SourceSecurity.com
  • Products
    CCTV
    • CCTV cameras
    • CCTV software
    • IP cameras
    • Digital video recorders (DVRs)
    • Dome cameras
    • Network video recorders (NVRs)
    • IP Dome cameras
    • CCTV camera lenses
    Access Control
    • Access control readers
    • Access control software
    • Access control controllers
    • Access control systems & kits
    • Audio, video or keypad entry
    • Electronic locking devices
    • Access control cards/ tags/ fobs
    • Access control system accessories
    Intruder Alarms
    • Intruder alarm system control panels & accessories
    • Intruder detectors
    • Intruder warning devices
    • Intruder alarm communicators
    • Intruder alarm accessories
    • Intruder alarm lighting systems
    Understanding AI-powered video analytics
    Understanding AI-powered video analytics
    Dahua Smart Dual Illumination Active Deterrence Network PTZ Camera

    Dahua Smart Dual Illumination Active Deterrence Network PTZ Camera

    Hikvision DS-K6B630TX: Smart Pro Swing Barrier for Modern Access Control

    Hikvision DS-K6B630TX: Smart Pro Swing Barrier for Modern Access Control

    Climax Mobile Lite: Advanced Personal Emergency Response System (PERS)

    Climax Mobile Lite: Advanced Personal Emergency Response System (PERS)

    Hanwha Vision OnCAFE: Cloud-Based Access Control for Modern Enterprises

    Hanwha Vision OnCAFE: Cloud-Based Access Control for Modern Enterprises

  • Companies
    Companies
    • Manufacturers
    • Distributors
    • Resellers / Dealers / Reps
    • Installers
    • Consultants
    • Systems integrators
    • Events / Training / Services
    • Manned guarding
    Companies by Product area
    • CCTV
    • Access control
    • Intruder alarm
    • IP networking products
    • Biometrics
    • Software
    • Digital video recording
    • Intercom systems
    Understanding AI-powered video analytics
    Understanding AI-powered video analytics
  • News
    News
    • Product news
    • Corporate news
    • Case studies
    • Events news
    Latest
    • Hikvision attains ISO 37301 Certification for Compliance Management System
    • SentriGuard's role in sustainable security solutions
    • Axis joins CISA Secure by design for cybersecurity
    • Xtract One's SmartGateway enhances Nova Scotia security
    Understanding AI-powered video analytics
    Understanding AI-powered video analytics
  • Insights
    Insights
    • Expert commentary
    • Security beat
    • Round table discussions
    • Round Table Expert Panel
    • eMagazines
    • Year in Review 2023
    • Year in Review 2022
    Featured
    • What are emerging applications for physical security in transportation?
    • What is the most overlooked factor when installing security systems?
    • Amid rising certificate demands, stricter compliance and quantum threats, PKIaaS is a necessity
    • How should security adapt to the unique aspects of healthcare?
    Understanding AI-powered video analytics
    Understanding AI-powered video analytics
  • Markets
    Markets
    • Airports & Ports
    • Banking & Finance
    • Education
    • Hotels, Leisure & Entertainment
    • Government & Public Services
    • Healthcare
    • Remote Monitoring
    • Retail
    • Transportation
    • Industrial & Commercial
    Understanding AI-powered video analytics
    Understanding AI-powered video analytics
    Alamo enhances security with Alcatel-Lucent solutions

    Alamo enhances security with Alcatel-Lucent solutions

    The University of Dundee implements HID for modern access control

    The University of Dundee implements HID for modern access control

    The Camp: Enhance security with ASSA ABLOY Aperio wireless locks

    The Camp: Enhance security with ASSA ABLOY Aperio wireless locks

    SBB upgrades surveillance with Hanwha Vision cameras

    SBB upgrades surveillance with Hanwha Vision cameras

  • Events
    Events
    • International security
    • Regional security
    • Vertical market
    • Technology areas
    • Conferences / seminars
    • Company sponsored
    Virtual events
    • Video Surveillance
    • Access Control
    • Video Analytics
    • Security Storage
    • Video Management Systems
    • Integrated Systems
    Understanding AI-powered video analytics
    Understanding AI-powered video analytics
    Gartner IT Infrastructure, Operations & Cloud Strategies Conference 2025

    Gartner IT Infrastructure, Operations & Cloud Strategies Conference 2025

    Technology Summit International 2025

    Technology Summit International 2025

    G2E Philippines 2025

    G2E Philippines 2025

    IFSEC India 2025

    IFSEC India 2025

  • White papers
    White papers
    • Video Surveillance
    • Access Control
    • Video Analytics
    • Video Compression
    • Security Storage
    White papers by company
    • HID
    • ASSA ABLOY Opening Solutions
    • Milestone Systems
    • Eagle Eye Networks
    • Hanwha Vision America
    Other Resources
    • eMagazines
    • Videos
    Aligning physical and cyber defence for total protection

    Aligning physical and cyber defence for total protection

    Understanding AI-powered video analytics

    Understanding AI-powered video analytics

    Modernizing access control

    Modernizing access control

    Enhancing physical access control using a self-service model

    Enhancing physical access control using a self-service model

About us Advertise
  • AI-powered video analytics
  • AI special report
  • Cyber security special report
  • 6
Intrusion detection
  • Home
  • News
  • Expert commentary
  • Security beat
  • Case studies
  • Round table
  • Products
  • White papers
  • Videos

Check out our special report on Cybersecurity

Read now!

What safeguards can avoid unauthorised retrieval of access control data?

22 Jan 2024

What safeguards can avoid unauthorised retrieval of access control data?
Larry Anderson
Larry Anderson
22 Jan 2024

Editor Introduction

Protecting access control data is a core concept when it comes to safeguarding information assets, maintaining trust, and ensuring smooth operations. Guarding access to data also ensures compliance with regulations, prevents accidental misuse, and streamlines workflows. We asked this week’s Expert Panel Roundtable: What safeguards are in place to avoid unauthorised retrieval of access control data? 


Card image cap
Rob Druktenis Axis Communications

All modern access control solutions should be designed with cybersecurity top of mind, providing encrypted communication so users can be sure their data is thoroughly protected from unauthorised parties at all times. A simple way to ensure a safeguarded system is by implementing an end-to-end access control solution that includes all the required components, from the software managed by the operator to the credentials carried by the end user. For example, software that uses TLS encryption to communicate with the door controller, door controllers that possess a Secure Element to provide secure storage and use of encryption keys for reader communication such as SCP, and finally readers with a Secure Element to store keys for reading MIFARE DESFire EV3 encrypted credentials. Additionally, those with either end-to-end or standalone systems must keep up with any device updates to avoid issues linked to outdated tech.  

Card image cap
Laurent Villeneuve Genetec, Inc.

Access control systems must protect against the unauthorised retrieval of private information both within the system and at the credential level. Within the solution, data encryption at the database level and implementation of roles can limit access to information to only those with proper authorisation. Likewise, granular privileges, strong authentication (password), partitioning of the system, and certificate-based authentication between the client and server are good cybersecurity hygiene tactics. At the credential level, depending on the sensitivity of the site, certain credentials are more suitable than others but require some backend management for the security keys. Customers may choose to have the manufacturer handle that task by asking for custom keys or managing those themselves. 

Card image cap
Rebecca Herold Privacy & Security Brainiacs

As we look to 2024, establishing safeguards to avoid unauthorised retrieval of access control data will continue to grow in importance. According to "The Impact of Technology in 2024 and Beyond: an IEEE Global Study," data vulnerability will remain a top cybersecurity concern as we move into the new year. To protect against unauthorised data access there are a few safeguards to put in place. For one, security teams should establish the organisational responsibility for information and technical security management within a specific role. Secondly, organisations should limit access to access control data to only the minimum necessary individuals and accounts who need such access to perform their job responsibilities. Lastly, access and changes to access control data should be logged accordingly. Teams should not allow the access control management personnel to have access to view logs, but should establish monitoring to a separate independent team, such as (internal auditors and security officers) that can determine when access is unauthorised, unnecessary, or otherwise raises a red flag. 

Card image cap
Mike Kiser SailPoint

Safeguards that are top-of-mind for me include process security and company culture. After a breach, there is frequent finger-pointing at holes in the code built by engineers and faults assigned to the architecture of the cybersecurity technology. However, this is not always the case; flaws in process security, the workflows to stop and prevent a cyberattack, and a company culture that places excessive responsibilities on employees often lead to the cyber insecurity of access control data. Good security policy starts from the top down, with policy reflecting the values of the organisation. As an example of this policy, lateral movement can be restricted with policies that prevent any one individual from having unnecessary access. Cybersecurity should be front-of-mind for everyone, rather than consolidated under a few individuals. As with most security, safeguards must be driven from an overall organisational philosophy in concert with practical, technical safeguards.

Card image cap
Daniel Reichman Ai-RGUS

It is important to consider the data-security practices of vendors and their software products. This includes reviewing their cybersecurity practices and receiving a record of their latest third-party audits such as a penetration test into their software offerings. It also includes reviewing the security of the data centres they use to host customer data. 


Editor Summary

Cybersecurity and encrypted communications are important elements in protecting retrieval of access control data. The system should ensure that only authorised personnel can access data using granular privileges and strong authentication. Policies should reflect the values of the organisation and be driven from top management down. 

  • Related links
  • Axis Communications CCTV software
  • Axis Communications Access control controllers
  • Axis Communications Access control software
  • Genetec CCTV software
  • Genetec Access control controllers
  • Genetec Access control software
  • Biometric Access control software
  • Access Control Software Access control software
  • Networkable Access control controllers
  • ANPR Software CCTV software
  • Control Software CCTV software
  • Card Access control software
  • Standalone Access control controllers
  • Mifare Access control software
  • Drawing Software CCTV software
  • IP Surveillance Software CCTV software
  • Proximity Access control software
  • Smart Card Access control software
  • Management Software CCTV software
  • Central Monitoring Option Access control software
  • Centrally managed access solution Access control software
  • Monitoring Software CCTV software
  • Surveillance Software CCTV software
  • License Access control software
  • Management Systems Upgrade Access control software
  • Remote software for telecode door entry phone system Access control software
  • Version Upgrade Access control software
  • Visitor Management tool Access control software
  • Related categories
  • CCTV software
  • Access control controllers
  • Access control software
Related white papers
Precision and intelligence: LiDAR's role in modern security ecosystems

Precision and intelligence: LiDAR's role in modern security ecosystems

Download
The top 4 reasons to upgrade physical security with the Cloud

The top 4 reasons to upgrade physical security with the Cloud

Download
11 advantages of a combined system for access control and intrusion

11 advantages of a combined system for access control and intrusion

Download
Related articles
Securitas UK & Hays Travel mark 10 years partnership

Securitas UK & Hays Travel mark 10 years partnership

Ranger acquires Universal Fire & Security in South West

Ranger acquires Universal Fire & Security in South West

Detection Tech's DT2030 strategy: Enhance X-ray detector solutions

Detection Tech's DT2030 strategy: Enhance X-ray detector solutions

Follow us

Sections Products CCTV Access Control Intruder Alarms Companies News Insights Case studies Markets Events White papers Videos AI special report Cyber security special report RSS
Topics Artificial intelligence (AI) Mobile access Healthcare security Counter terror Cyber security Robotics Thermal imaging Intrusion detection Body worn video cameras
About us Advertise About us 10 guiding principles of editorial content FAQs eNewsletters Sitemap Terms & conditions Privacy policy and cookie policy
  1. Home
  2. Topics
  3. Intrusion detection
  4. News
  5. Round table discussions
About this page

"Explore top tips from experts on safeguarding access control data, ensuring regulatory compliance, preventing misuse, and streamlining operations in the physical security industry."

See this on SecurityInformed.com

Subscribe to our Newsletter

Stay updated with the latest trends and technologies in the security industry
Sign Up

DMA

SourceSecurity.com - Making the world a safer place
Copyright © Notting Hill Media Limited 2000 - 2025, all rights reserved

Our other sites:
SecurityInformed.com | TheBigRedGuide.com | HVACinformed.com | MaritimeInformed.com | ElectricalsInformed.com

Subscribe to our Newsletter


You might also like
Understanding AI-powered video analytics
Understanding AI-powered video analytics
Security and surveillance technologies for the casino market
Security and surveillance technologies for the casino market
Modernizing access control
Modernizing access control
Addressing Cybersecurity Vulnerabilities in the Physical World
Addressing Cybersecurity Vulnerabilities in the Physical World
SourceSecurity.com
SecurityInformed.com

Browsing from the Americas? Looking for our US Edition?

View this content on SecurityInformed.com, our dedicated portal for our Americas audience.

US Edition International Edition
Sign up now for full access to SourceSecurity.com content
Download Datasheet
Download PDF Version
Download SourceSecurity.com product tech spec