The physical security of any organization must define the events, causes, actors, prevention, recovery, mitigation, and other relevant procedures regarding the security, safety, and operations of achieving an organization's mission.
A physical security program for any IT organization is based on the overall organization's security policies and plans. The IT security policy must recognize the need and purpose of physical security for the computing assets and functions. The policy that defines the IT physical security program should include the following objectives, and most likely others, depending on the nature of the organization:
- The physical safeguards that are in place, such as fire safety, intrusion prevention, business continuity, and disaster recovery
- The sources and types of threats to the organization
- The components of physical...