SlideShare una empresa de Scribd logo
1 de 16
Corporate Security and the 
Organisational Frontline 
Paul Murphy 
Manager Infrastructure Security, GHD Pty Ltd 
HR Leadership 2003 National Conference 
1-2 December 2003
Scope of Presentation 
 Understanding the Security Challenge: The New Threat 
Environment 
 Issues for Corporate Security Programs 
 Implications for the enterprise HR strategy 
 Implementation 
HR Leadership 2003 National Conference 
1-2 December 2003
Understanding the Security 
Challenge: The New Threat 
Environment 
 Focus on ‘New Threats’ 
September 11 
Anthrax & NBCR Threats 
Bali Bombing 
Suicide Bombings 
HR Leadership 2003 National Conference 
1-2 December 2003
Understanding the Security 
Challenge: The Existing 
Threats 
 Crimes Against Business 
Theft 
Fraud 
Extortion 
Product Counterfeiting 
HR Leadership 2003 National Conference 
1-2 December 2003
Understanding the Security 
Challenge: The Existing 
Threats 
 Crimes Against Employees and Customers 
Physical Violence 
Theft 
Intimidation / Stalking / Harassment 
HR Leadership 2003 National Conference 
1-2 December 2003
Issues for Corporate Security 
Programs 
 Privacy 
 Profiling and Data Mining 
 Public and Staff Perceptions of Security and 
how it should be managed 
 Legal Responsibilities 
 Cost 
 Risk Profile 
HR Leadership 2003 National Conference 
1-2 December 2003
Implications for the enterprise 
HR strategy 
 Security Management – needs to be a corporate approach 
 Similar approach to the Management of OHS&R and 
environmental risks 
 Security Management Planning is the process an 
organisation undertakes to ensure it is managing its 
security issues, within the context of a business risk 
management framework 
 Achievement and maintenance of the appropriate level of 
security risk requires: 
Security treatments, infrastructure, management 
arrangements (the three legged stool) 
HR Leadership 2003 National Conference 
1-2 December 2003
Implications for the enterprise 
HR strategy 
HR Leadership 2003 National Conference 
1-2 December 2003
Implications for the enterprise 
HR strategy 
Security Management Framework 
 Security Policy and Management 
 Security Management Planning 
 Security Risk Assessment 
 Business Continuity (Risk Recovery) 
HR Leadership 2003 National Conference 
1-2 December 2003
Implications for the enterprise 
HR strategy 
Security Administration 
 Security Management 
 Commitment and Sustainability 
 Security Committee 
 Security Risk Context 
HR Leadership 2003 National Conference 
1-2 December 2003
Security Management Value 
Chain 
STRATEGY 
SECURITY 
POLICY AND 
MANAGEMENT 
FUNCTION 
SECURITY 
MANAGEMENT 
PLANNING 
RISK 
SECURITY 
RISK 
ASSESSMENT 
SUSTAINABILITY 
BUSINESS 
CONTINUITY 
(RISK RECOVERY) 
HR Leadership 2003 National Conference 
1-2 December 2003 
CONTINUOUS 
IMPROVEMENT 
SECURITY 
RISK 
MANAGEMENT 
SECURITY MANAGEMENT
Implications for the enterprise 
HR strategy 
Security Administration 
 Security Management 
 Commitment and Sustainability 
 Security Committee 
 Security Risk Context 
HR Leadership 2003 National Conference 
1-2 December 2003
Implications for the enterprise 
HR strategy 
Security Risk Assessment 
 Criticality Assessment 
 Threat Identification 
 Vulnerability Assessment 
 Risk Assessment 
 Risk Reduction Program 
 Monitoring and Review 
HR Leadership 2003 National Conference 
1-2 December 2003
Implications for the enterprise 
HR strategy 
Business Continuity (Risk Recovery) 
 Response Planning 
 Business Recovery 
HR Leadership 2003 National Conference 
1-2 December 2003
Concluding Remarks 
HR Leadership 2003 National Conference 
1-2 December 2003
Questions ? 
www.ghd.com.au/services/infrastructuresecurity 
HR Leadership 2003 National Conference 
1-2 December 2003

Más contenido relacionado

Destacado

nullcon 2010 - Corporate Security and Intelligence – the dark links
nullcon 2010 - Corporate Security and Intelligence – the dark linksnullcon 2010 - Corporate Security and Intelligence – the dark links
nullcon 2010 - Corporate Security and Intelligence – the dark linksn|u - The Open Security Community
 
Security Measures
Security MeasuresSecurity Measures
Security Measureshanna91
 
Jupiter physical security ppt 2016
Jupiter physical security ppt 2016Jupiter physical security ppt 2016
Jupiter physical security ppt 2016Maxpromotion
 
Basic Security Requirements
Basic Security RequirementsBasic Security Requirements
Basic Security RequirementsSteven Cahill
 
The Role of a Static Security Guard
The Role of a Static Security GuardThe Role of a Static Security Guard
The Role of a Static Security GuardAmelia White
 
Risk Assessment Process NIST 800-30
Risk Assessment Process NIST 800-30Risk Assessment Process NIST 800-30
Risk Assessment Process NIST 800-30timmcguinness
 
Risk assessment principles and guidelines
Risk assessment principles and guidelinesRisk assessment principles and guidelines
Risk assessment principles and guidelinesHaris Tahir
 
Risk assessment presentation
Risk assessment presentationRisk assessment presentation
Risk assessment presentationmmagario
 
Security Management Practices
Security Management PracticesSecurity Management Practices
Security Management Practicesamiable_indian
 
Powerpoint Risk Assessment
Powerpoint Risk AssessmentPowerpoint Risk Assessment
Powerpoint Risk AssessmentSteve Bishop
 

Destacado (10)

nullcon 2010 - Corporate Security and Intelligence – the dark links
nullcon 2010 - Corporate Security and Intelligence – the dark linksnullcon 2010 - Corporate Security and Intelligence – the dark links
nullcon 2010 - Corporate Security and Intelligence – the dark links
 
Security Measures
Security MeasuresSecurity Measures
Security Measures
 
Jupiter physical security ppt 2016
Jupiter physical security ppt 2016Jupiter physical security ppt 2016
Jupiter physical security ppt 2016
 
Basic Security Requirements
Basic Security RequirementsBasic Security Requirements
Basic Security Requirements
 
The Role of a Static Security Guard
The Role of a Static Security GuardThe Role of a Static Security Guard
The Role of a Static Security Guard
 
Risk Assessment Process NIST 800-30
Risk Assessment Process NIST 800-30Risk Assessment Process NIST 800-30
Risk Assessment Process NIST 800-30
 
Risk assessment principles and guidelines
Risk assessment principles and guidelinesRisk assessment principles and guidelines
Risk assessment principles and guidelines
 
Risk assessment presentation
Risk assessment presentationRisk assessment presentation
Risk assessment presentation
 
Security Management Practices
Security Management PracticesSecurity Management Practices
Security Management Practices
 
Powerpoint Risk Assessment
Powerpoint Risk AssessmentPowerpoint Risk Assessment
Powerpoint Risk Assessment
 

Similar a Corporate Security and the Organisational Frontline

Business Continuity Management or Risk Management? Aligning Expectations for ...
Business Continuity Management or Risk Management? Aligning Expectations for ...Business Continuity Management or Risk Management? Aligning Expectations for ...
Business Continuity Management or Risk Management? Aligning Expectations for ...BCM Institute
 
Organizational Security Culture : A New Business Paradigm by JMSupan 2019
Organizational  Security Culture :  A New Business Paradigm by JMSupan 2019Organizational  Security Culture :  A New Business Paradigm by JMSupan 2019
Organizational Security Culture : A New Business Paradigm by JMSupan 2019JOEL JESUS SUPAN
 
ISACA TT Training Week Course Outline 2013 (final)
ISACA TT Training Week Course Outline 2013 (final)ISACA TT Training Week Course Outline 2013 (final)
ISACA TT Training Week Course Outline 2013 (final)tntsa1972
 
The Business Of Information Security V2.0
The Business Of Information Security V2.0The Business Of Information Security V2.0
The Business Of Information Security V2.0theonassiokas
 
Bachelor of Science (Honours) Safety, Health and Environmental Man.docx
Bachelor of Science (Honours) Safety, Health and Environmental Man.docxBachelor of Science (Honours) Safety, Health and Environmental Man.docx
Bachelor of Science (Honours) Safety, Health and Environmental Man.docxwilcockiris
 
Risk Analysis In Business Continuity Management - Jeremy Wong
Risk Analysis In Business Continuity Management - Jeremy WongRisk Analysis In Business Continuity Management - Jeremy Wong
Risk Analysis In Business Continuity Management - Jeremy WongBCM Institute
 
Riggan resume july 2016
Riggan resume july 2016Riggan resume july 2016
Riggan resume july 2016Robert Riggan
 
Ics 3210 information systems security and audit - edited
Ics 3210   information systems security and audit - editedIcs 3210   information systems security and audit - edited
Ics 3210 information systems security and audit - editedNelson Kimathi
 
Riggan sse resume june 2016
Riggan sse resume june 2016Riggan sse resume june 2016
Riggan sse resume june 2016Robert Riggan
 
Riggan sse resume june 2016
Riggan sse resume june 2016Riggan sse resume june 2016
Riggan sse resume june 2016Robert Riggan
 
Riggan sse resume june 2016
Riggan sse resume june 2016Riggan sse resume june 2016
Riggan sse resume june 2016Robert Riggan
 
Safety ManagementSafety ManagementSCorporateCulture.docx
Safety ManagementSafety ManagementSCorporateCulture.docxSafety ManagementSafety ManagementSCorporateCulture.docx
Safety ManagementSafety ManagementSCorporateCulture.docxanhlodge
 
Information Systems Security & Strategy
Information Systems Security & StrategyInformation Systems Security & Strategy
Information Systems Security & StrategyTony Hauxwell
 

Similar a Corporate Security and the Organisational Frontline (20)

Patrick_Wayne_Cooper_Graphic_CV_2024.pdf
Patrick_Wayne_Cooper_Graphic_CV_2024.pdfPatrick_Wayne_Cooper_Graphic_CV_2024.pdf
Patrick_Wayne_Cooper_Graphic_CV_2024.pdf
 
Business Continuity Management or Risk Management? Aligning Expectations for ...
Business Continuity Management or Risk Management? Aligning Expectations for ...Business Continuity Management or Risk Management? Aligning Expectations for ...
Business Continuity Management or Risk Management? Aligning Expectations for ...
 
OCallaghan Resume 2016
OCallaghan Resume 2016OCallaghan Resume 2016
OCallaghan Resume 2016
 
Organizational Security Culture : A New Business Paradigm by JMSupan 2019
Organizational  Security Culture :  A New Business Paradigm by JMSupan 2019Organizational  Security Culture :  A New Business Paradigm by JMSupan 2019
Organizational Security Culture : A New Business Paradigm by JMSupan 2019
 
risk analysis
risk analysisrisk analysis
risk analysis
 
ISACA TT Training Week Course Outline 2013 (final)
ISACA TT Training Week Course Outline 2013 (final)ISACA TT Training Week Course Outline 2013 (final)
ISACA TT Training Week Course Outline 2013 (final)
 
Isms info
Isms infoIsms info
Isms info
 
The Business Of Information Security V2.0
The Business Of Information Security V2.0The Business Of Information Security V2.0
The Business Of Information Security V2.0
 
Bachelor of Science (Honours) Safety, Health and Environmental Man.docx
Bachelor of Science (Honours) Safety, Health and Environmental Man.docxBachelor of Science (Honours) Safety, Health and Environmental Man.docx
Bachelor of Science (Honours) Safety, Health and Environmental Man.docx
 
Risk Analysis In Business Continuity Management - Jeremy Wong
Risk Analysis In Business Continuity Management - Jeremy WongRisk Analysis In Business Continuity Management - Jeremy Wong
Risk Analysis In Business Continuity Management - Jeremy Wong
 
02 sasaran kendali pencapaian tujuan v05
02 sasaran kendali pencapaian tujuan v0502 sasaran kendali pencapaian tujuan v05
02 sasaran kendali pencapaian tujuan v05
 
Riggan resume july 2016
Riggan resume july 2016Riggan resume july 2016
Riggan resume july 2016
 
Ics 3210 information systems security and audit - edited
Ics 3210   information systems security and audit - editedIcs 3210   information systems security and audit - edited
Ics 3210 information systems security and audit - edited
 
IT Security EBK2008 Summary
IT Security EBK2008 SummaryIT Security EBK2008 Summary
IT Security EBK2008 Summary
 
Riggan sse resume june 2016
Riggan sse resume june 2016Riggan sse resume june 2016
Riggan sse resume june 2016
 
Riggan sse resume june 2016
Riggan sse resume june 2016Riggan sse resume june 2016
Riggan sse resume june 2016
 
Riggan sse resume june 2016
Riggan sse resume june 2016Riggan sse resume june 2016
Riggan sse resume june 2016
 
chris_shinh
chris_shinhchris_shinh
chris_shinh
 
Safety ManagementSafety ManagementSCorporateCulture.docx
Safety ManagementSafety ManagementSCorporateCulture.docxSafety ManagementSafety ManagementSCorporateCulture.docx
Safety ManagementSafety ManagementSCorporateCulture.docx
 
Information Systems Security & Strategy
Information Systems Security & StrategyInformation Systems Security & Strategy
Information Systems Security & Strategy
 

Más de Expoco

Load Profiling for the NSW Gas Mass Market
Load Profiling for the NSW Gas Mass Market Load Profiling for the NSW Gas Mass Market
Load Profiling for the NSW Gas Mass Market Expoco
 
Market Entry Theory and Practice
Market Entry Theory and PracticeMarket Entry Theory and Practice
Market Entry Theory and PracticeExpoco
 
Identity Management and the Australian Organisation
Identity Management and the Australian OrganisationIdentity Management and the Australian Organisation
Identity Management and the Australian OrganisationExpoco
 
Performance, Rewards and the New Psychological Contract
Performance, Rewards and the New Psychological ContractPerformance, Rewards and the New Psychological Contract
Performance, Rewards and the New Psychological ContractExpoco
 
Human Capital: measuring the unmeasurable
Human Capital: measuring the unmeasurableHuman Capital: measuring the unmeasurable
Human Capital: measuring the unmeasurableExpoco
 
Becoming an Employer of Choice: Mapping the Practices of a Winning Organisation
Becoming an Employer of Choice: Mapping the Practices of a Winning OrganisationBecoming an Employer of Choice: Mapping the Practices of a Winning Organisation
Becoming an Employer of Choice: Mapping the Practices of a Winning OrganisationExpoco
 
Employment Branding - Building Talent Market Equity
Employment Branding - Building Talent Market EquityEmployment Branding - Building Talent Market Equity
Employment Branding - Building Talent Market EquityExpoco
 
Outsourcing human resources
Outsourcing human resourcesOutsourcing human resources
Outsourcing human resourcesExpoco
 
Unleashing human capital
Unleashing human capitalUnleashing human capital
Unleashing human capitalExpoco
 
Issues in Business Etiquette
Issues in Business EtiquetteIssues in Business Etiquette
Issues in Business EtiquetteExpoco
 
Electronic recordkeeping
Electronic recordkeepingElectronic recordkeeping
Electronic recordkeepingExpoco
 
Organising Corporate Events
Organising Corporate EventsOrganising Corporate Events
Organising Corporate EventsExpoco
 
Team Leading
Team LeadingTeam Leading
Team LeadingExpoco
 
Communicating in a Crisis
Communicating in a CrisisCommunicating in a Crisis
Communicating in a CrisisExpoco
 
Project management 101
Project management 101 Project management 101
Project management 101 Expoco
 
CSR and Corporate Philanthropy
CSR and Corporate Philanthropy CSR and Corporate Philanthropy
CSR and Corporate Philanthropy Expoco
 
The business case for emotional intelligence
The business case for emotional intelligenceThe business case for emotional intelligence
The business case for emotional intelligenceExpoco
 
Business Sustainability
Business SustainabilityBusiness Sustainability
Business SustainabilityExpoco
 
Mentoring and Growth
Mentoring and GrowthMentoring and Growth
Mentoring and GrowthExpoco
 
Preparing for your annual review
Preparing for your annual reviewPreparing for your annual review
Preparing for your annual reviewExpoco
 

Más de Expoco (20)

Load Profiling for the NSW Gas Mass Market
Load Profiling for the NSW Gas Mass Market Load Profiling for the NSW Gas Mass Market
Load Profiling for the NSW Gas Mass Market
 
Market Entry Theory and Practice
Market Entry Theory and PracticeMarket Entry Theory and Practice
Market Entry Theory and Practice
 
Identity Management and the Australian Organisation
Identity Management and the Australian OrganisationIdentity Management and the Australian Organisation
Identity Management and the Australian Organisation
 
Performance, Rewards and the New Psychological Contract
Performance, Rewards and the New Psychological ContractPerformance, Rewards and the New Psychological Contract
Performance, Rewards and the New Psychological Contract
 
Human Capital: measuring the unmeasurable
Human Capital: measuring the unmeasurableHuman Capital: measuring the unmeasurable
Human Capital: measuring the unmeasurable
 
Becoming an Employer of Choice: Mapping the Practices of a Winning Organisation
Becoming an Employer of Choice: Mapping the Practices of a Winning OrganisationBecoming an Employer of Choice: Mapping the Practices of a Winning Organisation
Becoming an Employer of Choice: Mapping the Practices of a Winning Organisation
 
Employment Branding - Building Talent Market Equity
Employment Branding - Building Talent Market EquityEmployment Branding - Building Talent Market Equity
Employment Branding - Building Talent Market Equity
 
Outsourcing human resources
Outsourcing human resourcesOutsourcing human resources
Outsourcing human resources
 
Unleashing human capital
Unleashing human capitalUnleashing human capital
Unleashing human capital
 
Issues in Business Etiquette
Issues in Business EtiquetteIssues in Business Etiquette
Issues in Business Etiquette
 
Electronic recordkeeping
Electronic recordkeepingElectronic recordkeeping
Electronic recordkeeping
 
Organising Corporate Events
Organising Corporate EventsOrganising Corporate Events
Organising Corporate Events
 
Team Leading
Team LeadingTeam Leading
Team Leading
 
Communicating in a Crisis
Communicating in a CrisisCommunicating in a Crisis
Communicating in a Crisis
 
Project management 101
Project management 101 Project management 101
Project management 101
 
CSR and Corporate Philanthropy
CSR and Corporate Philanthropy CSR and Corporate Philanthropy
CSR and Corporate Philanthropy
 
The business case for emotional intelligence
The business case for emotional intelligenceThe business case for emotional intelligence
The business case for emotional intelligence
 
Business Sustainability
Business SustainabilityBusiness Sustainability
Business Sustainability
 
Mentoring and Growth
Mentoring and GrowthMentoring and Growth
Mentoring and Growth
 
Preparing for your annual review
Preparing for your annual reviewPreparing for your annual review
Preparing for your annual review
 

Corporate Security and the Organisational Frontline

  • 1. Corporate Security and the Organisational Frontline Paul Murphy Manager Infrastructure Security, GHD Pty Ltd HR Leadership 2003 National Conference 1-2 December 2003
  • 2. Scope of Presentation  Understanding the Security Challenge: The New Threat Environment  Issues for Corporate Security Programs  Implications for the enterprise HR strategy  Implementation HR Leadership 2003 National Conference 1-2 December 2003
  • 3. Understanding the Security Challenge: The New Threat Environment  Focus on ‘New Threats’ September 11 Anthrax & NBCR Threats Bali Bombing Suicide Bombings HR Leadership 2003 National Conference 1-2 December 2003
  • 4. Understanding the Security Challenge: The Existing Threats  Crimes Against Business Theft Fraud Extortion Product Counterfeiting HR Leadership 2003 National Conference 1-2 December 2003
  • 5. Understanding the Security Challenge: The Existing Threats  Crimes Against Employees and Customers Physical Violence Theft Intimidation / Stalking / Harassment HR Leadership 2003 National Conference 1-2 December 2003
  • 6. Issues for Corporate Security Programs  Privacy  Profiling and Data Mining  Public and Staff Perceptions of Security and how it should be managed  Legal Responsibilities  Cost  Risk Profile HR Leadership 2003 National Conference 1-2 December 2003
  • 7. Implications for the enterprise HR strategy  Security Management – needs to be a corporate approach  Similar approach to the Management of OHS&R and environmental risks  Security Management Planning is the process an organisation undertakes to ensure it is managing its security issues, within the context of a business risk management framework  Achievement and maintenance of the appropriate level of security risk requires: Security treatments, infrastructure, management arrangements (the three legged stool) HR Leadership 2003 National Conference 1-2 December 2003
  • 8. Implications for the enterprise HR strategy HR Leadership 2003 National Conference 1-2 December 2003
  • 9. Implications for the enterprise HR strategy Security Management Framework  Security Policy and Management  Security Management Planning  Security Risk Assessment  Business Continuity (Risk Recovery) HR Leadership 2003 National Conference 1-2 December 2003
  • 10. Implications for the enterprise HR strategy Security Administration  Security Management  Commitment and Sustainability  Security Committee  Security Risk Context HR Leadership 2003 National Conference 1-2 December 2003
  • 11. Security Management Value Chain STRATEGY SECURITY POLICY AND MANAGEMENT FUNCTION SECURITY MANAGEMENT PLANNING RISK SECURITY RISK ASSESSMENT SUSTAINABILITY BUSINESS CONTINUITY (RISK RECOVERY) HR Leadership 2003 National Conference 1-2 December 2003 CONTINUOUS IMPROVEMENT SECURITY RISK MANAGEMENT SECURITY MANAGEMENT
  • 12. Implications for the enterprise HR strategy Security Administration  Security Management  Commitment and Sustainability  Security Committee  Security Risk Context HR Leadership 2003 National Conference 1-2 December 2003
  • 13. Implications for the enterprise HR strategy Security Risk Assessment  Criticality Assessment  Threat Identification  Vulnerability Assessment  Risk Assessment  Risk Reduction Program  Monitoring and Review HR Leadership 2003 National Conference 1-2 December 2003
  • 14. Implications for the enterprise HR strategy Business Continuity (Risk Recovery)  Response Planning  Business Recovery HR Leadership 2003 National Conference 1-2 December 2003
  • 15. Concluding Remarks HR Leadership 2003 National Conference 1-2 December 2003
  • 16. Questions ? www.ghd.com.au/services/infrastructuresecurity HR Leadership 2003 National Conference 1-2 December 2003