What is a Security Risk Assessment (SRA)?

alwinco 8 views 3 slides Aug 27, 2025
Slide 1
Slide 1 of 3
Slide 1
1
Slide 2
2
Slide 3
3

About This Presentation

A Security Risk Assessment is an independent, in-depth analysis of your security systems designed to uncover vulnerabilities before criminals exploit them. Unlike internal reviews or sales-driven checks, it offers an objective roadmap to strengthen defences, protect assets, and save lives; keeping y...


Slide Content

PSIRA 2038881
Intellectual Property Notice – Alwinco
This document and its contents are intended solely for the recipient. All rights are fully protected.
No part of this publication, including text, images, reports, or assessments, may be copied, stored, resold, or shared by any means without prior written consent from Alwinco.
Unauthorized use, distribution, or modification of Alwinco’s assessment materials is strictly prohibited and may result in legal action. Page 1 of 3

What is a Security Risk Assessment?
Let’s get real: you wouldn’t let your neighbor who’s “good with numbers” do your taxes, or ask a
friend who’s an auto electrician to rewire your properties wiring. So why trust just anyone with
your safety? Hiring a Security Risk Assessor isn’t about throwing money at a problem it’s about
getting someone who knows crime inside out to keep you one step ahead of the criminals. At
Alwinco, we bring research, skills, and hard-won experience to the table. That’s what keeps you
safe and secure.
Crime Doesn’t Sleep.
Criminals aren’t sitting still. They’re scheming, adapting, using technology and tricks to stay
slippery. In South Africa, where crime rates scream louder than a siren, we can’t afford to lag
behind. Our role? To stay one step ahead of the criminals. That means digging into the latest
trends, not just guessing what might work. You need someone who’s out there, learning every day,
so your security doesn’t get caught flat-footed.
A Security Risk Assessment is a comprehensive analysis of your security infrastructure, intended
to uncover vulnerabilities that could be exploited for criminal gain and to provide practical
solutions. This includes evaluating security management, documentation, hardware,
communication systems, and more. The goal is to identify threats, usually hidden opportunities
for crime that often result from oversight or neglect.
While many approach Security Risk Assessments from a managerial standpoint, it’s crucial to
understand they should be conducted by trained assessors, not by internal managers. I've had
clients request only an executive summary of the findings, but if someone can’t commit to
reading the full report, they may not be suited for their role. Knowledge comes from being willing
to learn, and in security, ignorance is often the biggest risk.
A Security Risk Assessment is not just a tool for current leadership but rather a long-term
resource. Even if the present client is well-informed, the report should be comprehensive enough
for any future personnel to understand the risks and recommended actions. It’s also important
to treat the report as confidential, following clear guidelines for handling and access.


VAT: 4920248509 CK 2006/029993/23 Alwinco cc
Cell: 062 341 3419
Durban: 061 384 0570
Cape Town: 061 613 2380
Fax: 086 666 8050
Landline: 087 148 8615
https://za.linkedin.com/in/andremundell
[email protected]
www.alwinco.co.za
PSIRA 2038881
Reference# 25/08/0414:08:54
Reasoning with crime is Futile. I remind myself daily: crime can’t be undone.
2025-08-0414:08:54

PSIRA 2038881
Intellectual Property Notice – Alwinco
This document and its contents are intended solely for the recipient. All rights are fully protected.
No part of this publication, including text, images, reports, or assessments, may be copied, stored, resold, or shared by any means without prior written consent from Alwinco.
Unauthorized use, distribution, or modification of Alwinco’s assessment materials is strictly prohibited and may result in legal action. Page 2 of 3
A key aspect of a Security Risk Assessment is its objectivity. That’s why it must be performed by
an external expert. Think of it like navigating traffic: when you're in a car, your view is limited to
what’s directly ahead, but from a helicopter above, you can see the entire traffic flow and
potential alternative routes. Similarly, an outsider can view your property through a criminal’s
lens, spotting opportunities that an internal person might miss. Many directors don’t even know
where their security cameras are located, which is something a criminal often knows well enough
to avoid detection.
When you hear about crimes in the news, it’s safe to assume those places had security but lacked
a proper Security Risk Assessment. A Security Risk Assessment is proactive and provides a
roadmap for strengthening your defences and deterring crime before it happens.
Who needs a Security Risk Assessment? The answer is simple: everyone. Whether you’re a
homeowner, farm manager, corporate executive, or responsible for a hospital or school, you need
one. People spend time researching their next car down to the colour, yet often overlook their
security systems. But your Security Risk Assessment protects more than just assets; it protects
lives. And no budget should outweigh that value.
Not everyone welcomes the results of a Security Risk Assessment. While the person who
requested it usually sees the value, others may resist, especially in public sector environments
where cooperation can be limited. Some even attempt to interfere with how the report is written.
But a Security Risk Assessment's purpose is to present the truth, regardless of how
uncomfortable it may be.
The process only works when done independently. As we often say, “You can’t be the referee and
the player.” You can’t evaluate a system you created yourself without bias. Likewise, service
providers shouldn’t conduct Security Risk Assessments considering their primary motivation is
often sales, not security integrity. That’s like asking a student to grade their own test.
A recurring issue is that many organisations’ security managers are actually employed by service
providers, not directly by the organisation itself. This creates delays and communication barriers.
I once dealt with a case where critical paperwork, meant to be delivered in 24 hours, was over a
week late due to these inefficiencies.
There’s much more to say about what a Security Risk Assessment involves, but hopefully this
overview gives you a clearer picture. Security is not just about having systems in place; it’s about
understanding and addressing real risk.
If you would like to learn more about Security Risk Assessments, visit Alwinco's website, or feel
free to contact me and we can arrange a virtual meeting!

PSIRA 2038881
Intellectual Property Notice – Alwinco
This document and its contents are intended solely for the recipient. All rights are fully protected.
No part of this publication, including text, images, reports, or assessments, may be copied, stored, resold, or shared by any means without prior written consent from Alwinco.
Unauthorized use, distribution, or modification of Alwinco’s assessment materials is strictly prohibited and may result in legal action. Page 3 of 3


Alwinco Team
[email protected]