Orange County NC Website
<br /> <br />P a g e 17 <br /> <br /> <br />Orange County <br />Facilities Security Assessment <br />RFP#: 367-OC 5403 <br />CTCH Security Business Consulting – www.ctchconsulting.com <br /> <br />plans and will enable the team to identify how the current plans reduce security <br />risk/threats. Once the team has evaluated the security training elements, it will be able <br />to compare current policy vs procedures; and will be able to identify if these <br />policy/procedures meet the minimal industry standards. The overall evaluation will <br />enable the team to recommend possible training resources that address security risks <br />and that would enable OC stakeholders to tailor existing security plans to meet its <br />operational security goals. By outlining administrative vulnerabilities during this tier, the <br />team will also begin to draft parts of the SRAMF-CPTED Reports and CPTED-Security <br />Master Plan, associated with Tier III. <br /> <br />Electronic Security System (ESS) and Site Artifacts Review: In an effort to evaluate <br />each areas architectural layout, the team would request electronic copies of ‘As Builts’ <br />that are related to the existing physical makeup of each site: that outline entry/exit <br />points and site structures; that outline Electronic Security System (Access Control <br />Systems, Intrusion Detection Systems, CCTV and Duress) components; that outline the <br />physical infrastructure that is used to support the Electronic Security Systems; and that <br />outline the existing Electronic Security System Network Enterprise (field components to <br />local Premise Control Unit (security panels), Premise Control Unit(s) (security panels) to <br />Switch/Server and Switch/Server to the Monitoring Stations). By evaluating these ‘As <br />Builts’ the team will be able to determine if there are any vulnerabilities associated with <br />existing physical and technical security postures; and will help the team evaluate existing <br />components in their operating environments during Tier II. <br /> <br />The team will also request data in relation to security system(s) hardware and <br />software that support Electronic Security Systems (Electronic Access Control Systems, <br />Intrusion Detection Systems, CCTV Systems and Duress Systems) be provided in an <br />effort to identify any Standalone/Local Area Network (LAN)/Wide Area Network (WAN) <br />vulnerabilities. The team will also request electronic copies of the Electronic Security <br />System (ESS – CCTV, Intrusion Detection, Access Control and Duress) maintenance logs, <br />alarm annunciation activity reports and installed equipment lists. These documents will <br />be evaluated in an effort to identify design or operational flaws associated with the ESS, <br />parts of the ESS that may be at its ‘end of life and parts of the ESS that may need to be <br />adjusted. <br /> <br />FSL Ratings: Once baseline information is collected, the team will then begin to <br />create the Preliminary Facility Security Level (FSL) rating for OC sites in accordance with <br />Homeland Security, Integrated Security Committee (ISC) standards. The FSL rating will <br />consist of an evaluation of the Mission Criticality, Symbolism, Facility Population, Facility <br /> <br />DocuSign Envelope ID: CCAAE303-70FA-49DE-B23A-944301EA0EEB