be compromised; intruders with access to your network can install “backdoors” for remote access to your network, keylogging software that steals passwords, and remove hardware that makes your data – and business – unavailable.
Therefore, physical security has evolved as one of the most important security controls that can be applied across the network.
However, in today’s world, the convergence of physical security and logical security solutions requires IT directors to manage far more information than ever before. The complexity of physical security, including operational management issues, make it difficult to implement.
DigitalDefence’s Physical Security and Social Engineering service has three immediate goals:
Service Delivery
DigitalDefence’s Physical Security service is based on Canadian Federal Government security standards and industry best practices. It includes:
- Threat assessment to identify and analyze man-made and natural threats to your physical infrastructure
- Review of organization’s IT security processes and documents related to physical security, incident response, HR processes, emergency plans
- Review of operational controls, such management of on-site contractors and visitors
- On-site inspection of external physical security controls, including environmental design (CPTED), fencing and lights, access points, guards, alarm systems
- Review of IT infrastructure
- On-site inspection of internal physical security controls including access controls (locks and keys, biometrics), use of security zones, doors, windows
- Review of data centre, server rooms, wiring closets
- Review of environmental controls including HVAC, fire detection and suppression systems, water leakage control
- Physical security of workstations, mobile devices, and other endpoints
- Physical security of non-electronic data (printer rooms, records storage areas)



