Risk mitigation for supply chain data security

13 Apr 2018

Pip Courcoux discusses the current issues around cyber security.

The landscape of security and access control has changed over the last decade, with the introduction of technology that allows for traceability and time management within mechanical keys. This has meant the conversation has changed - Passkeys, Cryptographic keys, Encryption keys are all becoming more commonplace. By default, we’ve become obsessed with cyber security, and high-profile cases and examples of data theft and loss are rife.

Research shows that 93 percent of large organisations and 87 percent of small businesses experienced a security breach in 2013, with affected companies experiencing roughly 50 percent more breaches than in 2012. Although keys provide access to critical assets, including servers that hold customer data and provide access to offices where customers’ accounts are managed, we see many organisations that don’t know how many keys they have in circulation, or where they are at any given time.
The supply chain

For organisations handling any kind of data, great importance must be placed on resilience within the supply chain. When considering exposure to risk, physical supply chain management presents a number of unique challenges.

Add to this the complex risks that cyber security poses, and ensuring a safe supply chain environment can seem like an impossible task. How ‘stable’ are your suppliers, do you know where they get their products from, how safe and protected are their assets, and how robust are their own relationships with their suppliers?

Mitigating risk can involve identifying dependencies and vulnerabilities that can impact upon supply chains. Increasing the visibility of these areas allows organisations to anticipate their impact and to plan for the contingencies.

The GDPR is a binding legislative act from the European Union for the protection of personal data

Data protection

When it comes to the security of your data, areas that need to be considered include:

  • What information are you sharing within your supply chain?
  • Where is the data located?
  • What are your suppliers doing with that information?
  • Are they reselling that data?
  • Is there a data controller and processing agreement in place?
  • Are they prepared for compliance to the General Data Protection Regulation (GDPR)? Enforcement date: 25th May 2018.
  • How would you deal with a data breach?
  • The GDPR is a binding legislative act from the European Union for the protection of personal data. The Regulation tackles the inconsistent data protection laws currently operating throughout the EU’s member states and facilitates the secure, free flow of data.

    If an organisation fails to comply with the Regulation it could be fined up to 4 per cent of the company’s global annual turnover – and could severely damage its reputation.

    The secure option

    To combat these risks, Abloy UK offers a high level of both physical protection, with its high-quality locking solutions, and data protection using only accredited software and infrastructure providers.

    If an organisation fails to comply with the Regulation
    it could be fined up to 4 per cent of the company’s global annual turnover


    One example of this is PROTEC2 CLIQ, an electronic key system where all the power is retained by the key or locks themselves. This means no wiring is required, whether the system uses door cylinders, cabinet locks or padlocks. Users have secure access to the online management application from anywhere in the world and can change key access permissions, profiles, schedules and validity, even revoking their use virtually at the ‘CLIQ’ of a button.

    Mitigating lost key risks

    CLIQ keys are validated daily, weekly or monthly keeping them continuously secure. Users are required to change their password every 3 months – but when was the last time you changed your keys?

    The CLIQ system enables the organisation to comprehensively track and audit who has access to which locations, when they had access and how often. Access can be granted only at the exact moment it is required, mitigating the risk associated with lost or stolen keys.

    What’s more, Abloy uses accredited software and infrastructure providers that provide enterprise level SaaS solutions, compliant with European and National standards for physically secure key systems. Abloy also uses the latest techniques to secure its customers’ data behind three factor authentications, standard 256-bit encryption, advanced encryption and industry standard SHA-2 SSL certificates.

    So, when it comes to data security within your supply chain don’t leave anything to chance, mitigate the potential risks in advance and only use suppliers you can be sure will keep your data secure.

    ASSA Abloy
    Website
    Email Us
    T: 01902 364538

    School Street
    WV13 3PW
    Willenhall, West Midlands
    United Kingdom

    See ASSA Abloy at

    Meet ASSA Abloy at stand IF.5230 on the 16-18 May 2023 at the ExCeL London when the co-located IFSEC, FIREX, Facilities Show and Safety & Health Expo events take place!

    ASSA ABLOY Incedo
    Product

    ASSA ABLOY Incedo

    ASSA ABLOY’s Incedo systems have been designed to provide the usability, flexibility and updatability demanded in today’s always-on world. Easily expandable and endlessly scalable, it is quick to install, quick to upgrade and quick to provide results. It’s also agile enough to adapt to the latest technolog...

    View product page

    SMARTair
    Product

    SMARTair

    A SMARTair™ wireless access control system is built around three main elements. With intuitive management software, facility managers control, identify and update exactly who can open every door. They get an instant overview of their site’s security status. The user-friendly interface is accessible fr...

    View product page

    Aperio
    Product

    Aperio

    Installing traditional access control doors is very expensive due to the extensive wiring required, which is why access control systems often only cover doors with very high security requirements – leaving all other doors with mechanical locks unmonitored and unmanaged. Losing a master key to these doors i...

    View product page

    PROTEC2 CLIQ
    Product

    PROTEC2 CLIQ

    PROTEC2 CLIQ from Abloy is based on the patented rotating disc cylinder mechanism, secures the mechanical elements of your site, while the electronic CLIQ technology allows flexible control of keys, access rights and audit trails. Abloy PROTEC2 CLIQ combines both technologies into one unrivalled security s...

    View product page

    eCLIQ
    Product

    eCLIQ

    eCLIQ is ASSA ABLOY's latest completely electronic cylinder platform. A system of programmable keys and compact, secure locking cylinders, offering you security and flexibility. eCLIQ is designed to replace traditional master key systems in institutional organisations such as accommodation, universities, s...

    View product page

    CLIQ Connect
    Product

    CLIQ Connect

    Abloy PROTEC2 CLIQ can now be combined with CLIQ Connect, to add a revolutionary mobile functionality to the solution. If you already use the PROTEC2 CLIQ system, the CLIQ Connect solution can be easily and cost-efficiently added as and when required. The CLIQ Connect solution allows the administrator's re...

    View product page

    ASSA ABLOY PULSE
    Product

    ASSA ABLOY PULSE

    A future-proof system that combines the best of electronic and mechanical securityASSA ABLOY PULSE is our electronic locking solution with self-powered cylinders and padlocks. Designed for all kinds of environments, from schools to assisted living blocks and multi-resident apartments, ASSA ABLOY PULSE is a...

    View product page

    ABLOY BEAT
    Product

    ABLOY BEAT

    ABLOY BEAT - a new benchmark in keyless solutions. Heralding a new era of effortless mobile connectivity with Seos® credential technology for best-in-class security and privacy protection. Featuring a newly designed Super Weather Proof Bluetooth® padlock, operated with our new digital key and mobile app. A...

    View product page

    Padlocks
    Product

    Padlocks

    Abloy UK provide padlocks to meet the strictest standards in the UK and Ireland, which are suitable for a range of security levels, applications and industries. Abloy padlocks can be incorporated into Abloy's mechanical locking systems- Protec, Novel and Sentry, and can also be used in extensive Master Key...

    View product page

    Electric Locks
    Product

    Electric Locks

    Abloy are the market leaders in the manufacture and supply of high-quality electric locks, and the combination of safety and security makes our electric locks ideal for Abloy doors. Our range of electric locks meet the dimensions and standard regulations used in European markets. (BSEN1125 and BSEN179).

    View product page

    Low Energy Electric Locks
    Product

    Low Energy Electric Locks

    Abloy has been the world leader in developing electric locks since the 1970s. Now, Abloy presents the new energy-efficient LOW ENERGY locks, which are based on the worldwide internationally renowned Abloy electrical handle-controlled locks. Low energy locks are the result of ecologically-oriented product d...

    View product page

    Escape Door System
    Product

    Escape Door System

    An Escape Door System (EDS) is designed specifically to ensure people can escape safely through electrically controlled Escape doors, and maintains secure locking in the event of an emergency.

    The importance of emergency escape routes is often underestimated because emergencies and tragedies are...

    View product page

    [an error occurred while processing this directive]
    Close
    FOR MORE INFORMATION CONTACT ASSA ABLOY
    * Oops!
    * Oops!
    * Oops!
    * Oops!
    * Oops!
    I have read, understood and consent to your Privacy Policy
    * sorry this is a required field
    MESSAGE SENT!

    Thanks for using IFSEC Global Directory,

    Your enquiry has been sent to the selected companies, they will be in contact shortly.