Security devices
NETSCOUT, a provider of network observability, AIOps, cybersecurity, and DDoS attack protection solutions, announces nGenius® Copilot, an AI-powered conversational extension to nGeniusONE® that provides intuitive access to NETSCOUT® Smart Data. It gives more people access to Smart Data for easier and faster ways to investigate service disruptions and assess business impact. nGenius Copilot is grounded in NETSCOUT Smart Data, the high-fidelity, contextual data derived from observed n...
Ranger Fire and Security has become one of the first businesses in the fire and security industry to offer fully equalised private medical insurance (PMI) and life assurance benefits. It means that every employee across Ranger, regardless of role, seniority or which business within the Group they work for, will now receive the same wide-ranging and comprehensive package of workplace benefits. The move, which forms part of a wider set of workplace initiatives, breaks from an industry standard in...
Pyronix has announced the launch of PyronixCloud Connect (PCC), a compact and affordable Wi-Fi-enabled module that brings modern smart features to older wired alarm systems, without the need for a full system upgrade. Designed to integrate seamlessly with legacy Pyronix and third-party control panels, PCC connects older systems to InSite Pro Cloud and the HomeControl2.0 app. This enables users to remotely arm or disarm their system, check status updates and receive alerts in real time, adding p...
Camelot Secure and its parent company, DigiFlight Inc., announced Tuesday a partnership with the Baltimore Ravens, becoming the team’s “Proud Cyber Resilience Partner” and bringing decades of experience supporting national security and mission-critical operations to one of the National Football League’s (NFL’s) most recognised franchises. The partnership connects the two worlds of professional football and cybersecurity, where preparation, resilience and performanc...
Euralarm has published a new guidance document, Guideline on Disposal of Fire-Fighting Foam Media (UK & Europe), providing practical recommendations for the safe, compliant and environmentally responsible handling and disposal of fire-fighting foam media. The publication reflects the rapidly evolving regulatory landscape surrounding PFAS-containing firefighting foams and supports organisations in adopting best practice throughout the disposal process. The guidance has been developed for man...
Teledyne FLIR, part of Teledyne Technologies Incorporated, announces the launch of the Si2a-LD and Si2a-Pro, completing the new Si2a-Series portfolio of fixed-mount acoustic imaging solutions for continuous condition monitoring in industrial and utility environments. Designed to provide always-on visibility into asset health, the Si2a-LD and Si2a-Pro help organisations move beyond periodic inspections by continuously monitoring critical systems for developing issues. Integrated with the FLIR As...
News
HackerOne, a global pioneer in Continuous Threat Exposure Management (CTEM), announces the upcoming integration of Anthropic’s Claude Mythos across select H1 Platform products: H1 Code Security Audit and H1 Code. The integration will make frontier cyber AI available in existing security workflows, connecting agentic vulnerability discovery with validation, prioritisation, and remediation. Enterprises are identifying possible exposures faster than ever, yet falling further behind on validating true exposure and making fixes. Frontier AI is widening that gap in both directions. According to H1 Platform data, critical vulnerability mean time to remediate (MTTR) improved by more than 50% over the past 12 months. Existing engineering workflows Over the same period, the unresolved critical backlog grew 29x. As frontier cyber AI increases the speed and depth of discovery, organisations need a scalable way to validate and prioritise what it finds. The H1 Platform harness will be available with Mythos through discovery of source code vulnerabilities with controls designed to improve coverage, validate model outputs, and bring validated exposures into existing engineering workflows. "Frontier cyber AI models can do one of two things to a security team," said Nidhi Aggarwal, Chief Product Officer at HackerOne. "It can hand them a longer list, or it can hand them a list they can act on. Which one depends entirely on what sits between the model and the security team. A harness helps turn model output into a validated exposure a security team can act on. We ran and validated the H1 Platform harness for ourselves before any customer saw it." Surface complex vulnerabilities On the discovery side, H1 Code Security Audit scans full repositories to surface complex vulnerabilities, including compositional vulnerabilities that can span years of commits and multiple authors, and H1 Code reviews pull requests. “Attackers are already using frontier AI to find and exploit vulnerabilities faster than humans alone can respond,” said Kara Sprague, Chief Executive Officer at HackerOne. “Defenders need access to advanced cyber-capable models, with people accountable for the decisions those models inform and the actions those models take. Finding vulnerabilities faster matters only if organisations can validate, prioritise, and act on them.” Complementary layers of continuous security Frontier cyber AI is one layer of coverage. An elite community of security researchers provides another, bringing creativity, contextual understanding, and real-world adversarial expertise to complex attack chains, business logic flaws, and novel exploitation paths. Together, frontier cyber AI and human expertise provide complementary layers of continuous security. HackerOne does not use or permit use of confidential researcher submissions or customer vulnerability data to train, fine-tune, or otherwise improve generative AI models. The select H1 Platform offerings will soon be available with Mythos. Users can also read more about what HackerOne found running Mythos on its systems as part of Project Glasswing and learn more about the H1 Platform.
Colt Technology Services (Colt), the global digital infrastructure company and an Oracle partner, today announced it will offer connectivity to Oracle EU Sovereign Cloud through Oracle Cloud Infrastructure (OCI) FastConnect in the Frankfurt and Madrid regions. Oracle customers can use Oracle Cloud locally to innovate faster, scale with confidence and drive business growth. As demand for digital sovereignty accelerates across Europe, enterprises and public sector organisations are seeking cloud architectures that deliver performance, resilience and regulatory compliance. Meeting sovereignty requirements By extending its connectivity to Oracle EU Sovereign Cloud, Colt is helping organisations accelerate cloud adoption while meeting sovereignty requirements. Through Colt’s high performance, low latency Dedicated Cloud Access services and OCI FastConnect, customers can privately connect to Oracle EU Sovereign Cloud, bypassing the public internet and supporting multi region architectures for business continuity and disaster recovery. Colt is already an established OCI FastConnect partner in Europe, the Middle East, Asia, and the United States. Peter Coppens, VP – Product, Colt Technology Services said, “Data sovereignty is a priority for businesses in Europe. Together, Colt and Oracle are helping give organisations a resilient, future ready approach to sovereign cloud in the region while balancing regulatory assurance with real world performance.” High-performance connectivity options With OCI, customers benefit from best-in-class security, consistent high performance and global pricing, and the tools and expertise needed to bring enterprise workloads to the cloud quickly and efficiently. OCI’s extensive ecosystem of more than 110 OCI FastConnect global and regional partners provide dedicated connectivity to Oracle Cloud Regions and services, giving organisations flexible, high-performance connectivity options anywhere in the world. OCI is designed to run any application faster, and more securely, for less. As the only hyperscaler capable of delivering 200+ AI and cloud services at the edge, in a customer’s datacentre, across clouds, or in the public cloud, OCI also helps address a variety of data privacy, sovereign AI, and low latency requirements. In addition, Oracle’s distributed cloud delivers the benefits of the cloud with greater control and flexibility while also providing the consistent performance, SLAs, and global pricing for which OCI has become known.
Godel Technologies (Godel) has announced a major strategic transformation of its business as it responds to the accelerating impact of artificial intelligence on the software engineering and technology services industry. The move represents one of the most significant changes in Godel’s history and will see the company evolve beyond the traditional software engineering services model on which it has built its business. AI-native approach Godel believes AI is fundamentally changing both how technology services are delivered and what businesses should expect from their technology partners. As a result, the company is repositioning around an AI-native approach designed to deliver greater speed, insight and measurable business outcomes for customers. The strategy will have a particular focus on the mid-market, where Godel believes AI has the potential to dramatically change the competitive landscape. Gareth Ainsworth, CEO of Godel Technologies, said; “AI isn’t simply another technology cycle. It is beginning to change the economics of our industry. For technology businesses like ours, there is a choice. We can use AI to make the traditional services model incrementally more efficient, or we can rethink what that model should look like altogether. We have chosen to rethink it. This is therefore much more than adding AI capabilities to our existing business. We are repositioning Godel around how we believe technology services will need to be delivered in an AI-native world.” Major enterprise technology programmes Godel believes the traditional relationship between the scale of a technology challenge and the people, time and cost required to solve it is beginning to break down. Historically, tackling complex technology and data problems has often required large teams, lengthy discovery programmes and significant investment. AI has the potential to radically compress that model. For Godel, this creates an opportunity to bring levels of insight, speed and capability previously associated with major enterprise technology programmes to a much broader section of the market. Ainsworth continued; “The mid-market is where this becomes particularly interesting. Many ambitious businesses face exactly the same technology and data challenges as much larger organisations, but they don’t necessarily have access to the same budgets, teams or resources. AI has the potential to change that equation. It can give these businesses access to levels of capability that historically would have required enormous investment. That is the opportunity we are building Godel around.” Traditional delivery models The new strategy also reflects Godel’s belief that the competitive advantage created by AI will not be evenly distributed. Companies able to understand, adopt and apply AI effectively will increasingly be able to move faster than larger competitors constrained by legacy technology, organisational complexity and traditional delivery models. This forms part of what Godel describes as a “fast eats slow” philosophy: the idea that the next generation of market leaders will be defined less by their size than by their ability to adapt and execute. Measurable business outcomes Godel’s approach will be built around three principles: working with businesses to adopt AI rather than imposing technology upon them; providing transparency rather than creating new technological black boxes; and focusing on measurable business outcomes rather than technology for technology’s sake. Its established engineering expertise will remain central to the business but will increasingly be applied through this new AI-native model. Ainsworth concluded: “We aren’t walking away from engineering. Quite the opposite. We are asking what world-class engineering looks like when AI becomes fundamental to how technology is understood, built and improved. We believe the answer will look very different from the traditional model.” “The businesses that recognise that early have an extraordinary opportunity. In the next technology cycle, being bigger won’t necessarily make you faster. And when technology is moving at this speed, fast eats slow.” Godel will reveal further details of its new proposition later this year.
HP Inc. releases its latest Threat Insights Report, providing analysis of real-world cyberattacks, helping organizations keep up with the latest techniques cybercriminals are using to evade detection and breach PCs in the fast-changing cybercrime landscape. Based on millions of endpoints running HP Wolf Security, notable campaigns identified by HP Wolf Security threat researchers include: Fake AI Trading Agents Lure Crypto Users into Malware Trap: Cybercriminals are capitalizing on interest in Agentic AI by advertising fake AI trading agents to trick users into infecting themselves with malware. Once downloaded, victims’ browsers are scanned for crypto wallet extensions like Coinbase and MetaMask, replacing them with malicious lookalikes that harvest any credentials entered. Once harvested, attackers have easy access to steal crypto holdings. Fake AI trading agents QR Phishing Remains a Common Credential Theft Route: Attackers are using QR codes to move victims from PCs to less-protected mobile devices. Victims receive PDFs with content supposedly “blurred for security”. They are then prompted to scan a QR code with their phone which redirects to phishing sites that may otherwise be blocked on their PCs, putting login credentials at risk. Phantom Stealer Ecosystem Expands: Researchers identified Phantom Gate, a new malware loader, that appears to extend the Phantom Stealer campaign. Combining Phantom Stealer malware, which is openly marketed as legitimate penetration-testing software, with the Phantom Gate loader mechanism, makes it easier for threat actors to build and scale attack campaigns. Penetration-testing software Patrick Schläpfer, Principal Threat Researcher, HP Security Lab, comments: “Attackers are tapping into Agentic AI tool adoption to invest in new lures that trick users into downloading malicious software that looks legitimate. This tactic makes malware delivery more polished and harder to detect. New attack tools such as Phantom Gate reflect the expanding threat landscape. They enable threat actors to easily compose dangerous infection chains, which greatly increases the risk of compromise for organizations.” By isolating threats that have evaded detection tools on PCs – but still allowing malware to detonate safely inside secure containers – HP Wolf Security has insight into the latest techniques used by cybercriminals. To date, HP Wolf Security customers have clicked on 60 billion email attachments, web pages and downloaded files with not reported breaches. Bypass security tools The report, which examines data from April-June 2026, details how cybercriminals continue to diversify attack methods to bypass security tools, revealing that: At least 10% of email threats identified by HP Sure Click bypassed one or more email gateway scanner. Executable files were the most popular malware delivery type (40%), followed by archive files (38%) and PDF documents (7.5%). James Wright, HP’s Global Head of Security for Personal Systems comments: “Users move constantly between devices and applications, like browsers or new AI tools – and attackers are quick to follow. Security needs to work across all of those interactions, without getting in people’s way. That means organizations need a zero-trust approach built around isolation and containment, so untrusted clicks and downloads don’t become a risk.”
ZeroEyes, creators of the multi-analytics weapons detection and threat intelligence platform, announces that specialty insurance leader David Macpherson has joined the company as a strategic advisor for risk and insurance. He will advise ZeroEyes on insurance strategy, alternative risk financing, customer risk-management programs, and engagement with global insurers. ZeroEyes pioneered human-verified visual firearm detection to help organisations identify imminent active threats and facilitate faster, life-saving response with real-time, reliable intelligence. As the company expands its threat detection analytics and capabilities, it is also working to support the acute needs of risk management and recovery. Firearm-related events The recently launched Harborwatch Association is an affiliated, risk-focused membership organisation initially serving PK-12 organisations that have deployed ZeroEyes visual firearm detection on premises. It provides access to resources intended to strengthen preparedness, response and resilience, as well as crisis management and risk-financing support connected to qualifying firearm-related events. “Human-verified threat detection, delivered in real time, can support better risk management, more effective crisis response and new approaches to financing weapons-related risk,” said Macpherson. “I am excited to help ZeroEyes develop this opportunity.” Global insurance programs Macpherson is Head of Specialty at C J Coleman and has more than 20 years of experience designing and implementing global insurance programs for major organisations. His expertise includes active assailant coverage, complex geopolitical and emerging risks. In his advisory role, David Macpherson will support ZeroEyes as it: Develops risk management and loss-control resources tied to the company’s technology and operational experience Evaluates new insurance and alternative risk-financing applications Strengthens Harborwatch Association and related initiatives Builds relationships across the commercial insurance industry “The most valuable insurance partnerships seek to do more than simply transfer risk,” Macpherson added. “They help organisations understand exposure, reduce risk, and respond more effectively when an event occurs. ZeroEyes has the operational foundation to pilot that model for the industry.”
Zenitel, a pioneer in Unified Critical Communication solutions, announces the launch of the Indoor IP Speaker Kit (ZIPS-K) and Outdoor IP Speaker Kit (ZIPS-KOE), giving partners greater flexibility to develop customised IP speaker solutions for specific applications and project requirements. Zenitel was an early pioneer of IP speaker technology, introducing its first IP speaker solution in 2010. Since then, the company has continuously expanded its IP speaker portfolio to address a growing range of public address, security, and operational communication requirements. Operational communication requirements With the introduction of the Zenitel IP Speaker Kits, Zenitel takes the next step by making its IP speaker technology available as a flexible building block for customised speaker designs. IP speakers can be integrated part of Zenitel Unified Critical Communication solutions such as Zenitel Connect. The Zenitel IP Speaker Kits enables partners to build and customise IP speakers around specific form factors, acoustic requirements, and project needs, while leveraging the proven audio, networking, and management capabilities behind Zenitel's own IP speaker portfolio. This allows Zenitel’s technology to be incorporated into applications where a standard speaker enclosure may not be the ideal fit, while maintaining the communication capabilities expected from a Zenitel IP audio solution. IP communication technology At the heart of the new kits is the same focus on audio performance that has characterised Zenitel's communication solutions for decades. By combining the speaker kits with an appropriate loudspeaker and enclosure, partners can develop solutions tailored to their application while benefiting from Zenitel's proven audio processing and IP communication technology. The result is greater freedom in speaker design without compromising the quality and reliability required for critical communications. IP speaker portfolio The new IP Speaker Kits are not only intended for customised partner solutions. They will also become the technology foundation for Zenitel's own IP speaker portfolio, replacing the existing IP module and further expanding the capabilities of Zenitel’s IP speakers. This common technology foundation enables Zenitel to continue developing its IP speaker portfolio while giving partners access to the same underlying technology for their individual and specialised applications. Operational requirements change Together, the new IP Speaker Kits and Zenitel’s IP speaker portfolio further strengthen the company’s Unified Critical Communication (UCC) offering, enabling organisations to bring public address and communication capabilities into a broader, unified communication environment. Combined with platforms such as Zenitel Connect and services such as Zenitel Cloud RMM, customers can deploy, manage, and evolve their critical communication solutions as operational requirements change. “With the Zenitel IP Speaker Kits, we are taking the technology behind our IP speakers and making it available in a much more flexible form,” says Mikkjell Rommetveit, Senior R&D Project Manager at Zenitel. Customised speaker built “Our partners increasingly need solutions adapted to specific environments and applications. Rather than limiting to a specific speaker design, the new kits give them the freedom to build any type of speakers while keeping Zenitel technology at the core.” “For us, this is also about extending the Zenitel ecosystem,” Rommetveit adds. “Whether customers choose a complete Zenitel IP speaker or a customised speaker built with Zenitel Inside, they can benefit from the same trusted foundation for critical communication.”


Expert commentary
For years, innovation in physical security has focused on what systems can do: higher-resolution cameras, AI-driven analytics, smarter access control, and cloud-based management. But across deployments, from residential systems to enterprise campuses, a more fundamental issue continues to undermine performance: Connectivity. It is increasingly clear that the effectiveness of modern security systems is not limited by sensors or software, but by the reliability, reach, and architecture of the networks that connect them. As security systems evolve toward real-time detection, automated response, and distributed intelligence, connectivity is no longer a supporting layer. It is the foundation and, too often, the weakest link. When security design is constrained by connectivity In theory, security systems are designed to maximise visibility, coverage, and response time. In practice, they are often designed around the limitations of network infrastructure. Nowhere is this more visible than in video surveillance. Cameras are frequently positioned not where risk is highest, but where connectivity is available. Dead zones in garages, basements, or perimeter edges force compromises in placement, reducing the effectiveness of the system. In some real-world deployments, traditional Wi-Fi has been shown to fail at a meaningful percentage of intended installation points, particularly in challenging environments or at the edges of coverage. This creates a disconnect between security intent and system reality. Instead of enabling proactive deterrence, such as detecting activity at the perimeter, systems are often relegated to recording events after they occur. The same pattern appears in access control. Many deployments rely on fragmented connectivity stacks, combinations of wired links, proprietary wireless protocols, and gateways, each optimised for a specific constraint such as range or power. While functional, these architectures introduce complexity, increase deployment costs, and create additional points of failure. Over time, these workarounds have become normalised. But as systems scale and expectations rise, their limitations are becoming harder to ignore. The hidden cost of fragmentation The consequences of unreliable or overly complex connectivity extend beyond performance. They impact the entire lifecycle of a security system. Advanced security features need consistent, reliable connectivity—not just bandwidthFor integrators, poor connectivity can mean longer installation times, more troubleshooting, and increased reliance on workarounds such as mesh networks or additional infrastructure. For vendors, it can translate into higher product return rates, increased support costs, and reduced customer satisfaction. For end users, the impact is more direct: systems that fail to connect reliably are systems that fail to deliver security. This is particularly critical as security solutions move toward more advanced use cases, including real-time alerts, remote management, and edge-based analytics. These capabilities depend not just on bandwidth, but on consistent, predictable connectivity across the entire deployment environment. Why traditional approaches are reaching their limits The industry has historically relied on a mix of connectivity options, each with its own strengths and tradeoffs. Wired infrastructure, such as Ethernet and PoE, offers reliability and performance but comes with higher installation costs and limited flexibility, particularly in large or distributed environments. Conventional Wi-Fi provides high throughput and seamless integration with IP networks but is optimised for short-range indoor use, where walls, distance, and interference can quickly degrade performance. Low-Power Wide-Area Networks (LPWAN) and cellular solutions extend range and coverage but often sacrifice throughput, increase latency, or introduce recurring operational costs. To compensate, many systems combine multiple technologies—layering gateways, protocol translation, and mesh architectures to bridge gaps. While effective in the short term, this approach increases system complexity and reduces long-term scalability. A shift toward simpler, more unified architectures In response, the industry is beginning to rethink connectivity, not as a patchwork of solutions, but as a unified foundation for modern security systems. The goal is straightforward: deliver long-range, reliable, and secure connectivity without adding architectural complexity. An example of this shift: Extending Wi-Fi beyond traditional limits One example of this shift can be seen in emerging Wi-Fi technologies designed specifically for long-range, low-power environments. Rather than replacing existing wireless approaches, these solutions aim to extend the familiar Wi-Fi model into new deployment scenarios where traditional networks struggle. Wi-Fi HaLow, based on the IEEE 802.11ah standard, is one such approach. Operating in sub-GHz spectrum, it enables significantly greater range and signal penetration compared to conventional 2.4 GHz and 5 GHz Wi-Fi, while maintaining native IP networking and established security frameworks. Wi-Fi trends reduce fragmentation and support data-heavy security systemsIn practical terms, this allows security devices, such as cameras and access control systems, to connect reliably across large properties, multi-building campuses, and outdoor environments without requiring dense access-point deployments or complex mesh configurations. It also supports higher data rates than many low-power wide-area technologies, enabling capabilities such as over-the-air updates, diagnostics, and increasingly, edge-based intelligence. At the same time, no single connectivity approach is universally optimal. Cellular remains essential for mobility, while LPWAN technologies continue to serve ultra-low-power sensing applications. Emerging Wi-Fi-based approaches highlight a broader industry direction: reducing fragmentation while supporting more demanding, data-rich security systems. From coverage to deterrence: A new security model One of the most significant implications of improved connectivity is the ability to rethink how security systems are deployed in the first place. Historically, limitations in wireless performance have pushed devices inward, closer to access points, inside buildings, and away from the perimeter. As a result, many systems are optimised for detection after the fact, rather than prevention at the edge. With more reliable long-range connectivity, this model begins to shift. Cameras and sensors can be placed where they are most effective—at entry points, along property boundaries, and in previously hard-to-reach areas. Combined with edge-based analytics, this enables earlier detection, faster response, and more effective deterrence. In this context, connectivity is not just an enabler of performance, it is a driver of fundamentally different security outcomes. Designing for the next generation of security systems As the industry moves forward, organisations deploying security systems should reassess how connectivity is factored into system design. Several principles are emerging: Prioritise reliability over peak performance Design for the perimeter, not just the interior Reduce architectural complexity Validate real-world performance, not just lab specifications The next wave of innovation in security will not be defined solely by smarter devices or more advanced analytics. It will be defined by whether those systems can connect, reliably, consistently, and at scale. Connectivity has long been treated as an invisible layer in security architecture. Today, it is becoming clear that it deserves far greater attention. As the industry rethinks its approach, one thing is certain: solving the connectivity challenge is not just a technical upgrade. It is a prerequisite for delivering on the full promise of modern security systems.
The healthcare infrastructure is ever evolving. Facilities are no longer single entities for one, they are sprawling ecosystems that serve a wide range of users, from medical staff and administrators to vulnerable patients, visitors and maintenance personnel. Safeguarding their safety and security, whilst providing seamless operation is a complex challenge - one frequently solved by access control. Use of access control Today’s security solutions play a central role in protecting people and mitigating risk across much of our built environment. An appropriately specified system is effective at regulating, monitoring and restricting entry and exits, and allows users to navigate an integrated network and its hardware to ensure the right access is provided to the right person at the right time. In healthcare buildings, the use of access control expands further, whereby a system can tackle a host of unique operational challenges - significantly contributing to fire safety, ease of movement and the theft prevention of equipment, medicine and sensitive patient data, and all whilst protecting human life and preserving privacy and dignity. In healthcare buildings, the use of access control expands. In doing so, access control can become the cornerstone of functionality, compliance and organisation in any healthcare environment. Though, as the complexity of projects deepen, decision makers are reminded that coordination is key. Preparing and empowering users Between January and March 2025, there were over 832,000 patient safety events recorded in the NHS. Whilst each of these events may not be directly linked to building security specifically, the healthcare industry is faced with a considerable number of safety incidents, which suggests greater monitoring and mitigation is needed across the board. Access control often provides staff with the vital means of retaining control without impeding care Patient well-being and security will always remain paramount in the sector, and access control often provides staff with the necessary means of retaining control without impeding care. Hospitals for example, sustain a high level of footfall across large campuses with multiple points of entry and on-site patient record systems, presenting a number of simultaneous security tests as a result. Though, unlike other public buildings, where rigid security measures are active at all times, many healthcare environments must strike a balance throughout their security framework to meet a host of one-of-a-kind demands. Use of access credentials With a continuous influx of patients, staff and visitors, healthcare groups are habitually required to remain accessible and inviting around the clock. At the same time, they must also be prepared to deter unwanted visitors in areas of restricted access and lock down intensive wards to ensure patients remain safe and secure under periods of monitoring. For this, the use of access credentials is critical and provides a regulated system for sensitive staff-controlled areas such as pharmacies, wards and server rooms. By applying role, zone or schedule-based access, decision makers can authorise personnel seamlessly, empowering facilities to manage patient care without compromising security in the process. Use of access credentials is critical and provides a regulated system for staff. Implementation of AI-powered tools and devices Modern systems may incorporate the use of keycards, biometric scanners, and mobile credentials When it comes to the operation of these systems, training gaps are a concern, however. Over the five years up to February 2025, numbers of NHS doctors rose by 26%, with nurses also up 25%, and this influx of new staff requires education towards the usage of access control. Modern systems may incorporate the use of keycards, biometric scanners, mobile credentials and in some cases, voice-activation, with the implementation of AI-powered tools and devices set to play a more prevalent role in the future. Each system presents its own benefits and may be better suited to certain projects and areas, but without consultation and proper user education, they can instead become a barrier. Strategy, scalability, performance To alleviate these operational threats, early-stage planning is fundamental. Just as end-user education and training should be built into project timelines, it’s important to consider the growing need for cooperation throughout the entire supply chain of an access control project. A collaborative approach becomes even more critical when innovative solutions enter the market All too often, a lack of evidence-based decision making can hinder the specification of a scheme and its accompanying hardware, whereby choices are made without understanding long-term performance or compliance requirements. Whether approaching a new or retrofit development, ongoing communication allows experts to come together and ensure that product decisions are aligned with the buildings intended use and user base. This collaborative approach becomes even more critical when innovative solutions enter the market and new sector challenges arise. Latest access control products With this in mind, trusted manufacturers will no longer simply deliver the latest access control products, but will aim to work alongside the architects, specifiers, contractors and facility managers at each stage of the building’s lifecycle to ensure touchpoints are addressed. This is crucial in modern healthcare environments, where the added layer of complexity requires tailored security measures. One area that is often neglected is scalability, for example. As healthcare facilities manage fluctuating patient numbers and a growing level of patient data, along with new regulations, systems must be adaptable and allow for ongoing improvements and updates to the security infrastructure without the need for a complete overhaul. By adopting a scalable system that combines technology integration with ease of use, decision makers can future-proof their building’s security. Manufacturers will no longer simply deliver the latest access control products Complexity of the healthcare industry In truth, access control has become more than a means of restricting access. Modern systems are more equipped than ever before to deliver environments that support care, safety and operational excellence. Nonetheless, the complexity of the healthcare industry and its buildings demands more than product innovation - it requires an industry-wide commitment to collaboration, from project conception to product installation and beyond.
In today’s world, almost any electronic security system holds the potential to become a gateway for cybercriminals. With physical security and cybersecurity increasingly entwined, security professionals aren’t doing their job unless they take all possible precautions to lock down unauthorised access to camera systems, access control platforms, intercoms, and other network-based security devices and solutions. Let’s explore the many steps companies should take throughout their security technologies’ lifecycle – from choosing a vendor all the way through device decommissioning – to avoid making the common mistakes that leave systems, and the networks they reside on, vulnerable to attack and sabotage. Prepurchase phase: Laying the groundwork for cybersecurity 1. Conduct a Vendor Risk Assessment IT departments often rely on the same Vendor Risk Assessment criteria they use for evaluating IT equipment manufacturers when considering the suitability of physical security vendors. While commonalities exist between how to assess these disparate solutions, there are also differences that require distinct scrutiny. For example, device endpoints within physical security systems run on custom Linux Kernels and therefore do not utilise standard Linux distributions like Red Hat, Ubuntu, or Debian. IT divisions often rely on the same Vendor Risk Assessment criteria they use for evaluating IT kit A comprehensive evaluation should examine how each security solutions manufacturer handles its software development life cycles. Ideally, vendors should adhere to a recognised framework when developing both their platform management and device-specific software. In 2021, Executive Order 14028 made it a bit easier for companies to evaluate vendors by providing guidelines for evaluating software security, the practices of the software developer, and methods to demonstrate conformance with secure practices, specifically referencing the NIST SP 800-218 Secure Software Development Framework. In short, a good vendor should have documentation that explains everything it’s doing to address cybersecurity from development, through releases and ongoing maintenance. 2. Obtain Software Update Schedules The frequency with which manufacturers update their software varies. Each company is different. If you’re their customer, it shouldn't matter whether the vendor schedules updates every six months, three months, or more often than that. What does matter is that you know what to expect and have a plan for how to deal with that reality. For example, if updates only occur every six months, under what conditions are patches released to address vulnerabilities that emerge between updates? Customers must understand how often they'll be updating the software on their devices and ensure they have the resources to make it happen. Make sure stakeholders agree, upfront, who will be performing the software updates. Will it be the integrator who installed the system, the physical security system staff, the IT team, or the end user? Keeping an entire system current is a huge challenge, but a non-negotiable responsibility. Manufacturers who don't issue frequent releases and patches put the onus on customers to handle mitigation efforts on their own. In these instances, IT departments must be prepared to employ network segmentation, firewalls, security whitelists/blacklists, and other methods to protect their systems until a patch is released. If a company's security team has typically updated firmware only when something breaks, these additional responsibilities most likely require greater collaboration with IT departments and a shift in how security systems are managed. 3. Know the Warranty Terms and Duration of Software Support Organisations should understand the warranty policies for the devices they purchase Organisations should understand the warranty policies for the devices they purchase. Even more important is knowing when a device's software support will expire. Software support should extend well beyond hardware coverage. For example, if a camera has a five-year hardware warranty, customers should reasonably expect an additional five years of software support. When that period ends, companies must plan on replacing the device – even if it still works well. Without software updates, the device lacks vulnerability support and becomes too risky to remain on the network. Manufacturers should be transparent about their warranty and software support policies, helping organisations plan for device replacements that align with cybersecurity needs. 4. Request a Software Bill of Materials (SBOM) During the pre-discovery process, customers should request a Software Bill of Materials (SBOM) that provides a detailed inventory of the software running on each device, including open-source components. By revealing what software is "under the hood," the SBOM allows IT departments to be vigilant in protecting the company's systems from exposed vulnerabilities. For example, a customer should understand how Transport Layer Security (TLS) is being handled to secure a security solution's web server if it’s an open-source component like OpenSSL. 5. Assess Vulnerability Disclosure Practices CNA manufacturers represent the gold standard in cybersecurity practices Understanding how a manufacturer handles vulnerabilities is essential. Ideally, they should be a Certified Naming Authority (CAN) and report common vulnerabilities and exposures (CVEs) to national vulnerability databases such as NIST and MITRE. Doing so automatically includes any disclosed vulnerabilities associated with their devices in vulnerability scanners' databases. CNA manufacturers represent the gold standard in cybersecurity practices, but most security manufacturers do not reach this level. At a minimum, the vendors you choose to work with should have an email notification system in place to alert customers to new vulnerabilities. Remember – email notifications are only as reliable as the employees managing them, so investigate whether the manufacturer has a strong track record of keeping up with such communications. Ask to speak with customer references who have been using the solution for an extended period to ensure the vendor is diligent in its communications. Configuration phase: Ensuring a secure setup 1. Use Hardening Guides Once a device is purchased, configuring it securely is the next critical step. Manufacturers should publish hardening guides that detail the security controls available for their products and recommended practices for implementation. Between the features offered by the vendor and your company's own cybersecurity policies, make sure all possible encryption options are activated. Using HTTPS is vital for ensuring secure communication with devices. Many physical security devices default to HTTP to accommodate customer-specific network topologies and certificate management. Failing to implement HTTPS can leave sensitive metadata unencrypted and vulnerable to interception. 2. Consider Advanced Encryption Protocols Protocols are necessary to protect video data in transit from cameras to the VMS Some solutions offer built-in encryption protocols, like MACsec, which makes it impossible for data to be compromised as it is transmitted over the network. HTTPS is still necessary to secure the connection to the devices’ webservice, but while customers set up and configure their devices, MACsec will keep network data safe. Additionally, if you want to encrypt video streams, consider protocols such as Secure Real-Time Transport Protocol (SRTP), which secures the transmission of audio and video data over the Internet, or tunnelling methods like Secure Socket Tunnelling Protocol (SSTP), which encapsulate data packets for safe transmission between two points, even if the network is insecure. Such protocols are necessary to protect video data in transit from cameras to the Video Management System (VMS). Encryption should also extend to the VMS hard drive where video is stored. There are different methodologies to do that, but ultimately the goal is to encrypt data in transit and in storage. 3. Implement Remote Syslog In the case of a breach, each device maintains a set of logs that are useful for forensic investigations. However, if a device gets hacked, its log may not be accessible. Best practices dictate that companies should set up a remote Syslog server that maintains a copy of all device logs within a central repository. In addition to providing redundant data for investigations, a Syslog offers IT systems an efficient way to look for anomalies. Cybersecurity teams will receive immediate notification for events like unsuccessful login attempts so they can quickly figure out what's happening. Who is trying to log in? Why on that particular device? 4. Practice Healthy Password Hygiene Ideally, organisations should move towards using Active Directory or Single Sign-On (SSO) solutions One of the most basic and yet overlooked aspects of cybersecurity is the failure to manage user accounts meticulously. Many organisations use the same username and password for all security devices because it's simply too cumbersome to manage a network of devices in which each requires a separate, unique login. It's assumed that the system's primary administrators are the only ones who know the universal password. However, the system becomes vulnerable if anyone within this select group leaves the company and the password isn't changed or deleted right away. Ideally, organisations should move towards using Active Directory or Single Sign-On (SSO) solutions. This approach ensures that employees throughout a company are each assigned a unique login credential that they use for any systems they use throughout the organisation. When they leave, their passwords and access are universally terminated along with their accounts. If SSO is not an option, regular password changes and prompt account deactivation are critical. Decommissioning phase: Securely retiring devices At some point, physical security devices will reach the end of their useful life. When that time comes, companies must take care in how they dispose of their devices. A good vendor will provide guidance on how to clear memory chipsets and restore factory defaults. Improper decommissioning can lead to severe risks. For example, if an improperly decommissioned device is sold on the secondary market or retrieved from a dumpster, an attacker could gain access to sensitive network configurations and use this information for malicious purposes. Conclusion Deploying physical security solutions involves more than just securing buildings and assets; it also requires robust measures to protect against cybersecurity threats. From assessing vendors and understanding update policies to configuring devices securely and managing decommissioning processes, each step presents potential pitfalls that, if overlooked, could expose organisations to significant risks. By incorporating the techniques discussed into their deployment protocols, organisations can ensure their physical security solutions provide comprehensive physical and digital protection.
Security beat
Companies at GSX 2023 emphasised new ways that technologies such as artificial intelligence (AI) and the cloud can address long-standing issues in the security market. Among the exhibitors at the event in Dallas were companies seeking creative ways to apply technology, lower costs, and make the world a safer place. Reflecting on the exhibition, here are some additional takeaways. Expanding AI at the edge i-PRO is a company reflecting the continued expansion of edge AI capability in the security market. Today, more than half of the company’s lineup supports AI at the edge so the customer has a wide choice of form factors when seeking to leverage the feature set. AI processing relay, extended warranty i-PRO is increasing their warranty period from 5 to 7 years, which could be a lifetime warranty in some cases I-PRO also has an “AI processing relay” device that accepts non-AI video streams and applies edge analytics. AI has progressed from a high-end technology to a feature available in a variety of cameras at different price points. i-PRO is also increasing its warranty period from 5 to 7 years, which could be a lifetime warranty in some cases depending on a customer’s refresh schedule and lifecycle management. Active Guard, MonitorCast The company’s video management system (Video Insight) is continuing to build new features including “Active Guard,” an integrated metadata sorter. Their access control platform, MonitorCast, is a Mercury-based solution that is tightly integrated with Video Insight. Their embedded recorders now have PoE built in. “We can move at a faster pace to fill out our product line since leaving Panasonic,” says Adam Lowenstein, Director of Product Management. “We can focus our business on adapting to the market.” Emphasis on retail and other verticals Shoplifting is a timely issue, and retail is a vertical market that got a lot of attention at GSX 2023. “We see a lot of retailers who are primarily interested in protecting employee safety, but also assets,” says Brandon Davito, Verkada’s SVP of Product and Operations. “Shrinkage is a CEO-level priority.” “Retailers are getting more engaged with security posture, instead of letting perpetrators walk,” Davito adds. Intrusion detection Verkada has an intrusion product that will notify a central station if there is an alarm On the alarm side, Verkada has an intrusion product that will notify a central station if there is an alarm, and operators can review videos to confirm the alarm. Other capabilities seeking to discourage trespassers include sirens, strobes, and “talkdown” capabilities. International expansion Verkada continues to expand internationally with 16 offices in all, including Sydney, Tokyo, and London. The core value proposition is to enable customers to manage their onsite infrastructure more simply, including new elements such as PTZ cameras, intercoms, and visitor management. Verkada emphasises ease of use, including a mobile application to allow access to be managed across the user base. Forging partnerships “We are committed to the channel and industry, and we continue to build relationships and expand our reach,” says Davito. Among the industry relationships is a new partnership with Convergint, which was hinted at during the show and announced later the same day. They are also expanding their partnerships with Schlage, Allegion, and ASSA ABLOY. Working with other verticals They offer new features for K -12 schools, and a new alarm platform is easier to deploy and manage Verkada has also found success across multiple other verticals, notably healthcare, where they integrate with an electronic medical records system. They offer new features for K-12 schools, and a new alarm platform is easier to deploy and manage. They are integrating wireless locks to secure interior doors in schools, looking to secure the perimeter, and installing guest management systems. Transitioning the mid-market to the cloud Salient is squarely focused on the “mid-market,” a large swath of systems somewhere between small businesses and enterprise-level systems. Pure cloud systems are not as attractive to this market, which has a built-out infrastructure of on-premise systems. Adding a camera to an existing system is easier and less expensive than tying it to the cloud. Benefits of cloud It’s a market that may not be ready for the pure cloud, but there are benefits to be realised from adding a cloud element to existing systems. “We are continuing to augment our premise-based solutions with added cloud capabilities and flexibility,” says Sanjay Challa, Salient’s Chief Product Officer. The feedback Salient hears from their customers is “I want to own my data.” The hybrid cloud approach offers the right mix of control, flexibility, and unit economics. Cloud add-on capabilities We want to provide the flexibility for customers to go full-cloud as it becomes more economically attractive" Cloud add-on capabilities include bringing more intelligence about system operation to the user via the cloud. Over time, Salient expects to sell more cloud-centric offerings based on feedback from integrators and customers. “We want to provide the flexibility for customers to go full-cloud as it becomes more economically attractive over time,” says Challa. Vaidio AI technology Salient seeks to be a transition pioneer to help customers realise the path to the cloud. Their approach is “crawl, walk, run,” and helping customers make the transition at each stage. Salient has added AI to its product offering, incorporating Vaidio AI technology from IronYun into a powerful suite and broad array of on-premise analytics, which are gaining traction. The seamless approach makes it easy for customers to embrace AI analytics, although Salient remains broadly committed to open systems. Addressing ‘soft’ features for integrators AMAG is in the process of enhancing its product line with the next generation of access control panels. However, “product” is just part of the new developments at AMAG. In addition to “hard” features (such as products), the company is looking to improve its “soft” features, too; that is, how they work with the integrator channel. Integrator channel Rebuilding a process to make your organisation more efficient, is relatively easy; it just takes a lot of persistence" “We have the depth of our legacy customer base we can learn from, we just need to close the feedback loop quicker,” says Kyle Gordon, AMAG’s Executive Vice President of Global Sales, Marketing, and commercial Excellence, who acknowledges the value of reinstating face-to-face meetings after COVID. “We are laser-focused on nurturing our integrator channel,” he says. “Developing new features takes time, but rebuilding a process to make your organisation more efficient, that’s relatively easy; it just takes a lot of persistence,” says Gordon. More cohesive internal communication is another useful tool, he says. Disrupting the cloud based on price Wasabi is working to make cloud applications less expensive by offering a “disruptive” price on cloud storage, $6.99 per terabyte per month (80% less than hyperscalers). Contending “hyperscalers” like AWS are charging too much for cloud storage, Wasabi is using its own intellectual property and server equipment co-located in data centres around the world. Wasabi sells “hot cloud storage,” which refers to the fact that they only have one tier of storage and data is always accessible. In contrast, a company such as AWS might charge an “egress fee” for access to data stored in a “colder” tier. Cloud storage “We saw that several video surveillance companies had not yet adopted cloud storage, and we saw an opportunity to make it easy to use,” said Drew Schlussel, Wasabi’s Senior Director of Product Marketing. “We just install a little bit of software that allows them to store data in the cloud and bring it back from the cloud.” Performance, protection (cybersecurity), and price Wasabi works with integrators, resellers, and distributors and also integrates with VMS companies Wasabi works with integrators, resellers, and distributors and also integrates with VMS companies such as Genetec and Milestone. Emphasising performance, protection (cybersecurity), and price, their data centres are certified to SOC 2 and ISO 27001 standards. Faster throughput for weapons detection Xtract One is a young company focusing on weapons detection in a time of accelerated concern about gun issues post-COVID. Founded in Canada and based on technology developed at McMaster University, Xtract One has found a niche in providing weapons detection at stadiums and arenas. These customers already have budgets, and it is easy to shift the money to a newer, faster technology. Madison Square Garden in New York City is among its customers. Cost savings solution Xtract One can increase throughput to 30 to 50 people per entrance per minute (compared to 5 to 6 people per minute when using metal detectors). The solution doesn’t require anyone to empty their pockets and the system alarms on items beyond guns and knives. Using Xtract One allows customers to reduce the number of screening lanes and security staff, providing additional cost savings, all while getting fans through the screening process in half the time. Purpose-built sensors The system uses purpose-built sensors looking for specific characteristics, such as reflective and density properties In addition to stadiums and arenas, Xtract One, formerly Patriot One, is also getting “inbound” interest from schools, hospitals, manufacturers, and other verticals that makeup 50% of their business. “We’re on a rocket ride, mainly because the weapons issues are not going away,” says Peter Evans, CEO and Director at Xtract One. The system uses purpose-built sensors looking for specific characteristics, such as reflective and density properties, all correlated by an AI engine. Providing early warning of violence ZeroEyes is another company focused on weapons detection. Their AI gun detection system works with video images to identify if someone is “brandishing” (carrying) a weapon. In other words, the system does not detect concealed weapons. Identifying someone carrying a weapon provides early warning of a possible violent act. Increased response with AI-enables images Images are identified by AI and sent to a monitoring centre where a human confirms the image before contacting first responders. Knowing the location of a shooter enables staff to lock entry points, move people to safety, and direct first responders. The company was founded to leverage existing camera views to stop mass shootings and gun violence by reducing response times.
GSX 2023 has its share of new product announcements, although many of the new products are enhancements to technologies shown at last spring’s ISC West show in Las Vegas. Booth traffic on the first day seemed busy at the Kay Bailey Hutchison Convention Center in Dallas, although one exhibitor complained that it takes some time for the traffic to make its way to the farthest areas of the show floor. Apparent throughout the GSX show is an expanding idea of what constitutes security. Increasingly, ‘security’ technologies offer benefits throughout other parts of a company or institution. Security is also being broadened to encompass ‘safety,’ including emergency response and wider issues of keeping a company safe. Managing multiple systems People look at the systems they have, and they are looking for more information" Manufacturers at GSX are talking about more than new products. Rather, they are offering new approaches to turn products into ‘solutions’ for customers. Among the benefits of new systems is the availability of more data. “People look at the systems they have, and they are looking for more information and data and insights from their systems,” says Kyle Hurt, Genetec’s Area Vice-President of Sales for the US and Canada. “In the past, if I’m managing multiple systems and spending time and resources, I am making sure systems are operational. Today, it’s more like: How do I make my enterprise more efficient? I spend less time on making sure systems are working together but more time on how we can use the information.” Manufacturers at GSX are talking about more than new products Security control room Genetec is enhancing its Security Center 5.11 version with a newly redesigned web client that provides new capabilities related to system audio, including the ability to trigger a public address from a mobile device in an emergency, two-way audio to and from the security operations centre, and the ability to record an incident. The new web client offers new levels of “Security on the go,” says Hurt. A mobile device becomes an extension of the security control room. “Customers want to have more remote capabilities and have their security personnel out and about, not tied to a desk,” says Hurt. The new web client works to unify the four pillars of the Security Centre— video, access control, license plate recognition, and now audio. Single source manufacturer Audio can now be used to broadcast a message, respond to an incident, and notify people" “Audio has taken time to develop legs in our ecosystem,” says Hurt. “We have been developing partnerships and use cases beyond an intercom at the door. Audio can now be used to broadcast a message, respond to an incident, and notify people en mass of what’s going on.” Manufacturers are also fine-tuning how they work to meet customers’ needs. “Customers want one point of contact, a single source manufacturer, and a solution that reflects the manufacturer is listening to the voice of the customer,” says Jerry Burhans, Managing Director of ASSA ABLOY Global Solutions - Critical Infrastructure, which seeks to be a global partner to critical infrastructure industries. The Critical Infrastructure business works across the various product groups of the notoriously siloed company to bring together solutions aimed at meeting each customer’s need. Manufacturers are also fine-tuning how they work to meet customers’ needs Best-in-class technology “We try to have best-in-class technology and collaborate within ourselves to make sure we have what customers need,” says Burhans. Critical infrastructure industries such as water, power and energy, oil and gas are developing standards to help support preparedness of the nation’s infrastructure, and ASSA ABLOY Global Solutions is helping operators secure access and provide audit trails on locking hardware and keys within their security perimeters. Managing customer assets Johnson Controls’ new OpenBlue Service for the security device market seeks to proactively manage customer assets (equipment) as a service. The company’s software platform of connected solutions monitors and manages security devices across vendors and provides remote support services including skilled engineers who can work to ensure that a company’s assets, including cameras and access control readers, operate dependably. Working remotely, OpenBlue analyzes the performance of each system component Johnson Controls estimates that, unfortunately, up to 25% of a company’s security assets may not be working as intended, whether they lack the latest firmware update or are not connected. Working remotely, OpenBlue analyses the performance of each system component and responds to ensure equipment operates as intended. “We believe we can close that gap with our solutions,” says Greg Parker, Vice President, Innovation & Portfolio Management for Johnson Controls. Physical security equipment A big advantage of OpenBlue for security customers is the ability to manage cybersecurity and threats at the edge, which may not currently be addressed by the IT department. The OpenBlue offering includes an embedded ‘air wall,’ which is a zero-trust architecture for physical security equipment. OpenBlue also helps customers manage the ever-changing lifecycles of various assets. Another concept prompting discussion at GSX 2023 is the gap between what a customer expects from a product and what the product can realistically deliver. With endless promotion in the last several years centring on concepts such as artificial intelligence (AI), is it any wonder that customers may sometimes have unrealistic expectations about what a technology can accomplish? The good news at GSX is that, as progress marches on, newer technologies are getting closer and closer to delivering on customers’ most ambitious expectations. The forward momentum of technology development is evident throughout the GSX 2023 show floor, reflecting the promise of even greater product capabilities in months and years to come.
A pioneer in the access control sector since 1971, AMAG Technology is looking to the future and the next generation of products that will expand its services to customers. “In our vision, we have advanced approaches that will not only provide our partners with advanced technologies but also ones that are easier to install with tools to expand their services,” says David Sullivan, who was appointed President of the venerable access control company in September 2022. New challenges at AMAG Sullivan brings a new outlook to the AMAG business, a part of Allied Universal, and a new vision to lead the company into the future. We caught up with David Sullivan to discuss his new challenges at AMAG and the journey ahead as the company looks to the future. Q: How does your background inform your approach to leading AMAG? I believe that it helps me to define a vision for AMAG that will be unique and on the leading edge of our industry David Sullivan: With the exception of only a few short years, my career has been in access control. I have experience with several systems and have had the privilege to manage several successful access control companies. As a result, I bring a great deal of experience into my role at AMAG. I believe that it helps me to define a vision for AMAG that will be unique and on the leading edge of our industry. Q: How would you describe AMAG’s journey over the last several years and how do you see the future? Sullivan: Prior presidents of AMAG always shared their leadership vision and direction with senior leaders located in the United Kingdom. This had an impact on the full direction of the business, sometimes limiting its ultimate success. Before I became a part of AMAG, these senior leaders that were located in the UK retired, placing for the first time the full management responsibilities of the president. This has allowed me to integrate the business into a single team, with single objectives, and a single vision. We expect to begin to reveal this new vision in the coming weeks. We are excited about the future of AMAG and believe we will surprise the industry with our new products and approach in the coming months and years. Q: How important is it that a manufacturer provides both hardware and software solutions? How does AMAG’s approach (in general) differentiate it in the market? We can design the complete solution, providing functionality that others may find more difficult to accomplish Sullivan: Regardless of the manufacturer, we all provide hardware and software. An access control solution is not complete without both. Some of us choose to make our panels, and others do not. Those who are dependent on third-party suppliers are restricted to the developments and direction of that company, and while it might be perceived to be an open technology, it still is proprietary to the hardware manufacturer. AMAG has controlled its manufacturing of panels from day one. The result means that we can design the complete solution, providing functionality that others may find more difficult to accomplish. Q: How does the breadth of AMAG’s product suite provide advantages to customers and/or integrators? Sullivan: AMAG’s product portfolio is unique and provides the end user with an end-to-end identity management solution from one company. Our Control Room PSIM, Symmetry CONNECT Identity Management Solution, Symmetry Access Control, and Symmetry GUEST solutions all integrate to provide the user with a broad set of features and capabilities from a single provider. There is no finger-pointing when we come to support your system. We hold full responsibility for making it work and can quickly provide a resolution to any application difficulties the user may be experiencing. Q: How does AMAG address the divide between on-prem and cloud systems? How do you help customers make the transition and/or plan for the future? We are in the early stages of developing our next generation of access control in which we intend to provide on-prem Sullivan: In our current product portfolio, we have three products that are cloud-based. Our mobile credential platform (Symmetry Mobile), our visitor management solution (Symmetry GUEST), and our physical identity and access management solution (Symmetry CONNECT) are all offerings that operate in the cloud. We are in the early stages of developing our next generation of access control in which we intend to provide on-prem, web client, and cloud-based offerings. One of the primary objectives is to ensure that the large installed base of systems that are out there today will be able to migrate not only to our next generation but as well to the cloud if the client so desires. Q: What is AMAG’s approach to mobile credentialing? Sullivan: As an access control provider, adding Symmetry Mobile credentialing to our portfolio just made sense. We want our customers to have a forward-thinking solution with the opportunity to save money not only on the physical badges but the cost of printing and distributing badges. Mobile credentials can be easily issued and revoked remotely, reducing administrative overhead, and eliminating the need for physical inventory management. Organisations can centrally configure what devices are used and the read range for each type of device and operating system, thus providing flexibility. Symmetry Mobile offers a customised questionnaire that controls access and reduces liabilities. Q: What has surprised you the most in your first year or so leading AMAG? Not many companies are blessed with such a broad portfolio that is supported by a resource-rich company Sullivan: I wouldn’t say I was surprised by this as much as happy to see, but I would say that the quality of our people was a pleasant surprise. As well, the AMAG product offering is broad and has some unique elements. When coupled with the depth of the resources that we have in AMAG, I know that we are second to none. Not many companies are blessed with such a broad portfolio that is supported by a resource-rich company that has so many talented people. Q: Please describe your dealer channel, and how you are seeking to expand it. Sullivan: The AMAG products are sophisticated and typically are installed for higher-end applications. With this sophistication comes a need to be well able to install such a solution. We have a strong group of certified and loyal partners who help us to deliver these enterprise solutions. We desire to provide our existing partners with updated and competitive systems to offer to their end users. Q: What is the security industry’s (and/or AMAG’s) biggest challenge in the next five years? We need to find ways to provide both our channel partners and the customers with solutions that are easily integrated Sullivan: I believe that the advancements that we are seeing in technology provide our industry with the opportunity to truly change how security is provided to our collective customers. As we advance these solutions, we will need to do so responsibly and in a way that helps the channel’s abilities. We need to find ways to train our partners to both install and support these more complex solutions. At the same time, we need to find ways to provide both our channel partners and the customers with solutions that are easily integrated, moving away from proprietary closed systems to open and cohesive solutions. This will ensure that the users get the best, and most complete solutions. Q: What does the industry as a whole misunderstand about AMAG -- time to set the record straight! Sullivan: Well, I am not ready to openly share where we are heading. We are in the process of putting together some advanced approaches to how we will do business with our partners. We are focused on providing tools that will enhance their services to their customers, and with products that are leading edge. I can only state that all should keep their eyes on AMAG, because over the next few years, we are going to surprise some people, and more importantly make our loyal partners quite powerful.
Case studies
Security requirements for critical infrastructure are changing rapidly. Recent events, such as the discovery of a drone at Leipzig Airport, have once again demonstrated how quickly modern technologies can become a security challenge. This makes dialogue between industry, authorities and emergency services all the more important. Security Essen, which will take place at Messe Essen from 22 to 25 September 2026, is placing precisely this exchange at the heart of two key programme highlights: the European Drone Conference and the Emergency Services Forum. Unmanned aerial systems open up a wide range of potential applications – from inspecting critical infrastructure to supporting security and emergency services. Protection of critical infrastructure At the same time, they present new challenges for operators of sensitive facilities. The European Drone Conference on 23 and 24 September will therefore bring together experts from the security industry, public authorities, academia and politics to discuss current developments, the regulatory framework and effective protection strategies. The conference is organised by the Drone Expert Committee of the German Security Industry Association (BDSW), together with Security Essen and the Confederation of European Security Services (CoESS). Experts discuss drone deployment, detection and countermeasures Around 20 specialist presentations will examine drone technology from various perspectives – ranging from regulatory issues and the protection of critical infrastructure to detection and counter-drone systems. Managing new risks In his statement, Cornelius Toussaint, Vice-President of the BDSW and Chair of the Drone Expert Committee, will focus on security and drone technology in Germany. Marcus Schermann (DB Sicherheit GmbH) will discuss the protection of critical infrastructure, using multicopter operations as an example. Drone management, with a particular focus on detection and countermeasures, is the main theme addressed by the two speakers, Ralf Holstein and André Danner (German Business Protection GmbH). The programme is complemented by presentations on research and development, as well as international keynote speeches from the worlds of politics and the security industry. The central question is how to capitalise on the opportunities offered by the technology whilst effectively managing new risks. Public safety authorities Emergency Services Forum (Blaulichtforum) takes place for the first time In collaboration with Feuerwehr-Magazin (Fire & Rescue Magazine) and Rettungs-Magazin (Emergency Medical Services Magazine), the Emergency Services Forum 2026 will make its debut at Security Essen. On 22 September, the new forum will bring together public safety authorities and organisations (BOS), the security industry and public authorities, focusing on a key question: How are new threat scenarios and technologies changing security and emergency response? On stage, experts from the fire service, police, civil protection, the security industry and defence will discuss current challenges: What role will drones and autonomous systems play in future operations? Shared situational picture How well is Germany prepared for CBRNE incidents and hybrid threats? And how do control centres, communication technologies and networked systems ensure that a shared situational picture emerges in an emergency? The focus will also be on cooperation between civilian and military actors. Specialist conferences included in the trade fair admission ticket Both the European Drone Conference and the Emergency Services Forum will take place directly in Hall 5. Admission is already included in the Security Essen trade fair ticket. Tickets for Security Essen 2026 are available online. A day ticket costs €49. The trade fair is open from 9 am to 6 pm from Tuesday to Thursday and from 9 am to 4 pm on Friday.
iDenfy, the global RegTech solution provider that delivers identity verification and fraud prevention tools, has implemented Czech Bank iD into its electronic identity verification software. The addition of the new digital ID or non-document verification method for the Czech market gives businesses a native alternative for verifying Czech citizens through their existing bank login credentials, without asking for a physical document during the onboarding process. Czech Bank iD is a nationwide, bank-issued digital identification system introduced in the Czech Republic in 2021. It allows citizens to use their internet banking credentials to authenticate themselves for both e-government and private sector services. Separate identity document The system is currently used by over 5,000,000 internet banking users, which corresponds to an adoption rate of 57% across the Czech Republic with 9 million people. Czech Bank iD runs on the OIDC protocol and operates through a bank delegation model, meaning the verification is confirmed directly by the user’s bank rather than through a separate identity document. iDenfy’s non-document verification platform was built to operate alongside the platform’s standard document-based KYC flow. Businesses can configure the platform to automatically route users to the Czech Bank iD path when traditional document capture is unavailable or produces insufficient image quality, a scenario that iDenfy’s internal data consistently shows as a recurring source of session drop-off. The combined flow is available to all iDenfy clients at no additional cost and can be activated in the dashboard settings without any additional integration work. Additional integration work To perform a successful verification, Czech Bank iD checks the person’s given name, family name, middle name, full name, date of birth, nationality, sex, phone number, and full address details. Where available, it can also return document data, such as document type, number, issue date, expiration date, issuing country and authority. This gives businesses a verification result that is both broad in scope and consistent in structure, since the data is returned directly by the bank network rather than extracted from a scanned image. As defined by Regulation (EU) 2024/1183, each of the EU 27 will have to implement the EU Digital Identity Wallet for citizens and residents by the end of 2026. Every bank, payment, and electronic money institution will have to support wallet-based credentials as Strong Customer Authentication measures. Bypassing security controls The Czech Republic has the third-highest risk of cyber fraud globally, according to security firm Gen Digital, which conducted research from Avast, AVG, and Norton companies. Social engineering attacks, a form of psychological manipulation in which criminals trick people into giving up private data, downloading malware, or bypassing security controls, made up 86% of the threats that happened in the country. iDenfy states that for businesses that serve Czech market users, the ability to verify identity through a credential that more than five million adults already use for banking and government access can remove a document capture step that often contributes to onboarding drop-off. It still maintains a secure enough compliance procedure to keep the process trustworthy for both the user and the business so it can validate a real person behind it. Digital identity networks “Czech Bank iD has become one of the most widely trusted digital identity credentials in the Czech Republic. Our clients that serve that market can now meet Czech users on those terms and present a verification path that feels familiar and requires no additional physical document capture at the point of onboarding,” said Domantas Ciulde, the CEO of iDenfy. It is worth mentioning that iDenfy’s KYC software currently covers over 16,000+ government-issued documents across over 200+ countries and territories. If a case is not resolved automatically, it is reported to iDenfy’s internal compliance review team, which works 24/7 to review identities and fix any onboarding issues. “Czech Bank iD is deeply embedded in how Czech citizens already access banking, government, and private sector services. For our clients, adding Czech Bank iD is not just an onboarding improvement. It is a direct connection to one of Central Europe’s most established digital identity networks,” added Domantas Ciulde. Czech Bank iD support is available now across iDenfy’s identity verification platform.
Gunnebo Entrance Control has completed a major entrance control project for ByteDance’s new corporate offices in Dubai Media City and Business Centre, delivering secure and efficient access for one of the world’s pioneer technology companies. ByteDance, the global organisation behind TikTok, Lark and Lemon8, selected Dubai as the base for its Corporate Services head office. The facility supports business functions including security, procurement, EHS and R&D and reflects the company’s long-term investment in the Middle East. Maintaining robust protection With a rapidly growing workforce and constant visitor traffic, ByteDance needed to maintain a secure workplace while ensuring smooth, welcoming operations. Managing access for hundreds of employees and contractors daily, alongside the onboarding of new staff, was critical to preventing unauthorised entry to sensitive areas and systems while maintaining a seamless day-to-day experience across the offices. Gunnebo Entrance Control worked closely with ByteDance’s internal teams to align with both security and operational requirements, ensuring employees and visitors could move efficiently throughout the building without disruption while maintaining robust protection across key areas. High-traffic corporate environments In total, twenty-four SpeedStile FLs MAX gates were installed across the two sites: seven in Media City and seventeen in the Business Centre. The SpeedStile FLs MAX is a premium speed gate designed for high-traffic corporate environments, combining advanced security functions with a sleek, professional appearance. Compact in footprint and highly adaptable, the solution integrates smoothly with third-party access control systems. Intelligent detection technology reduces the risk of tailgating and piggybacking, ensuring only authorised personnel gain entry while preserving a smooth flow for everyday movement. Entrance control solutions Delivering the project required close collaboration with ByteDance’s IT teams and civil contractors to align the solution with building design and operational requirements. The installation was completed in line with the timeline for the launch of ByteDance’s new headquarters and has become a central part of the company’s entrance control strategy in the region. Jacob Touma concluded: “ByteDance is a global brand with demanding requirements for workplace security and employee experience. Their new Dubai offices mark an important hub for the company’s Middle East future, and the SpeedStile FLs MAX delivers the right balance of safety, efficiency and aesthetics, ensuring smooth movement while maintaining robust protection. This project underlines our commitment to supporting world-leading businesses with reliable, effective entrance control solutions.”
John Street, Newham, a high‑rise residential development comprising Blocks A and C, has been equipped with a comprehensive life safety solution from Advanced, incorporating SmokeGo smoke control and EvacGo evacuation alert systems to support a stay‑put fire strategy and enhance resident safety. The project, delivered as part of a wider life safety installation by Simple Life Safety Systems Limited, required a robust and compliant approach to smoke control and evacuation alert across two buildings with different heights and risk profiles. Block A is a 14‑storey, high‑rise residential block, while Block C is a smaller, four‑storey building. Each block was equipped with one SmokeGo panel and one EvacGo panel, providing dedicated control tailored to the specific needs of each structure. High‑rise residential block SmokeGo was specified to deliver active smoke control via the fire system, supporting the management of smoke in common escape routes and critical areas. Designed to comply with EN 54 Parts 2 and 4, as well as BS 7346‑8 and ISO 21927‑9, SmokeGo enables automatic and manual control of smoke control fans and dampers from a single, intuitive interface. Its simple matrix‑based configuration allowed the project team to clearly define smoke compartments and cause‑and‑effect relationships, helping ensure smoke is contained and extracted effectively in the event of a fire. EvacGo was installed as a fully independent BS 8629-compliant evacuation alert system, giving the fire and rescue service a reliable and secure means of alerting residents if evacuation beyond the affected flat is required. Each EvacGo panel is housed within a robust, tamper‑proof enclosure and is designed exclusively for use by the fire and rescue service, helping prevent misuse while ensuring clear, decisive control during an incident. Complex residential project John Newton, Director Life Safety at Simple Group, commented: “John Street was a complex residential project that required careful coordination between smoke control and evacuation alert systems. Using SmokeGo and EvacGo allowed us to deliver a fully compliant solution that aligns with the fire strategy while giving the fire and rescue service the tools they need to manage incidents safely and effectively.” The SmokeGo smoke control system and EvacGo evacuation alert system operate as separate dedicated life safety systems, ensuring smoke movement can be actively controlled while evacuation decisions remain firmly in the hands of the fire and rescue service. This layered approach supports resident safety without undermining the stay‑put strategy that underpins the building’s fire design. Implementing smoke control Shaun Scott, Applications Engineer at Advanced, added: “Projects like John Street highlight the importance of implementing smoke control and evacuation alert systems correctly. SmokeGo makes complex smoke control logic far simpler to configure and manage, while EvacGo provides a clear, compliant evacuation alert solution. Together, they deliver confidence for installers, building managers, and emergency responders alike.” With one SmokeGo panel and one EvacGo panel installed in each block, the John Street development now benefits from a coordinated life safety solution that addresses both smoke management and evacuation alerting in line with current best practice and regulatory guidance. The project demonstrates how Advanced’s specialist systems can be combined to meet the evolving safety requirements of modern residential buildings, delivering compliant, practical solutions that prioritise both resident safety and operational simplicity.
In today’s hospitality environment, properties are expected to deliver exceptional guest experiences and airtight operational security. But juggling physical safety, digital privacy, vendor coordination, and staff accountability isn’t easy – especially when legacy systems like pegboards, logbooks, or unmanaged key drawers are still in use. Intelligent key control systems help users modernise their security while unlocking operational insights for better business decisions. Here are eight ways users can improve security and business intelligence at their facilities using key control: 4 hospitality security enhancements Enforce Access Control: A networked key control system secures high-risk areas like storage, housekeeping, and back-of-house offices with real-time visibility and alerts. Reduce Risk of Internal Theft or Misuse: Automated key storage with audit trails deters misuse and helps quickly identify issues, lowering theft and liability exposure. Improve Accountability and Guest Protection: Detailed tracking holds staff accountable, highlights unusual behaviour, and strengthens guest and personnel safety. Reduce Rekey Expenses: A networked key control system prevents lost keys and lets you trace usage instantly, reducing costly rekeying. 4 business intelligence boosters Spot Trends with Key Usage Reports: Automated reports show which areas and tools are used most often, helping users plan staffing, prepare supplies, and detect anomalies. Streamline Vendor and Contractor Access: Grant time-limited, role-based permissions to contractors and deliveries, reducing the need for staff supervision and easing the front desk workload. Maximise Asset Utilisation: Keys unlock more than rooms. They also access golf carts, radios, minibars, tools, and more. Tracking usage helps manage inventory, reduce loss, and improve availability. Update Access Instantly: With centralised software, users can revoke or adjust permissions across the property in seconds – safer and faster than manual updates.
Gunnebo Entrance Control has partnered with Queenstown Airport (ZQN) and Custom Technology Systems Ltd to elevate the domestic departure experience, providing greater convenience and security for passengers. Queenstown Airport, a key gateway to New Zealand’s South Island and the country’s fourth-busiest airport, has evolved continuously since opening in 1935. Now serving more than 2.6 million passengers each year, it connects major domestic destinations and east coast Australia, driving ongoing improvements to passenger facilities and operational efficiency. Entrance control solution As part of a dedicated programme to enhance the domestic departures journey, ZQN reworked existing café space. A glass wall was installed to relocate the café airside, integrating it with the gate lounge. This provided direct food and beverage access for passengers and created additional seating, all within the same footprint. To support the new layout, Custom Technology Systems Ltd and Gunnebo Entrance Control worked closely with the on-site teams to deliver a tailored entrance control solution that balanced security and passenger flow whilst accommodating spatial limitations. Adapting to unexpected challenges “The success of this project was achieved by working together, adapting to unexpected challenges, and staying focused on delivering a secure, seamless journey for every passenger,” said Chris Walker, Project Manager at Queenstown Airport. “Every challenge we encountered was met together. Whether it was refining the design, resolving compliance issues, or adapting to the space, we relied on each other’s strengths to get it right.” Gunnebo Entrance Control’s PasSec solution To optimise style, security and passenger movement, the team installed Gunnebo Entrance Control’s PasSec solution, a sleek one-way corridor system designed to prevent backflow while maintaining compliance with strict local and international aviation regulations. Brett Copeland, Managing Director at Custom Technology Systems Ltd, added: “For this works programme, there was a genuine sense of problem-solving together. It wasn’t about one party leading and others following but instead a collaborative process from initial design and specification through to project completion. We each brought ideas, worked through constraints and stayed focused on making the solution fit.” Challenges together to deliver smarter Clive Dillen, Regional Manager at Gunnebo Entrance Control, concluded: “We’re proud of what we achieved here, and the result reflects the true essence of coordination, discussion and trust. That’s what true partnership looks like and marks a major step forward in Queenstown Airport’s continued development." "It stands as a clear example of what can be accomplished when organisations work through challenges together to deliver smarter, more effective outcomes for passengers and operators.”


Round table discussion
At mid-year 2026, the broader economy tells a story of resilience under pressure. Conflict in the Middle East has triggered a shock to the energy supply, driving oil prices up and reigniting global inflation. However, a total downturn has been averted. Exceptional, historic levels of business investment and data centre construction are providing a firm floor for growth, offsetting cooler consumer spending and keeping labour markets fundamentally stable. But how are changing economics impacting the physical security market? We asked our Expert Panel Roundtable: How do changes in the broader economic climate impact physical security?
The Internet of Things (IoT) is having a profound impact on businesses across various industries, including security. In physical security as in other business environments, the IoT is changing how systems operate, interact, and create value. In the process, the IoT is driving efficiency, reducing costs, and opening up new avenues for innovation and growth. We asked our Expert Panel Roundtable: How is the Internet of Things (IoT) transforming how security systems are deployed?
In the past, security installers and integrators were used almost exclusively to install hardware. However, the role is changing and expanding along with the technologies used in the physical security industry. Nowadays, an installer or systems integrator is much more likely to use a strategic, IT-centric, and data-driven approach. To gain additional insights, we asked our Expert Panel Roundtable: How is the role of the security installer/integrator changing?
Products


White papers
Preventing loss, securing assets
Download
Safeguard Students With New Techniques And Technology
Download
5 ways to strengthen physical security with an integrated system
Download
The benefits of Edge AI + Cloud for security systems
Download
Smart security cameras: excellence in retail
Download
Is access control in the cloud more cost effective?
Download
Innovative edge storage solutions for the video surveillance industry
Download
Enhanced Ethernet Technology (ePoE)
Download
Do you know the weakest link of your access control system?
Download

Videos
Security devices: Manufacturers & Suppliers
- Dahua Technology Security devices
- Vicon Security devices
- Seagate Security devices
- Aiphone Security devices
- Bolide Security devices
- Vanderbilt Security devices
- Bosch Security devices
- Hanwha Vision Security devices
- ABLOY Security devices
- LILIN Security devices
- Aritech Security devices
- Briton Security devices
- Parabit Security devices
- VIVOTEK Security devices
- Hikvision Security devices
- BCDVideo Security devices
- Sony Security devices
- ComNet Security devices
- Videotec Security devices
- CEM Systems Security devices
Technology's role in securing banks and financial institutions
Download
Security technologies promote real-time awareness in K-12 schools
Download
Integrated systems enable critical and compliant security for transportation
Download
Modernising physical access control
Download
Access. Intrusion. One estate.
Download
