DCOS Secure
Physical security & critical comms from perimeter to rack
Physical security, critical communications and response from perimeter to rack — perimeter, access control, video, intrusion, visitor and contractor workflows, intercom and duress, ALPR, guard coordination, dispatch, central monitoring and evidence.
- Domains
- PACS · VMS · Intrusion
- Identity
- Strong, least-privilege
- Convergence
- Physical + cyber + OT
- Governance
- Data domain + evidence
Outcomes
What this component is designed to make true when it is in place.
Converged incident context
Physical, cyber and OT events share context so responders see one situation, not three consoles.
Least privilege, enforced
Access and command authority follow least privilege with strong identity across every security system.
Evidence by default
Security events and access decisions are captured as linked evidence for audit and investigation.
Security domains
Access control (PACS)
Perimeter and interior access control with strong identity, zones and time-bound authority.
Video (VMS)
Governed video with retention policy, access authority and event linkage to incidents.
Intrusion detection
Perimeter and interior intrusion detection correlated with access and video context.
Visitor management
Controlled visitor lifecycle from pre-authorization through escort and departure, with evidence.
Dispatch & response
Coordinated dispatch and response procedures integrated with the shared event lifecycle.
Critical communications
Reliable critical comms for security operations, integrated with operations and escalation.
Security engineering
Each domain is engineered to preserve local protective behavior while producing governed evidence.
Access-control engineering
- Local controller and door behavior
- Credential, role, area and time entitlement
- Mantrap, anti-passback, escort and two-person policies where required
- Rapid disable and offboarding
- Forced/held door and controller-health alarms
- Code-compliant emergency egress
- Complete access and operator evidence
Video engineering
- Coverage purpose and scene requirements
- Lens, resolution, frame rate, WDR, IR, thermal and PTZ
- PoE and UPS calculations
- Bandwidth and storage
- Continuous or event recording
- Retention, legal hold and export
- VMS health, time and failover
- Role, tenant, privacy, redaction and chain of custody
Intrusion and duress
- Perimeter, building, room, cage and rack zones
- Alarm verification
- Discrete panic/duress path
- Independent communicator health
- Guard, central station, SOC, NOC and emergency response
- Testing, battery and bypass records
Visitor and contractor lifecycle
- Request → Review → Pre-arrival → Check-in → Presence → Check-out → Review
Operating contract
How this component upholds the shared platform contract.
What this component upholds
- Every door, camera, sensor and credential carries stable identity and declared authority.
- Read authority over security data is separate from command authority over security systems.
- Security events join the shared lifecycle and converge with cyber and OT context.
- Access decisions and security events are retained as linked evidence under governed policy.
Reference profiles
| Domain | Primary function | Governance | Convergence |
|---|---|---|---|
| Access control | Zone & time-bound access | Strong identity, least privilege | Into incident context |
| Video | Surveillance & review | Retention & access policy | Linked to events |
| Intrusion | Perimeter/interior detection | Alarm authority | Correlated with access/video |
| Visitor mgmt | Controlled visitor lifecycle | Pre-authorization & evidence | Into operations |
| Dispatch | Coordinated response | Procedure-driven | Shared event lifecycle |
Scope & boundaries
What this component is — and deliberately is not — responsible for.
- DCOS Secure operates security systems and governs their data; it does not replace life-safety systems mandated by code.
- Command authority over security systems is granted explicitly and separately from visibility.
- Convergence provides shared context; it does not merge distinct regulatory retention obligations.
Technical FAQs
Frequently asked questions
Explore the family
Related products
DCOS Network
Engineered building-management, OT, campus, security and management networks — new build, overlay, managed or mixed-vendor.
DCOS Operations
24/7 NOC, SOC, service desk, CALS event orchestration, ITSM/CMMS/DCIM and field services under an accountable operating model.
DCOS Assurance
ISO/IEC 27001, SOC 2 Type II, PCI DSS extensions and a unified control fabric with continuous evidence operations.
CriticalOps Cloud
Tenant-aware identity, private access, monitoring, dashboards, CALS, workflow, evidence, APIs, backup and disaster recovery — with local protection always independent of the hosted service.
Bring DCOS Secure into your reference architecture
We map this component to your sites, existing systems and assurance obligations, then agree a delivery path.
