Physical Security Flashcards

1
Q

What are Bollards?

A

A short post placed to deflect traffic from an area.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the purpose of a security survey?
-d____ and d_____the current security posture;
-id d_______ and ex_____in the……existing measures and
-compare the cp with the a______l_______ of security needed; and….
-r_________i____________ in the overall situation.

A
  • Determine and document the current security posture;
  • identify deficiencies and excesses in existing security measures;
  • compare the current posture with a determination of the appropriate level of security or protection needed. Recommend improvement in the overall situation.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are five criteria of good physical security survey reports?

A

Accuracy,
clarity,
conciseness,
timeliness and
slant or pitch.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the two foundational principles of physical security design?
-the four………..and……l____s_____or d_____in d_______

A

The four D’s (Deter, Detect, Delay, Deny) and
layered security or defense-in-depth.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the four D’s?

A

Deter, Detect, Delay, Deny

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a defense-in-depth approach?

A

An Adversary must avoid or defeat a number of protective devices or features in sequence.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the purpose of the design concept?

-the design concept i_____the b______of d_____; it documents the f_____c_____and r_____from any initial s______and is the first opportunity to d______the p_______d_______.

A

The design concept incorporates the basis of design; it documents the findings, conclusions, and recommendations from any initial surveys, and is the first opportunity to document the project’s design.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is included in the typical construction documents (CD) phase package?

-CD d________;
-s_________
-b______of q_________
-r_______s________b_______and
-c_____t_______ and c____________

A
  • CD drawings,
  • specifications,
  • bill of quantities,
  • refined system budgets and
  • contract terms and conditions.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are three types of cost estimates?

A

Budgetary estimates, preliminary design estimates and final design estimates.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are four constraints on all security projects?

S…….S……B…….and q…………

A

Scope, schedule, budget, and quality.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the basic building blocks of an intrusion detection system?

A

Sensors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Mechanical CPTED measures may include?

-P______S_________h________ or e_________s_____(also known as t_____h___________)

A

Physical security hardware or electronic systems (also known as target hardening).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Organizational CPTED measures may include?

-involving p_______or a____________ rather than e________

A

Involving people or activities rather than equipment per se.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Natural CPTED measures may include?

-Natural features like t___, l_______, l___________ and other non-m________objects.

A

Involving natural features such as terrain, layout, landscaping and other non mechanical objects.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

CPTED tools include…?

-NTR;………………………………..M&M
-NS;………………………………….LAS…..and
-NAC;………………………………..Comp…………

A
  • Natural territorial reinforcement;
  • natural surveillance;
  • natural access control;
  • management and maintenance; and
  • legitimate activity support
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are the four D’s?

A

Deter an adversary;
Detect an attack;
Delay an attack; and
Deny access to a target

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

An effective physical security strategy has four functions?

-C…….A_________;
-O_____ an a_______, s________ or e__________;
- d______ e _______ and
- r______________to s______________

A
  • Controlling access;
  • Observing an area, situation or event;
  • Detecting events; and
  • Responding to situations
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

The functions and components of physical security comprise what 3 formats?

-S………………E…………………..H……………

A

Structural;
Electronic; or
Human

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

The basic tool for gaining a thorough and accurate understanding of a situation is…?

  • sra or ss
A

The security risk assessment or security survey.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

A comprehensive risk assessment begins by …then it…..and finally….?

-begins by id_________and v____________-assets; then
-ev________th_______to those assets and s_____and p______revealed risks; and finally, r________m______measures are r________and b________into a comprehensive p________s____.

A

-Begins by identifying and valuing assets;
-Then, it evaluates threats to those assets and summarizes and prioritizes revealed risks;
-Finally, risk mitigation measures are recommended and blended into a comprehensive protection strategy.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

A gap analysis?

-used to determine what s______might improve an org’s capacity to move from a current state to a f_____ state through a r_______a_________

A

Is used to determine what steps might improve an organization’s capacity to move from a current state to a future state through a risk assessment.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

A physical security assessment, also called a security survey, is a form of risk assessment that focuses on what two things?

The R to the PA and P of an org;
The PM (against risk) that are in the realm of PS

A

1) the risks to the physical assets and property of an organization; and 2) the protection measures (against any risk) that comprise the realm of physical security.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

What is the most common and reliable tool for determining adequacy and foreseeability of security measures and programs to counter risks

A

The security survey.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

What is the definition of a security survey?

A TPE of a F and its S and P to A the current L of S, L D and G the d of Pro needed.

A

A thorough physical examination of a facility and its systems and procedures, conducted to assess the current level of security, locate deficiencies, and gauge the degree of protection needed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

What is the difference between a comprehensive risk assessment and a security survey?

-A CRA focuses equally on a____t____and v_____while a SS place more emphasis on v_________

A

A CRA focuses equally on assets, threats and vulnerabilities while a SS places more emphasis on vulnerabilities.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

What is a vulnerability assessment (VA)?

The P of id and q the weak pts of a f…e…v….or person.

A

A vulnerability assessment is the process of identifying and quantifying the weak points of a facility, entity, venue or person.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

What is Delay effectiveness?

-the time required by the a_____ (after d_____) to b______each d_____el________.

A

Delay effectiveness is measured as the time required by the adversary (after detection) to bypass each delay element.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

What is response effectiveness?

-measured by the time between r_____of a c_______ of a_____a_____and the i_________of the a______-a_______.

A

Response effectiveness is measured by the time between receipt of a communication of adversary action and the interruption of the adversary action.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

What is deployment effectiveness?

-measured in terms of the p_____of d________ to the c_____l_____(the ad_____ l______) and the t______required to do so.

A

Deployment effectiveness is measured in terms of the probability of deployment to the correct location (the adversary’s location) and the time required to do so.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

Outside-Inward Approach

A

An approach to conducting physical security assessments whereby the assessment team takes on the role of the adversary attempting to penetrate the physical defenses of a facility. The team begins outside the facility and approaches the outer perimeter to envision ways to get in.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

Inside-Outward Approach

A

An approach to conducting physical security assessments whereby the assessment team takes on the role of the security professional (defender) and works from the asset or target out toward the outer perimeter. The assessors evaluate each successive layer of security for its ability to deter, detect, delay or deny……and solutions are considered.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

Security survey results must be properly reported or applied; the five criteria for good reporting include?

A
  • Accuracy;
    -Clarity;
    -Conciseness;
    -Timeliness,; and
    -Slant or pitch
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

What is the conceptual design, also known as a design concept or schematic phase?

-The first o_____ to d______ the project’s design (based on the b___of d_____ and f__ C____ and r____ from any initial s_____.)
-Also the ideal time to s___ m____ a____ because the team has reached consensus on the s_____ and s___ detail has been developed to create an in______ b______.

A

It is the first opportunity to document the project’s design (based on the basis of design and the findings, conclusions and recommendations from any initial surveys.) It is also the ideal time to seek management approval because the team has reached consensus on the scope and sufficient detail has been developed to create an initial budget.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

Specifications vs. drawings

Drawings = pl…el…det…..ris…..and hardware sch

A

Specifications have precedence over drawings, which usually consist of plans, elevations, details, risers and hardware schedules P. 212

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

What are risers?

A

Representations of complete subsystems, these schematically demonstrate all the associated devices and components and their interconnecting cables.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

Sole source procurement?

A

Best used when an owner already has a vendor on board and the owner has the capability to perform the security needs analysis and has good knowledge of systems and prices.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

Request for proposal?

A

The most common form of procurement; usually based on a set of detailed design and construction documents setting out cost, schedule, technical ability. etc.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

Invitation for bid?

A

Common form of procurement favored by the government and other organizations who require competitive bidding and then usually select the lowest bidder without negotiation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

What is life-cycle cost?

A

The sum of the capital cost and maintenance cost over the useful life of the system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

What is color rendering index (CRI)?

  • acc repro and id of colors;
    -ref of mtrls…..and
    -the dir of the refl,,,lighting
A

Used for accurate reproduction and identification of colors, reflectance of materials and the directionality of the reflected lighting.

41
Q

Crime Prevention through environmental design (CPTED) is a set of management tools that target…..?

-P
-B
-D and U of space

A

-Places;
- Behavior; and
- Design and use of space

42
Q

Three underlying elements of CPTED are….?

  • T
  • Sur
  • AC
A

-Territoriality;
-Surveillance; and
-access control

43
Q

CPTED measures may include:

-M
-O
-N

A

-Mechanical - physical security hardware or electronic systems (target hardening);
-Organizational - involving people or activities rather than equipment;
-Natural - involving natural features such as terrain, layout, landscaping and other non-mechanical objects.

44
Q

Security personnel are usually…..?

A

Both the most expensive component of a security program but also the most critical.

45
Q

Metal Halide lights are best for….?

A

Providing best color rendition for night lighting.

46
Q

What are metrics?

Measure E and E of an O’s ops over time…using…Q….s…and/or m….analysis.

A

They measure the effectiveness and efficiency of an organization’s operations over time….using quantitative, statistical and/or mathematical analysis.

47
Q

What are the four types of equipment tests?

-pre or Fac A t;
-S A T
-R or A t; and
-p-imp t

A
  1. predelivery or factory acceptance tests;
  2. site acceptance tests;
  3. reliability or availability tests; and
  4. post-implementation tests.
48
Q

Physical protection system maintenance is of two main types?

A
  1. Remedial -corrects faults and returns the system to normal after a component failure; and
  2. Preventive - scheduled maintenance to keep components in good working order.
49
Q

What is intrusion detection?

A

The process of detecting a person or vehicle attempting to gain unauthorized entry into an area.

50
Q

What would be the best type of lighting for a hospital parking garage to enhance the CCTV surveillance and monitoring?

A

LED

51
Q

A security director wants to test a new, never tested business continuity plan but it is critical the 24/7 manufacturing process is not impacted by the testing. What’s his best approach?

A

An orientation session followed by a tabletop exercise presented in a narrative format.

52
Q

A joint effort involving local police crime prevention programs, law enforcement and various community members from residential, commercial and other organizations to focus on high-profile crime issues. Such collaboration encourages information sharing, involvement of stakeholders, elimination of duplication of efforts, and effectively reduces crime. This is best described as….?

A

A force multiplier.

53
Q

When selecting a video surveillance system it is important to take a _______________ approach?

A

A systems approach.

54
Q

To monitor and measure an organization’s risk management performance, a set of performance indicators should be developed to measure both the management systems and its outcomes. Measurements should be……

A

Quantitative or qualitative.

55
Q

Which tool aids in the approaches to the Physical Security Assessment?

A

SWOT analysis

56
Q

Project planning involves planning, organizing and ?

-Mon and Con R on a p

A

Monitoring and controlling resources on a project

57
Q

All security projects work within the triangle of constraints, which are?

A

Project scope, schedule and budget

58
Q

A security project manager can play many roles, including?

-pdm…influencing s and b;
-dcc…to sol sprt from sr mgmt; and
-bm

A

-principal decision maker influencing scope and budget;
-design concept creator to solicit support from senior mngmnt;
– budget manager

59
Q

Which lock is generally used on cars, desks and cabinets?

A

Wafer

60
Q

An inventory of key systems should be conducted at least?

A

Annually

61
Q

A sentry dog normally does not perform as well at?

A

gasoline storage areas.

62
Q

Safes that UL classified must be anchored to the floor or must be…?

A

750 pounds

63
Q

Most theft is committed by?

A

Amateurs

64
Q

Metrics will help to show the status of the program, identify performance trends, demonstrate the value of a program……and….?

-Msrs a program’s eff and eff

A

Measure a program’s effectiveness and efficiency.

65
Q

The condition of being protected against hazards, threats, risks or loss?

A

Security

66
Q

There are two approaches to evaluate security program metrics. One analyzes technical criteria, operational criteria and strategic criteria. The other considers what three factors?

eff….eff…..and str….imp…..

A

Effectiveness, efficiency and strategic improvement

67
Q

True or false, equipment performance tests MUST always be coordinated with the appropriate facility personnel.

A

True

68
Q

Regarding predelivery/factory acceptance tests the contractor should be informed that written permission of the __________ should be obtained before proceeding with the next phase of testing.

A

The customer

69
Q

A formal report should be written after each exercise. It should document the formal review of the appropriateness and efficacy of the organization’s PAPMS plans, processes, and procedures (including nonconformities) and should propose what?

A

Corrective and preventive actions

70
Q

Physical protection system maintenance is of two main types and they are?

A

Remedial and Preventive

71
Q

What are the five main ways of classifying exterior intrusion sensors?

A
  • Passive/active;
  • Covert/visible
    -Line of sight/terrain following;
  • Volumetric/line detection;
  • Application
72
Q

What assessment is performed to establish a baseline of physical protection system effectiveness in meeting goals and objectives. The process is a method of identifying the weak points of a facility, entity, venue or person?

A

Vulnerability assessment

73
Q

ABC wants to develop a document outlining the overall intentions and direction of the organization as it relates to managing risk to enhance the resilience and security at ABC. This is also referred to as…?

A

A policy

74
Q

This layer of physical security protection for a facility includes protective lighting, intrusion detection systems, locks, signs, barriers such as fencing and building exterior walls and openings and is called?

A

The middle layer

75
Q

These do not have to be registered?

A

Copyrights

76
Q

This process requires consideration of the three type, tactics, mode of operations, capabilities, threat level and likelihood of occurrence. Threats come from malevolent humans, not accidental (safety-related) events. The process is?

-DBT

A

Design-basis threat

77
Q

What factors affect a dog’s tracking and trailing ability?

A
Ground type,
Weather conditions,
Temperature,
Conflicting odors,
Terrain factors.
78
Q

What are the six basic application types of exterior security lighting?

C
GP
S
C
P and
E

A
Continuous,
Glare projection,
Standby,
Controlled,
Portable,
Emergency.
79
Q

What are the five main types of CCTV lenses?

A
Wide angle,
Standard,
Telephoto,
Zoom,
Varifocal.
80
Q

What are the five types of general security lighting equipment?

A
Streetlight,
Searchlight,
Floodlight,
Fresnel,
High mast.
81
Q

What types of materials are dispensed in dispensable barriers?

A
Rigid foam,
Aqueous foam,
Sticky foam,
Smoke or fog,
Entanglement devices.
82
Q

What are the five main types of mechanical locks?

A
Warded lock,
Lever lock,
Pin Tumbler lock,
Wafer Tumbler lock,
Dial combination lock.
83
Q

The owners of a townhouse complex implemented signage and designed the landscaping to deter unwanted activity and trespassing. They also designed better sight-lines to th children’s playground from the inside of the residences. They intend to enforce a sense of ownership, responsibility and accountability with property owners to increase vigilance in spotting trespassers. In CPTED, this is described as?

A

Natural Territorial reinforcement

84
Q

A new multi-level parking garage was designed to increase visibility…both interior to exterior and outside to inside to facilitate witness potential and make the adversary fear exposure is described in CPTED as?

A

Natural Surveillance

85
Q

CPTED focuses most on which PPS principle?

A

Deterrence

86
Q

Corrected color temperature (CCT)

A

A measure of the warmth or coolness of a light….measured in degrees Kelvin

87
Q

The high-intensity discharge (HID) family of lamps include:

mh
mv and
h-ps

A

Metal halide

Mercury vapor

High-pressure sodium

They require stable voltage levels since they produce light from an arc discharge under high pressure…

88
Q

Three main characteristics of intrusion sensor performance:

P of D
NAR
V to D

A

probability of detection (PD)
nuisance alarm rate and
vulnerability to defeat

89
Q

The effectiveness of a sensor is described by

PD and CL

A

Partial Discharge….often less than “1” which would be a perfect probability of detection.

Confidence level - of detection.

When manufacturers state values of PD without stating the CL, they are likely implying a value of at least 90 percent for CL

90
Q

A nuisance alarm

A

Any alarm not caused by an intrusion

91
Q

This sensor absorbs invisible light energy comparing actual energy to established background energy. What type of sensor is this?

A

Passive Infrared

92
Q

This sensor can use buried cable or transmitting and receiving signals relying on consistent reception of transmitted or reflected energy. When energy levels change due to a reflection or deflection, an alarm is transmitted. This is called….?

A

Microwave detection

93
Q

Visual assessment

A

Having visual information of an identifying or descriptive nature during an incident.

94
Q

Surveillance forensics

A

Having visual information stored in a format that allows the study or review of images.

95
Q

Visual documentation

A

Includes various embedded authenticity points - like time/date

96
Q

Camera Sensitivity

A

The minimum amount of visible light that is necessary to produce a quality image….as well as invisible light spectrums such as infrared.

97
Q

Camera Resolution

A

Measured in the number of horizontal and vertical pixels and defines the image quality from a detail or reproduction perspective.

98
Q

Mean time between failures (MTBF)?

A

Measures the average time that equipment is operating between breakdowns or stoppages….helps businesses understand their equipment and if there is a problem.

99
Q

What characteristics drive the design of alarm communications systems?

A

Quantity of alarm data

high reliability

speed at which data must be delivered

(Ease of system use by personnel…..not considered.)