New Research Reveals Intelligent Building Security Risks Vulnerabilities and Mitigation Strategies

Groundbreaking report includes guidance to aid decision makers and help protect buildings against an array of threats and risks

The ASIS Foundation, in partnership with BOMA International (BOMA) and the Security Industry Association (SIA), today released groundbreaking first-of-its-kind guidance for practitioners in the security and building management fields. Intelligent Building Management Systems: Guidance for Protecting Organizations provides a framework to help decision-makers assign a risk-based criticality or impact to their building and asks relevant security questions to develop appropriate mitigation strategies. It also serves to establish a common language between the many intelligent building stakeholders.

The guidance is based on original research, Building Automation & Control Systems: An Investigation into Vulnerabilities, Current Practice and Security Management Best Practice, by David J. Brooks, Michael Coole, and Paul Haskell-Dowland of Edith Cowan University in Perth, Australia. The research provides an exhaustive overview of identified intelligent building critical vulnerabilities and mitigation strategies.

“The ASIS Foundation is delighted to work with our partners BOMA and SIA to support such critical research in a rapidly developing but insufficiently understood field,” says Sandra Cowie, CPP, director, Global Security and Business Continuity, Principal, and 2018 ASIS Foundation President. “Building automation invokes cutting-edge issues and technology such as the Internet of Things and advanced video analytics, as well as traditional concerns such as physical access control and proper procedures. The integrated whole undoubtedly poses challenges that are still emerging. This research is indispensable to helping our members get a handle on both the challenges and the opportunities of this fast-growing market.”

According to the report, the intelligent building market is growing 31% per year and is expected to exceed $59B by 2023. These systems are increasingly embedded into the contemporary built environment due to the demand for reduced operating costs, government regulation, and greater monitoring, control and operability. However, this growth comes with a substantial set of security vulnerabilities that many security and facility professionals have not accounted for. Importantly, the research finds a significant disconnect between security and facility professionals’ perceived understanding of intelligent building threats and risks versus actual dangers. In addition, the report revealed that a lack of common terminology and practices can result in misunderstandings and siloed views of associated security risks. The report findings emphasize the need to:

  • Take a multidisciplinary proactive management approach to intelligent building vulnerability mitigation, and
  • Fuse multidisciplinary participants into an intelligent building security team.

Additional findings include the recognition of intelligent building integrators and cybersecurity experts as partners who can help organizations better understand threats and risks, and more effectively achieve intelligent building security.

“The research developed by the ASIS Foundation provides insights that should be leveraged by our members and the industry to better understand and identify vulnerabilities within Intelligent Building Systems. An essential outcome from this project is the recommended guidance and checklist that will help security practitioners and security technology solutions providers work together to implement strategies to mitigate against potential risks,” says Don Erickson, chief executive officer, SIA.

For more information or to download infographics and the free report, visit www.asisfoundation.org.

Featured

  • UL Solutions Launches Artificial Intelligence Safety Certification Services

    UL Solutions Inc., a global leader in safety science, today announced the launch of artificial intelligence (AI) safety certification services, enabling comprehensive assessments for evaluating the safety of AI-powered products. Read Now

  • ESA Announces Initiative to Introduce the SECURE Act in State Legislatures

    The Electronic Security Association (ESA), the national voice for the electronic security and life safety industry, has announced plans to introduce the SECURE Act in state legislatures across the country beginning in 2025. The proposal, known as Safeguarding Election Candidates Using Reasonable Expenditures, provides a clear framework that allows candidates and elected officials to use campaign funds for professional security services. Read Now

    • Guard Services
  • Ransomware Attacks Rise for the First Time in Six Months

    Ransomware attacks have risen for the first time in six months, increasing by 28% month-on-month to 421 attacks. While overall attack volume remained below 500, the uptick may signal a renewed escalation heading into the year’s most active period for cyber criminals. Read Now

  • Report: 47 Percent of Security Service Providers Are Not Yet Using AI or Automation Tools

    Trackforce, a provider of security workforce management platforms, today announced the launch of its 2025 Physical Security Operations Benchmark Report, an industry-first study that benchmarks both private security service providers and corporate security teams side by side. Based on a survey of over 300 security professionals across the globe, the report provides a comprehensive look at the state of physical security operations. Read Now

    • Guard Services
  • Identity Governance at the Crossroads of Complexity and Scale

    Modern enterprises are grappling with an increasing number of identities, both human and machine, across an ever-growing number of systems. They must also deal with increased operational demands, including faster onboarding, more scalable models, and tighter security enforcement. Navigating these ever-growing challenges with speed and accuracy requires a new approach to identity governance that is built for the future enterprise. Read Now

New Products

  • HD2055 Modular Barricade

    Delta Scientific’s electric HD2055 modular shallow foundation barricade is tested to ASTM M50/P1 with negative penetration from the vehicle upon impact. With a shallow foundation of only 24 inches, the HD2055 can be installed without worrying about buried power lines and other below grade obstructions. The modular make-up of the barrier also allows you to cover wider roadways by adding additional modules to the system. The HD2055 boasts an Emergency Fast Operation of 1.5 seconds giving the guard ample time to deploy under a high threat situation.

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

  • QCS7230 System-on-Chip (SoC)

    QCS7230 System-on-Chip (SoC)

    The latest Qualcomm® Vision Intelligence Platform offers next-generation smart camera IoT solutions to improve safety and security across enterprises, cities and spaces. The Vision Intelligence Platform was expanded in March 2022 with the introduction of the QCS7230 System-on-Chip (SoC), which delivers superior artificial intelligence (AI) inferencing at the edge.