8 Physical Data Gathering

Extending the security risk assessment to include the review of physical security mechanisms provides a more complete view of the overall security posture of the organization. Failure to consider physical vulnerabilities can lead to a false sense of security and increase the risk of a breach to capital or information assets. Attempts to breach the security of the organization can come from logical attacks or physical attacks. Ignoring the physical side of the security risk equation is an invitation to disaster.

There are some organizations in which the physical security and the logical security are handled by distinctly separate groups (e.g., military bases). Even if the organization does have a distinct separation ...

Get The Security Risk Assessment Handbook, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.