During 2017, I watched as our profession and ASIS International began down the Enterprise Security Risk Management (ESRM) path. We declared ESRM as one of our cornerstone objectives, touted its return at our Annual Seminar and Exhibits with sessions and workshops, and structured an ASIS Board Initiative to begin inserting ESRM into the DNA of our society.
Over the past 10 months, we’ve had a chance to explore the concepts of Enterprise Security Risk Management (ESRM) in this column, and at the annual ASIS Seminar held in Dallas this year. It’s been an interesting journey, and we’ve learned so much, but we’ve also seen how far we have to go.
Security professionals like to solve problems.
The fun part of any Enterprise Security Risk Management (ESRM) program is starting with some interesting “what if” questions.
The move to Enterprise Security Risk Management, or ESRM, is a significant journey for organizations looking to reap the benefits of a risk-based, business focused approach to securing assets across the enterprise.
As I begin another year in the security industry, I’m hopeful that during 2017 we see our profession focus on Enterprise Risk Management, and that we begin the journey to identifying ourselves more closely as enterprise risk professionals.
As we look back on 2015 and reflect on recent media headlines, we can appreciate the level of uncertainty that is affecting our society, along with the unpredictability of the threats we are facing, from weather hazards to terrorist attacks.
Value creation is at the heart of everything we do, whether we’re self-employed or working for a private company or public agency. Corporate objectives, as a general rule, seek to continuously improve that value creation potential.
The unfortunate deaths of spectators at the Pemberton Music Festival in British Columbia and the Veld Festival in Toronto in recent months have raised serious concerns about the effectiveness of current security measures.
In a recent Ontario case, the Court saw a video of an accused setting on fire his neighbour’s (i.e. the victim’s) truck.  
The Internet and social media are hugely popular. Every day, hundreds of millions of digital images and videos are uploaded to, and downloaded from, various social networking websites (Facebook, MySpace, LinkedIn), information communities (YouTube, Pinterest, Google+), blogs/microblogs (Twitter, Tumblr), and photo sharing/management sites (Flickr, Instagram).
A few issues ago, I wrote about the R. v. Manley case in which a police search of Manley’s cell phone, after his arrest for a series of break-ins, was deemed lawful.
In April 2013, the world was shocked by terrorist bombings near the finish line of the Boston Marathon. Hundreds of video images were recorded by security (surveillance) cameras, television news cameras, and cell phone cameras. These images showed not only the explosions and resulting damage, but also the two brothers who allegedly planted the bombs. Video images of the suspects, travelling to and from the scenes of the two bombings, were widely shown and helped identify them.
Ever wish that your car was equipped with a video camera to record the licence plate of the car that cut you off, or did some other equally unsafe manoeuvre? Thanks to modern technology, you can now mount a camera on your car’s dashboard and record whatever is on the road.
Forensic investigators now have a new tool to use to document crime, accident, and fire scenes — the 3D laser scanner.
With 2017 now behind us, many CIOs are looking ahead. They’re grappling with big questions but the No. 1 priority should be cybersecurity.
Canadian Security is celebrating its 40th anniversary in 2018. We asked several security professionals to submit their thoughts on the industry and reflect on 40 years of change. In each issue of Canadian Security magazine, we will feature a new columnist. First is Jason Caissie, vice-president of operations for The Profile Group and a past chair of the ASIS Toronto chapter.
Enterprises are able to collect more data than ever before, but without an efficient way to manage and secure that data across the enterprise, whether it resides on physical and virtual servers, multiple Cloud providers, applications or endpoints, they will never be able to realize the full benefits of a truly data-driven and secure business. Security needs to be built into the data management platform from an end user’s computer to backup storage, regardless of whether it resides on-premise or in a private, public or hybrid Cloud.
From an outsider's perspective, in order to become an International Close Protection Operative it should be pretty straight forward, right? They just have to be big, no-necked, muscle-bound and be able to jostle their way through the swathes of people in a crowd with their Principal, yes?
With each passing day, more and more consumers are making the switch to online shopping. And why wouldn’t they? It’s quick, reliable and easy. As a consumer, you can have nearly any item you can imagine delivered to your door (in some cases same day) without ever having to leave the house.
According to the FBI, ransomware attacks grew by more than 300 per cent in 2016. Its overwhelming effectiveness has made it an attack method of choice for cyber criminals and its continual evolution is what helps its variants evade the security defences working to detect them.
Cloud technology has made possible opportunities that can be truly transformative for businesses.
Stadiums, concert halls and other large popular venues have experienced their own share of security events.
In 1990, during the first Bush administration, the Naval War College’s Terry Kelley published a paper titled “Global Climate Change, Implications for the U.S. Navy.”
Moving people on roads and rail and delivering goods such as food, machinery and parts is big business in North America.
Let’s continue our quest to understand organizational security management, resilience and our own models for decision making.
After the first Persian Gulf war ended and the no fly zone was in effect, the U.S. Air Force was tasked with controlling the skies over Iraq.
Critical Infrastructure as defined by Public Safety Canada “refers to processes, systems, facilities, technologies, networks, assets and services essential to the health, safety, security or economic well-being of Canadians and the effective functioning of government.”
Bruce Tulgan’s new volume is the revised, updated version of his similarly titled “Not Everyone Gets A Trophy – How to Manage Generation Y” I reviewed almost nine years ago.
Three is a very significant number.
Heather Mac Donald once wrote a book titled “Are Cops Racist?” Just looking at that title shows it’s an unfair question. Just about any answer can be a correct one. Her latest book is “The War On Cops — How The New Attack on Law and Order Makes Everyone Less Safe.” The title is more reasoned, but still seems to leave nuance out.
There’s a saying, “A lie travels around the globe while the truth is putting on its shoes,” that many attribute to Mark Twain.
As our world and our businesses grow more complex, our writing must reflect this and help make them more understandable.
I recently attended the Association of Certified Fraud Examiners Annual Conference in San Diego. Besides some terrific presentations and networking events, there was a bookstore. I’m a sucker for bookstores and I picked up enough books that I had to pay duty when I came back. One of those books was Social Engineering: The Art of Human Hacking, by Christopher Hadnagy. This is a worthwhile book for anyone in the security management and operations field, including investigations. And while it’s heavily IT-flavoured, it’s not just for the IT folks — in fact, it’s likely more valuable to non-IT personnel.

Subscription Centre

New Subscription
Already a Subscriber
Customer Service
View Digital Magazine Renew