Research discipline

Security Project Management

Analysis is only useful when it turns into work that people can actually carry out. This discipline records how security activity is defined, assessed, planned, resourced, implemented, monitored and reviewed.

The material here is independent practitioner research and template work. It is not consultancy and is not offered as a service.

Open the risk register

The working cycle

  1. Stage 01

    Define

    Agree what is being protected: people, sites, movement, information and continuity of activity, with the operating area and period stated.

  2. Stage 02

    Assess

    Threat, vulnerability, exposure, likelihood and impact assessed on the UK threat scale, with confidence and sources recorded.

  3. Stage 03

    Plan

    Mitigation measures written as tasks with an owner, a date and a review point, rather than as general advice.

  4. Stage 04

    Resource

    Match measures to what is realistically available: staffing, equipment, training time, communications and budget.

  5. Stage 05

    Implement

    Standard operating procedures, briefings, movement plans, access controls and reporting routines put into daily use.

  6. Stage 06

    Monitor

    Indicator monitoring, incident logging and periodic reassessment, so the plan changes when conditions change.

  7. Stage 07

    Review

    After-action review and lessons recorded, then fed back into the assessment and the procedures.

Skills applied

Skills this work requires

  • Security risk assessment and register management, including residual risk and review dates
  • Writing standard operating procedures, briefings and situation reports
  • Incident management: logging, escalation, notification and post-incident review
  • Journey and movement planning, including route risk and check-in discipline
  • Duty-of-care planning and access considerations for humanitarian operating environments
  • Business continuity and crisis preparedness planning
  • Task, owner and deadline tracking across concurrent security workstreams
  • Briefing non-specialist managers in plain, decision-focused language

Professional development

Qualification and study

  • Security risk management practice, applied across the assessments and registers published here
  • ISO 31000 risk principles and business continuity practice (continuing development)
  • Humanitarian security and duty-of-care study (continuing development)

Qualification records are provided on request. Nothing here is presented as a completed award unless described as completed.