International

ASIS International Releases New ESRM Guideline

ASIS International released its Enterprise Security Risk Management (ESRM) Guideline, which takes a different approach to traditional security. The new guideline is the first strategic security management tool of its kind, elevating the security function by estab lishing a partnership between security professionals and business leaders to manage security risks.

The objective of ESRM is to identify, evaluate, and mitigate the likelihood and/ or impact of security risks to the organization with priority given to protective activities that help enable the organization to advance its overall mission. ESRM positions the security professional as a trusted advisor to help guide asset owners through the process of making security risk management decisions.

“We’re very proud to provide this foundational tool to ASIS members – and the security industry at-large – to help guide them through adoption of ESRM within their organizations,” said David R. Feeney, CPP, PMP, Chairman of the ASIS ESRM Guideline Technical Committee.

ESRM recommends that security professionals maintain an understanding of the organization’s overall strategy including its mission and vision, core values, operating environment, and stakeholders. Understanding this context will enable security professionals to effectively support and align with the organization’s strategic goals.

The new guideline further outlines how the ESRM Cycle is built on a foundation of transparency, governance, partnership with stakeholders, and holistic risk management. By continually repeating the ESRM cycle, security professionals can bring ESRM practice to maturity and maintain high performance over time.

“We remain committed to the global development of ESRM, and the release of our ESRM Guideline demonstrates the ASIS Board of Director’s ongoing support to formalize ESRM globally,” said Tim McCreight, ASIS Global Board Sponsor of the ESRM Initiative.



 

To top