asis

 

 

https://adminsm.asisonline.org/Pages/May-2018-ASIS-News.aspxMay 2018 ASIS NewsGP0|#3795b40d-c591-4b06-959c-9e277b38585e;L0|#03795b40d-c591-4b06-959c-9e277b38585e|Security by Industry;GTSet|#8accba12-4830-47cd-9299-2b34a43444652018-05-01T04:00:00Z<h4>​Big Event Coming to the Big Apple</h4><p>More than 2,200 security and law enforcement professionals will convene in New York City for the ASIS International 28th New York City Security Conference and Expo May 16-17 at the Jacob K. Javits Convention Center.</p><p>The conference will open Wednesday at 8:00 a.m. with a keynote address from Scott Morrison, head of global crisis management and command centers for JPMorgan Chase & Co. He will share his thoughts on emerging trends from terror attacks to kidnapping, and from cybersecurity to intellectual theft.</p><p>Two days of peer-developed education will address some of today's most pressing security challenges, including a full day of learning focused on active assailant prevention and response. Conference sessions include:​</p><p><strong>Drone Technology</strong></p><p>Take a closer look at the current state of drone technology and explore industry trends from all angles.</p><p><strong>Get Your Seat at the Table</strong></p><p>Through the lens of enterprise security risk management (ESRM), security becomes an organization's roadmap for meaningful, effective risk management.</p><p><strong>Securing an Open Office</strong> </p><p>Facebook Chief Global Security Officer Nick Lovrien will explain how Facebook developed a collaborative open office environment while attempting to mitigate risk. </p><p><strong>Active Threat and Culture</strong></p><p>This session examines the cultural differences between an organization that values the "spend" vs. those that look at security as an expense that needs to be slashed.</p><p><strong>Vehicle Attacks</strong></p><p>No community is immune from vehicular terrorist attacks, which have recently caused 204 deaths and 861 injuries in the U.S. and abroad. How can they be deterred?</p><p>Besides paid conference registration, attendees can choose a free expo-only pass that includes access to the exhibit hall on both days, daily receptions and coffee breaks on the exhibit floor, and career coaching services.</p><p>The ASIS New York City Chapter will honor His Eminence Timothy Cardinal Dolan, Archbishop of New York, as the NYC Chapter Person of the Year. Dolan, whose career in the Catholic Church spans more than 40 years, will be honored for his dedication to the people of New York. Always a popular event, the Person of the Year Luncheon will be held at noon on Thursday, May 17. Tickets to this event are included with conference registration. To learn more, go to asisonline.org/nyc2018.​</p><h4>Globalization Update</h4><p>In April, ASIS International members received an update about the work underway in support of the Society's globalization initiative and the impact of this work on 2018 Board elections. President Richard E. Chase, CPP, PCI, PSP, sent the following letter to members last month.</p><p>Fellow members,</p><p>I am pleased to provide an update on the progress made to fully globalize ASIS International. Our 2017-2021 strategic plan identified improving the ASIS Global Network as one of five key priorities. It's understood that the future success of ASIS is dependent on our ability to be relevant to members around the globe, across all markets, and at every step of the career ladder. This can only be done by employing innovative solutions that foster collaboration and easy sharing of information locally, regionally, and worldwide.</p><p>In 2017,  the Globalization Task Force, composed of a diverse cross section of volunteer leaders, was established to evaluate common practices of other global nonprofit organization management models and identify changes we could make to our organizational structure. Led by 2018 Board Treasurer Godfried Hendriks, CPP, this important work, which included reviewing and redefining roles and responsibilities for our chapter and regions, council, and regional advisory council leaders with an aim to "flatten" our leadership structure, will allow the Society to be more deliberate and nimble in how we deliver our products and services. And most importantly, to create an inclusive volunteer leadership structure that truly reflects the diversity of our membership.</p><p>Through this undertaking, it became clear that we needed to not only rethink our volunteer structure, but also how we select our governing leadership positions—specifically, the ASIS International Board of Directors. </p><p>In March, a Presidential Governance Task Force was established to reevaluate the ASIS board nominations process and overall board governance with an eye towards global diversity, inclusion, and selection criteria, which targets a proportionate representation of the association's members and the overall depth of experience of directors' backgrounds. </p><p>Co-chaired by President-Elect Christina Duffey, CPP, and 2018 Board Secretary John Petruzzi, CPP, this task force is working under an expedited timeline, with a goal of delivering recommendations—including director job descriptions and creation of a governance committee—by January 2019. As such, the Board passed a motion to forgo Board elections in 2018. This will provide an opportunity for the task force to complete its work and to ensure the Board of Directors reflects the global membership it represents in 2019 and beyond. </p><p>Later this summer, we will be providing more details on the Globalization Task Force recommendations. This is an exciting time for the Society as we continue to implement our member-driven strategic objectives. As always, we encourage you to email asisfuture@asisonline.org to share your feedback.</p><p> </p><h4>ASIS Brings Top Business Education to Spain</h4><p><em>Effective Management for Security Professionals 2-5 July, 2018 Madrid, Spain</em></p><p> Looking to take the next step in developing your business acumen? Security executives are invited to attend a four-day executive education program in Madrid, Spain. The theme is Establishing the Security Role as an Enabler for Business Success.</p><p>Presented by IE Business School in collaboration with ASIS International, this course provides an opportunity for mid-career to senior security managers to take a deep dive into the central areas of management, enhancing their effectiveness in the corporate environment and enabling them to align their expertise with the organization's security requirements. It focuses on:</p><p>•             Leading in Uncertainty</p><p>•             Creating a Strategic Mindset</p><p>•             Applying Financial Information</p><p>•             Negotiation</p><p> Prior to the program, registrants will be granted access to the IE Online Campus to prepare classwork and readings and facilitate their campus learning experience. Once on site, the class will participate in interactive lectures, debates, group work, case studies, and role play.</p><p>"Today, companies and organizations are looking for professionals who are highly trained not only in enterprise security risk management, but also in business," says program director Juan Muñoz, CPP, ASIS Spain Chapter chair. "For years now, the role of chief security officer has been progressively evolving. It is precisely in this context where the Effective Management for Security Professionals course reaches its main added value as a business executive education tool."</p><p>ASIS members save significantly on their registration fees. Additionally, registrants will receive 40 CPEs for their participation. New this year: Members of the CSO Center receive an additional 5 percent discount off the member fee. See details at https://www.asisonline.org/ie.  ​</p><h4>International Buyer Program Delivers Global to GSX</h4><p>Security professionals outside North America who are looking to participate in the most anticipated security event of the year can start planning their travel now.</p><p>Global Security Exchange (GSX), formerly the ASIS International Annual Seminar and Exhibits, is proud to once again participate in the U.S. Department of Commerce's International Buyer Program (IBP). </p><p>The IBP is a government–industry partnership that brings global buyers to the United States for business-to-business opportunities with U.S. firms at major industry trade shows. GSX's participation in this event demonstrates the importance of the event to the security industry worldwide. </p><p>According to the department's website, "every year, the IBP results in approximately a billion dollars in new business for U.S. companies, and increased international attendance for participating U.S. trade show organizers."</p><p>International attendees are encouraged to join an IBP delegation and take advantage of special registration rates and benefits—available only to participants. To register with an official IBP delegation, contact the commercial service specialist at your local U.S. Embassy or Consulate to discuss attending GSX 2018 and receive a special registration code. To learn more about the International Buyer Program, visit <a href="http://www.gsx.org/IBP">www.gsx.org/IBP</a>.​</p><h4>Executive Protection Council Spotlight</h4><p>Launched in 2015, the Executive Protection Council is one of the newest ASIS councils. In the years since its creation, the council has more than doubled in size, with 40 members representing organizations as diverse as Northrop Grumman, Facebook, McDonald's, Time Warner Cable, and PayPal, to name a few. Each member is driven to share expertise and affirm executive protection's place in the security profession. </p><p>Executive protection (EP) is a specialized field of security that Council Chair Bob Oatman, CPP, says has grown dramatically in recent years: "The profession itself has existed in government since the days of Lincoln—Secret Service, security details for mayors and governors, and the like. The private sector is where big change is taking place. Hollywood A-listers, corporate executives, and their families—they're recognizing the need for what we do. We wouldn't have a standing council if companies weren't engaged in having EP as part of their security program. We're business enablers. We protect the brand. We help people in the C-suite get where they need to go."</p><p>Oatman has been conducting a two-day EP classroom training with ASIS since 1998. When the Society launched a certificate for the program in 2013, the council's founding members saw it as a significant validation that EP has a place in the broader security community. They approached ASIS about forming a council, and now enjoy an increased reach to share EP best practices.</p><p>The council will sponsor an education session this September at Global Security Exchange (GSX), formerly the ASIS International Annual Seminar and Exhibits, where it has sponsored sessions each of the last three years. At this year's session, in a simulation titled "The Trilogy of Executive Protection—Making the Case," council members will present attendees with an EP problem. In groups, attendees will workshop and develop a pitch to sell their EP solution to mock executives.</p><p>In addition to its classroom program, the council has also produced a webinar, contributed an article to Security Management, and developed a proposal for the potential development of an ASIS standard or guideline around executive protection.</p><p>The council also engages in outreach to keep ASIS members up to date on its initiatives. Its biannual newsletter, which shares council updates and touches upon important EP themes, is available in both English and Spanish. The latest issue, available within ASIS Connects, includes articles on the unique rewards and challenges of working in EP and the council's proposed standard or guideline. The council has also appointed liaisons to the Young Professionals, Women in Security, Transitions Ad Hoc Council, and Critical Infrastructure Working Group. </p><p>To learn more about executive protection or to engage with council members or find their latest newsletter, visit ASIS Connects and search for Executive Protection.​</p><h4>Life Members</h4><p>Raymond L. Dean, Sultan H. Alzahrani, and Herbert M. Kaltz, CPP, have been granted lifetime membership to ASIS. </p><p>Dean has been a member of the New York City Chapter since 1981, and he served as the chapter's chair, vice chair, and secretary. In 2011, Dean was awarded the Presidential Award of Merit by ASIS. He is a two-time recipient of the Eugene Casey Award for dedicated service to the NYC Chapter, plus he won the chapter's Joseph Spillane Lifetime Achievement Award in 2017. </p><p>Alzahrani joined ASIS more than 30 years ago and has been an active member of the Dhahran, Saudi Arabia Chapter, serving as its chair multiple times. He has also been a regional vice president and assistant regional vice president for many years. </p><p>Kaltz has been a dedicated member of ASIS for more than 32 years. He provided service to the ASIS Detroit Chapter as a chapter chair, vice chair, secretary, and communications chair. ​</p><p> </p><h4>ESRM in Action</h4><p>In 2016, ASIS made enterprise security risk management (ESRM) an organizational priority and has begun infusing this management philosophy into all the Society's programs and services. In the months ahead, we will provide updates, as well as showcase how members are implementing ESRM in their organizations.</p><p><em>By Jon Harris, CPP, PSP</em></p><p>Our "aha" moment came during the ESRM tabletop exercise at the ASIS conference in Dallas last year. My colleague and I realized we were omitting critical components from our risk evaluation process, and therefore missing an opportunity to add significant value to our company. We had a business continuity program, emergency response processes, workplace violence prevention program, and facility risk assessments—the miss was that they were not connected and were too focused on the security aspects of our organization.</p><p>By taking a step back and reframing our entire program within the structure of ESRM, we were able to focus our efforts towards the areas of greatest operational risk, using the existing programs we had in place and providing valuable intelligence to the business. Additionally, we broadened the purview of our assessment to the entire organization—from the supply chain, to operating facilities, and through our service organizations.</p><p>Here are our recommendations:</p><p><strong>Get started</strong>. Taking too much time to analyze and come up with the perfect approach will stall your efforts. The process is organic and will evolve over time; continuous improvement is a critical facet of the program and must be embraced. </p><p><strong>Invite everyone to the party.</strong> The greatest value will come with the broadest inclusion and participation. </p><p><strong>Make it simple. </strong>We distilled our mission down to four words: Keep the doors open. At the end of the day, that was our focus and being successful in all the components of our program would deliver that output. The simplicity of the message allowed for an easy delivery to all levels of the organization.</p><p>While the program is still in its infancy, we are excited about our progress to date and the long-term prospects. ESRM has been transformative for how we proactively approach our security program and visibly increase its value to the organization.</p><h4>Member Book Review</h4><p><em>Can I See Your Hands: A Guide to Situational Awareness, Personal Risk Management, Resilience and Security.</em> By Gav Schneider, CPP. Universal Publishers; universal-publishers.com; 226 pages; $27.95. </p><p>Dr. Gav Schneider is a South African martial artist who teaches security workshops. His new book <em>Can I See Your Hands </em>stands on the shoulders of well-known legends in the violence prevention and threat assessment arenas, including police response trainer Dave Grossman (who wrote the Foreword) and Hollywood security guru Gavin de Becker.</p><p>Schneider starts with the familiar concept that there are three groups in the world: sheep, wolves, and shepherds. This book is definitely for the latter. Creating awareness of violent situations and developing personal risk management skills are his overarching themes. He uses models and acronyms to remind readers to avoid denial and to create and train for survival strategies.</p><p>He goes back in time to reference Jeff Cooper's color codes: Conditions White, Yellow, Orange, and Red (and Black in actual war-time combat). He has created his own model, the "Three Point Check System" (3PC-S), which focuses on scanning the Place, the People in the area, and Planned incident actions and Contingency plans. </p><p>The author espouses the use of the Run. Hide. Fight. concept for active assailants as a doable contingency plan. But during a violent attack, you must be able to activate what he calls "Adrenal Response Management." This means controlling stress through repetitive physical and mental training for protection, awareness, and to manage the stress response that can paralyze people in life-threatening situations.</p><p>While most content is familiar, the final chapter, which gives new information on the consequences of having to use physical or deadly force against someone, is the most valuable part of the book. The mental fallout of using force is not often discussed, and it's a vital part of surviving the encounter.</p><p>The slim book is easy to understand, with a useful summary at the end of each chapter. The appendix offers information for protection at home, away from home, and in cyberspace. An index would have been helpful, and adding workplace protection concepts would have been useful. All in all, readers who want to ramp up their pre-attack awareness will learn how to do it. </p><p>Reviewer: ASIS member Dr. Steve Albrecht, CPP, is a Colorado Springs-based author, trainer, and threat management consultant.</p>

asis

 

 

https://adminsm.asisonline.org/Pages/May-2018-ASIS-News.aspx2018-05-01T04:00:00ZMay 2018 ASIS News
https://adminsm.asisonline.org/Pages/Editor's-Note---Mission-Creep.aspx2018-05-01T04:00:00ZEditor's Note: Mission Creep
https://adminsm.asisonline.org/Pages/Certification-Profile---Douglas-Beaver,-CPP.aspx2018-05-01T04:00:00ZCertification Profile: Douglas Beaver, CPP
https://adminsm.asisonline.org/Pages/April-2018-ASIS-News.aspx2018-04-01T04:00:00ZApril 2018 ASIS News
https://adminsm.asisonline.org/Pages/Certification-Profile---Kevin-Stranahan,-CPP,-PCI,-PSP.aspx2018-04-01T04:00:00ZCertification Profile: Kevin Stranahan, CPP, PCI, PSP
https://adminsm.asisonline.org/Pages/March-2018-ASIS-News.aspx2018-03-01T05:00:00ZMarch 2018 ASIS News
https://adminsm.asisonline.org/Pages/Certification-Profile---Leon-Beresford,-CPP.aspx2018-03-01T05:00:00ZCertification Profile: Leon Beresford, CPP
https://adminsm.asisonline.org/Pages/Pamela-Cichon,-CPP.aspx2018-02-01T05:00:00ZCertification Profile: Pamela Cichon, CPP
https://adminsm.asisonline.org/Pages/February-2018-ASIS-News.aspx2018-02-01T05:00:00ZFebruary 2018 ASIS News
https://adminsm.asisonline.org/Pages/January-2018-ASIS-News.aspx2018-01-01T05:00:00ZJanuary 2018 ASIS News
https://adminsm.asisonline.org/Pages/Q-and-A-Event-Security.aspx2018-01-01T05:00:00ZQ&A: Event Security
https://adminsm.asisonline.org/Pages/Certification-Profile---Darin-Dillon,-CPP.aspx2018-01-01T05:00:00ZCertification Profile: Darin Dillon, CPP
https://adminsm.asisonline.org/Pages/Chase-Leading-Through-Change.aspx2018-01-01T05:00:00ZChase: Leading Through Change
https://adminsm.asisonline.org/Pages/Looking-Back-A-Year-of-Change.aspx2017-12-01T05:00:00ZLooking Back: A Year of Change
https://adminsm.asisonline.org/Pages/Certification-Profile---William-J.-Powers,-III,-CPP.aspx2017-11-01T04:00:00ZWilliam J. Powers, III, CPP
https://adminsm.asisonline.org/Pages/November-2017-ASIS-News.aspx2017-11-01T04:00:00ZNovember 2017 ASIS News
https://adminsm.asisonline.org/Pages/ASIS-Europe-to-tackle-Big-Data,-Artificial-Intelligence.aspx2017-10-01T04:00:00ZOctober 2017 ASIS News: ASIS Europe to tackle Big Data, Artificial Intelligence
https://adminsm.asisonline.org/Pages/Certification-Profile---Caress-Kennedy,-CPP.aspx2017-10-01T04:00:00ZCertification Profile: Caress Kennedy, CPP
https://adminsm.asisonline.org/Pages/Top-Chapter-Volunteer-is-Recognized.aspx2017-09-27T04:00:00ZTop Chapter Volunteer is Recognized
https://adminsm.asisonline.org/Pages/Members-Discuss-Concerns-in-Town-Hall.aspx2017-09-26T04:00:00ZMembers Discuss Concerns in Town Hall

 You May Also Like...

 

 

https://adminsm.asisonline.org/Pages/Training-Your-Team.aspxTraining Your Team<p>​</p><p>Whether the action is on the battlefield or the basketball court, you can be certain that the winning team owes its success in large measure to extensive training. Recognizing the importance of training to any team’s performance, the Cincinnati Children’s Hospital Medical Center set out to makes its own training program better. </p><p>The existing training program, which the director of protective services felt lacked specificity, consisted of one of the shifts’ veteran officers sitting with the new security employees and covering several department and hospital-specific policies along with administrative topics. Additionally, the new officers would be given several commercially produced security training videotapes to view, after which they were required to complete the associated tests. Following the completion of the tapes and review of the policies and administrative procedures, officers would go through brief hands-on training for certain subjects such as the use of force and pepper spray.</p><p>Once they completed these tests and training sessions, the officers would then begin their on-the-job training. Officers have historically stayed in the on-the-job phase of training between three and five weeks, depending on how quickly the officers learned and were comfortable with command center operations. When the officers completed their training program, they had to pass the protective services cadet training test as well as a test on command center procedures.</p><p>Training council. To help devise a better training program, the security director chose several members of the staff to sit on a training council. The group, which included the director, three shift managers, and the shift sergeants, met to discuss the current training program and what could be done to enhance it.</p><p><br>Through discussions with new employees, the council learned that the existing program was boring. The council wanted to revitalize the training to make it more interesting and more operationally oriented. The intent was to emphasize hands-on, performance-oriented training. The council also wanted to improve the testing phase so that the program results could be captured quantitatively to show the extent to which officers had increased their knowledge and acquired skills. <br> <br>Phases. The council reorganized training into four phases: orientation, site-specific (including on-the-job), ongoing, and advanced. Under the new program, the officers now take a test both before training, to show their baseline knowledge, and after the training, to verify that they have acquired the subject matter knowledge; they must also successfully demonstrate the proper techniques to the instructors.</p><p>Orientation training. The orientation training phase begins with the new employees attending the hospital’s orientation during their first day at the facility. The security department’s training officer then sits down with the new officers beginning on their second day of employment. This training covers all of the basic administrative issues, including what the proper clock-in and clock-out procedures are, when shift-change briefings occur, and how the shift schedules and mandatory overtime procedures function.   </p><p>The training officer also administers a preliminary test to the new officers that covers 12 basic security subjects including legal issues, human and public relations, patrolling, report writing, fire prevention, and emergency situations. New employees who have prior security experience normally score well on the test and do not need to view security training tapes on the subjects. The officers must receive a minimum score of 80 percent to receive credit for this portion of the training. If an officer receives an 80 percent in most topics but is weak in one or two subjects, that officer is required to view just the relevant tapes, followed by associated tests.</p><p>All officers, regardless of the amount of experience, review the healthcare-specific tapes and take the related tests for the specific subjects including use of force and restraint, workplace violence, disaster response, bloodborne pathogens, assertiveness without being rude, and hazardous materials. Also included in the orientation training phase are classes covering subjects such as pepper spray, patient restraint, defensive driving, and the hospital’s protective services policies.</p><p>Site-specific training. During site-specific training, officers learn what is entailed in handling specific security reports. The shift manager, shift officer-in-charge, or the training officer explains each of the reports and has the new employee fill out an example of each. Examples of reports covered in site-specific training include incident reports, accident reports, field interrogation reports, fire reports, motorist-assist forms, ticket books, safety-violation books, broken-key reports, work orders, bomb-threat reports, and evidence reports.</p><p>On-the-job training is also part of the site-specific training phase. The new employee works with a qualified security officer for a period of two to three weeks following the first week of orientation training with the departmental training officer. The new employee works through all of the various posts during this time. At least one week is spent in the command center. The site-specific phase of training culminates with both the security officer cadet training exam and the command center exam, which were also given in the original program.</p><p>Ongoing training. The ongoing training includes refresher training in which shift managers have their officers review selected films covering healthcare security and safety subjects. The training occurs during shift hours. The officers also receive annual refresher training covering topics such as using pepper spray and employing patient-restraint methods.</p><p>Another type of ongoing training, shift training, is conducted at least weekly. Managers conduct five-to ten-minute meetings during duty hours to refresh the security staff on certain subjects, such as customer service. These sessions are not designed to deal with complex topics. Managers can tie these sessions to issues that have come up on the shift.</p><p>Advanced training. Advanced training includes seminars, management courses, and sessions leading to professional designations and certifications. Qualified personnel are urged to attend seminars sponsored by several professional societies and groups such as ASIS International, the International Healthcare Association for Security and Safety, and Crime Prevention Specialists. Staff members are also encouraged to attain the Crime Prevention Specialist (CPS) certification, the Certified Protection Professional (CPP) designation, and the Certified Healthcare Protection Administrator (CHPA) certification.</p><p>Staff members are urged to pursue special interests by obtaining instructor certification such as in the use of pepper spray or the use of force. This encouragement has already paid off for the hospital. For example, the department’s security systems administrator has trained officers on each shift in how to exchange door lock cylinders, a task that would previously have required a contractor. Officers are currently being trained to troubleshoot and repair CCTV, access control systems, and fire alarm equipment problems.</p><p>Training methods. A special computer-based training program was developed to help quantify and track the success in each of the training modules. Additionally, a program was developed to present training subjects during shift changes.</p><p>Computer training. Security used off-the-shelf software to create computer-based training modules and included them in the site-specific training and ongoing training phases, both of which occur during shift hours. The training council tasked each shift with creating computer-based training modules for the various security officer assignments on the hospital’s main campus and off-campus sites. These training modules cover life safety, the research desk, the emergency department, exterior patrols, foot and vehicle patrols, and the command center.</p><p>The training council asked officers to participate in the creation of the computer-based training modules. The officers produced the training modules during their respective shifts when it did not interfere with other responsibilities.  </p><p>The group participation paid off. For example, the officers who created the command center and the emergency-department training modules not only spent several hours discussing what information should be included in the modules, but then allowed their creativity to flow by using the software to make these modules interactive. These particular modules include test questions of the material, and the program will respond appropriately to the employees as they answer the questions correctly or incorrectly. The volunteers also created tests for before and after an officer goes through each of the computer modules to track the effectiveness of the training.</p><p>Shift-change training. A major question with ongoing training is how to fit it into the officer’s routine. For most industries using shift work, difficulties arise when trying to carve out enough training time without creating overtime. The training council decided to take advantage of downtime that occurs as officers come to work ready for their shift to begin. They are required to show up six minutes before the shift. This time is now used for training.</p><p>The shift-change training is used to cover specific topics—already covered in some of the training phases—that can be easily encapsulated into a six-minute program. For example, some topics include departmental policies, radio communication procedures, command center refresher sessions, self-defense subjects, confronting hostile people, proper report writing, and temporary restraint training. By implementing the shift-change training sessions on a weekly basis, the department created an additional five hours of training per year for each officer.</p><p>One of the security supervisors created a six-minute training binder to house all of the lesson plans. Each shift supervisor uses the same lesson plan so that the training is consistent across the shifts. As with all other training, the before-and-after tests are given to quantitatively document changes in subject knowledge or skills.</p><p>Results. After implementing the training program, the training council wanted to check the initial results to see whether the training was effective. There were numerous quantifiable measurements that the council could use to evaluate the new training program, such as tracking the rate of disciplinary actions from the previous year to the current year. However, since the council desired to have a quick assessment of the training program changes, it decided to compare the after-training test scores to the before-training test scores for the computer-based training modules as well as the scores of the six-minute training tests. </p><p>To the council’s surprise, the initial tabulated scores resulted in an average before-training test score of 93 percent and an after-training test score of 95 percent. The council also found in many of the officers’ tests that they missed the same questions on both the before and after tests.</p><p>Based on these results, the council decided to make several changes. First, the test questions were reviewed and tougher questions were added. Based on the preliminary test score, the council felt that the questions were not challenging enough and might not indicate how competent the officers were with the subject matter. </p><p>The training council assigned each shift the task of revising the tests for their computer-based training modules as well as the six-minute training tests. The goal was to make the tests more challenging and to obtain more accurate assessments of the effectiveness of the training program. </p><p>The training council also reviewed how the different shifts were conducting the six-minute lessons. Managers noted that the shifts initially followed the schedule of the six-minute subjects from week to week, but then they began to conduct their own lessons without an accepted lesson plan or to forgo training altogether. </p><p>To avoid this problem, the training council determined that the training program needed to be more structured. The group created a schedule to indicate which class would be covered each week. One of the shift supervisors volunteered to take over the six-minute training program and formally structure it so that each shift would conduct training in a consistent manner.</p><p>The training council has plans to further hone the training program in the near future. The council plans to analyze the program us­ing other quantitative evaluative instruments such as an employee survey and a comparison of disciplinary action data from previous years. </p><p>In battle, it is said that an army fights as it has trained. Thus, commanders know the value of training. In the businessworld, though the stakes are different, training is no less critical to the success of the mission.</p><p>Ronald J. Morris, CPP, is senior director of protective services at Cincinnati Children’s Hospital Medical Center. Dan Yaross, CPP, is manager of protective services. Colleen McGuire, CPS (crime prevention specialist), is sergeant of protective services. Both Morris and Yaross are members of ASIS International.</p>GP0|#cd529cb2-129a-4422-a2d3-73680b0014d8;L0|#0cd529cb2-129a-4422-a2d3-73680b0014d8|Physical Security;GTSet|#8accba12-4830-47cd-9299-2b34a4344465
https://adminsm.asisonline.org/Pages/Certification-Profile---C.-Joshua-Villines,-CPP,-PCI,-PSP.aspxCertification Profile: C. Joshua Villines, CPP, PCI, PSP<p>​C. Joshua Villines, CPP, PCI, PSP, admits that his expertise in security originated with his family. When he was 15, he began working at the investigative and security agency owned by his father, John C. Villines, also a triple certificant. (The elder Villines was profiled in January’s Security Management.) After holding every position from clerical assistant to field supervisor in that firm, Villines trained as an interrogator in the U.S. Army, specializing in Russian and counterintelligence.</p><p>In April 2011, Villines became the executive director of the Human Intelligence Group. “Watching my dad train, mentor, challenge, and lead by example gave me a master class on what security management looks like at its best,” he says. In his current position, Villines oversees certified instructors who provide training to law enforcement and private agencies. </p><p>“The dynamic nature of threats requires that we stay current on the latest crime prevention and counterterrorist research, standards, and published guidelines,” he says. Efforts to reinforce his proficiency in these competencies motivated Villines to pursue all three ASIS board certifications. Also, “there might have been some good-natured rivalry with my dad,” he admits. The elder Villines had been a Certified Protection Professional® (CPP) for a decade before Joshua Villines achieved that goal in 2013. “I edged him out by earning the PCI [Professional Certified Investigator®] a few months before he did in 2015,” he says, and both had earned the Physical Security Professional® (PSP) by 2016. This year, Joshua Villines begins a three-year term on the ASIS Professional Certification Board.</p><p>When preparing for the exams, Villines encourages others to integrate the study materials with their current job requirements. He fosters this concept within his own agency. “Any staff member who meets the criteria for board certification is eligible for reimbursement for the cost of the certification as well as one ASIS review course,” he explains. </p><p>In addition to his certifications, Villines holds master’s degrees from Mercer University and Vanderbilt University. He also completed more than 40 hours of law enforcement firearms instructor training in 2016. Part of his agency’s mandate is tailoring curriculum that originates in the military and law enforcement communities to the demands of private and institutional organizations. “I particularly enjoy working with faculty in an educational setting to integrate safety in ways that foster rather than inhibit good teaching,” he says. In one K-12 system, an inspirational teacher  gave students room to examine and question personal and school safety issues, says Villines. As a result, he continues, “the students viewed safety as a source of confidence, not fear.”</p><p>Villines believes that security management as a career integrates a range of skills, “from the core competencies that any manager must have to the ability to respond quickly and calmly to crises where lives hang in the balance.” He says that his ASIS membership has given him access to the best published standards and guidelines in the field as well as to cutting-edge education. “ASIS has allowed me to tap into a large network of subject matter experts whose collegiality and support makes my work possible,” he says. “My favorite thing about my job is knowing that the work we do makes people safer.”</p><p>--<br></p><p><em>Profile by Mary Alice Davidson, Principal, Davidson Communications.</em></p>GP0|#28ae3eb9-d865-484b-ac9f-3dfacb4ce997;L0|#028ae3eb9-d865-484b-ac9f-3dfacb4ce997|Strategic Security;GTSet|#8accba12-4830-47cd-9299-2b34a4344465
https://adminsm.asisonline.org/Pages/The-Dirty-Secret-of-Drug-Diversion.aspxThe Dirty Secret of Drug Diversion<p>​Controlled substances were going missing at Hennepin County Medical Center (HCMC), and the hospital’s security investigator, William Leon, was determined to get to the bottom of it. So, at 11 p.m. on a Friday, Leon settled in for a night of observation at the Level I trauma center in Minneapolis, Minnesota. He kept a trained eye on one registered nurse who was suspected of stealing hydromorphone, an opioid pain medication, for her personal use.</p><p>HCMC has cameras set up in the medication room to monitor controlled substances, and Leon watched as the nurse began gathering prescribed medication for a patient in the emergency department. The process, called wasting, requires the healthcare worker to take a fresh vial or syringe full of medication and then dispose of the excess, leaving only the correct dosage—all with a witness present. Leon observed the nurse dispense a syringe of hydromorphone from the medicine cabinet, and, while a fellow nurse was signing off on the withdrawal, she placed the syringe in her pocket and pulled out an identical syringe, which Leon later learned contained saline. The nurse held up the saline syringe and wasted the required amount, tricking her fellow nurse, and left the room.</p><p>At this point, Leon knew exactly what was going on, and watched with increasing alarm as the nurse headed to a patient’s room in the orthopedic area of the hospital. “In that area, I knew immediately, this patient could have a broken bone—they were in intense pain and requiring this medication,” Leon says. “I see a lot of doctors standing around and I’m thinking ‘uh oh, this patient is going to get saline.’”</p><p>Leon raced to the room and saw that the doctors had given the patient the saline the nurse had brought up. “The patient was still screaming in pain and the doctor was frantically asking the nurse, ‘Are you sure you got the right dosage? Are you sure it was hydromorphone?’ and she was insisting she had,” Leon says. He called the doctor and the nurse into the hall and explained that the patient had just gotten saline and still needed the proper pain medication because the nurse had diverted the hydromorphone in the medication room. The doctor went to properly treat the patient and Leon called the nurse manager and the local sheriff’s detective in to begin an official investigation into the nurse’s actions.</p><p>Drug diversion in the United States is a nebulous problem that is widespread but rarely discussed, experts say. Whether in manufacturing plants, retail pharmacies, hospitals, or long-term care facilities, healthcare workers are stealing drugs—typically for their own personal use—and putting themselves, patients, and coworkers at risk. </p><p>“I hate to tell you, but if you have controlled substances and dispense narcotics, you’ve got diversion going on,” says Cherie Mitchell, president of drug diversion software company HelioMetrics. “It’s just a question of whether you know it or not.”</p><p>The scope and frequency of drug diversion is almost impossible to grasp, due in large part to how diversion cases are addressed. A facility that identifies a diversion problem might bring in any combination of players, from private investigators and local law enforcement to state accreditation boards or the U.S. Drug Enforcement Agency (DEA). There is no overarching agency or organization that records every instance of drug diversion in the United States.</p><p>Controlled substance management is dictated by a number of laws, including the U.S. Controlled Substances Act of 1971, which classifies substances based on how they are used and the potential for abuse. It also dictates how the substances are dispensed, and a facility may be fined if it does not comply. </p><p>The closest estimates of drug diversion rates come from people or organizations who dig up the numbers themselves. The Associated Press used government-obtained data in its investigations on drug diversion at U.S. Department of Veterans Affairs (VA) medical centers. Reported incidents of diversion at about 1,200 VA facilities jumped from 272 in 2009 to 2,926 in 2015, the data revealed, and the VA inspector general has opened more than 100 criminal investigations since last October. John Burke, president of the International Health Facility Diversion Association, extrapolated data he obtained from facilities in Ohio to estimate the presence of 37,000 diverters in healthcare facilities across the country each year. </p><p>Mitchell points out that any statistic derived from officially collected data still wouldn’t accurately reflect the extent of drug diversion in the United States. “There’s a lot of people investigators really suspected were diverters but had to be chalked up to sloppy practice due to a lack of concrete evidence, so any statistic is talking about known diverters who are fired for diversion,” she tells <i>Security Management</i>. “Even if you did have a statistic, it would be off because how do you incorporate those so-called sloppy practicers, or diverters who thought they were about to get caught so they quit on you and left? No matter what number you come to, it’s probably bigger in reality.”​</p><h4>Addiction and Diversion</h4><p>Although more people are paying attention to drug diversion due to recent high-profile cases and the current opioid epidemic in the United States, experts say they have been dealing with the same problems their entire careers. </p><p>“I can personally tell you that I dealt with the same issues 15 or 20 years ago that the healthcare arena is facing today, specifically in the drug abuse and diversion by their own hospital healthcare employees,” says Charlie Cichon, executive director of the National Association of Drug Diversion Investigators (NADDI) and a member of the ASIS International Pharmaceutical Security Council. “There are different drugs today, of course, than there were 20 years ago.”</p><p>Susan Hayes has been a private detective for healthcare facilities for more than a decade and says the opioid epidemic has magnified the drug diversion problem in recent years. “The opioid addiction in America has lit my practice on fire,” she says.</p><p>It’s no secret that opioid addiction has reached epidemic levels in the United States. In 2010, hydrocodone prescriptions were filled 131.2 million times at retail pharmacies alone, making it the most commonly prescribed medication, according to the Mayo Clinic. However, those are just the numbers that were legally prescribed—about 75 percent of people who take opioids recreationally get them from a friend or family member. According to the U.S. Centers for Disease Control and Prevention (CDC), approximately 52 people in the United States die every day from overdosing on prescription painkillers.</p><p>Healthcare workers are not immune to the draw of opioids. In fact, up to 15 percent of healthcare workers are addicted to drugs or alcohol, compared to 8 percent of the general population, according to the Mayo Clinic. </p><p>“Healthcare providers are in very stressful jobs,” Hayes says. “They all have problems. Nurses have emotional attachments to patients that they see die. Even orderlies have very stressful physical jobs, they’re lifting patients. Pharmacists can make mistakes that mean life or death. You have people that are already in very stressful situations, and now you give them access to drugs…. I think the combination is almost deadly.”</p><p>While a bottle of 30mg oxycodone tablets can sell on the street for up to 12 times its price in the pharmacy, most drug diverters are addicts using the drugs themselves. Because of this, diversion shouldn’t be considered just a security concern but a patient safety concern, Cichon says. He references several high-profile diversion cases in which the diverters used the same syringe full of medicine on both themselves and their patients, spreading bacterial infections and hepatitis. In one especially egregious case, a traveling medical technician with hepatitis C would inject himself with his patients’ fentanyl and refill the same syringe with saline, ultimately spreading the virus to at least 30 people in two states.</p><p>Unfortunately, experts acknowledge that most diverters don’t get caught until they have been diverting for so long they start to get sloppy. “The people who are your real problem are the people who are hiding in the weeds, not doing enough to get caught, and those are the ones you want to find,” Mitchell says. “The people they are finding now are the people that have the needle in their arm or somebody has reported them. You want to try to find them before that.”​</p><h4>Out of the Loop</h4><p>Hayes details the path of drugs through a hospital: a pharmacy technician orders the medication from a wholesaler, who will deliver them to the hospital pharmacy. The drugs are sorted and stocked in the pharmacy, where they will remain until they are brought up to the patient floors and stored in various types of locking medicine cabinets. When a patient needs medication, a nurse goes to the medicine cabinet and dispenses the drug for the patient. </p><p>Another ASIS International Pharmaceutical Council member—Matthew Murphy, president of Pharma Compliance Group and former DEA special agent—describes this as the closed loop of distribution. “Once a drug is outside of the closed loop, when it gets dispensed from a pharmacy or administered by a doctor, it’s no longer in the purview of DEA rules and regulations,” he explains. Drugs are most likely to be diverted during those times when they are in transit or exchanging hands, outside of the closed loop.</p><p><strong>Wholesalers.</strong> When fulfilling a pharmacy’s request for medication, wholesalers have just as much of a responsibility to notice if something is amiss as the pharmacy does. Whether it’s a retail pharmacy or a hospital pharmacy, wholesalers are responsible for cutting them off if they start to request unusually high amounts of opioids. </p><p>In 2013, retail pharmacy chain Walgreens was charged $80 million—the largest fine in the history of the U.S. Controlled Substances Act—after committing record-keeping and dispensing violations that allowed millions of doses of controlled substances to enter the black market. Cardinal Health, Walgreens’ supplier, was charged $34 million for failing to report suspicious sales of painkillers. One pharmacy in Florida went from ordering 95,800 pills in 2009 to 2.2 million pills in 2011, according to the DEA. </p><p>Hayes says the fine against the wholesaler was a wake-up call, and now suppliers use algorithms to identify unusual spikes in orders of opiates. Wholesalers can even stop the flow of medication to pharmacies if they believe diversion is occurring—which can be disastrous to a trauma center, Hayes notes.</p><p><strong>Pharmacies.</strong> To restock the shelves, pharmacy technicians compile lists of what medications they are low on to send to the wholesalers at the end of each day. Hayes notes that many pharmacies do not conduct a retroactive analysis on what is being purchased—which is why wholesalers must pay attention to any unusual changes in orders. She stresses the importance of constantly mixing up the personnel who order and stock medications. </p><p>“If you’re both ordering and putting away drugs, that’s a bad thing because you can order six bottles when you only need five and keep one for yourself,” Hayes notes. </p><p>Similarly, it is important to rotate who delivers the drugs to the patient floors. “John the technician has been taking the drugs up to the floors for the last 20 years,” Hayes says. “Well gee, did you ever notice that John drives a Mercedes and has two boats and a house on Long Island? He makes $40,000 a year, did you ever do any investigation into why?”</p><p><strong>On the floor. </strong>Experts agree that the most egregious diversion occurs during the wasting and dispensing process in scenarios similar to the incident Leon witnessed at HCMC. Mitchell explains that all hospitals have different wasting procedures—some require nurses to waste the medication immediately, before they even leave the medication rooms, while others may have a 20-minute window. Other hospitals may prohibit nurses from carrying medication in their pockets to prevent theft or switching. ​</p><h4>Investigations</h4><p>Any company involved with controlled substances, whether manufacturing, distributing, or dispensing, must be registered with the DEA and must adhere to certain rules and regulations—which aren’t always easy to follow.</p><p>Murphy, who worked for the DEA for 25 years, now helps companies follow mandates he calls “vague and difficult to interpret.” For example, DEA requires anyone carrying controlled substances to report “the theft or significant loss of any controlled substance within one business day of discovery.”</p><p>“This hospital had 13 vials of morphine that ‘went missing’ and someone called me in to find out why,” Hayes says. “They asked me, ‘Are 13 vials substantial or not? Do I really need to fill out the form?’ I counsel them on what’s substantial because the language is very loose.”</p><p>Depending on the frequency or significance of these or similar forms, the DEA may open an investigation, Murphy explains. “DEA will look at these recordkeeping forms and determine if in fact everything has been filled out correctly, that they have been keeping good records,” he says. “If DEA determines that they are lax or have not been adhering to requirements, there could be anything from a fine to a letter of admonition requiring corrective actions.” In more serious cases, DEA could revoke the registration because the activity or behavior was so egregious that it was determined that the facility is not responsible enough, Murphy explains. If a facility loses its DEA registration, it cannot dispense controlled substances.</p><p>However, DEA does not get involved in every suspected case of diversion. “There are only so many DEA diversion investigators, so they have to prioritize what they get involved with,” Murphy says. “It has to be pretty egregious for them to get involved to seek a revocation or fine.”</p><p>That’s where people like Hayes come in. “They want me to come in instead of DEA or law enforcement,” she explains. “I’m a private citizen, I understand law enforcement procedures, and I can help them get at the root of the problem before they call in law enforcement.” </p><p>After an investigation into a diverter is opened, it is unclear what happens to the offender. Hayes says that she typically gathers evidence and gets a confession from diverters, at which point her client calls in law enforcement to arrest them. Leon, who was in charge of diversion in­vest­igations at HCMC for 20 years before becoming a consultant for HelioMetrics, was able to investigate but not interview suspected diverters. He tells <em>Security Management</em> that he would call in a sheriff’s detective to interview the suspect.</p><p>Although most diverters are fired when their actions are discovered, they are not always arrested—it’s often at the discretion of their employer. Depending on the diverter’s role, state accreditation boards—such as those that license nurses and pharmacists—would be notified and could potentially conduct their own investigations. </p><p>Cichon cautions that some hospitals hoping to avoid bad press and DEA scrutiny may look for loopholes. “We found out through the course of investigations that if someone resigns and was not sanctioned it may not be a reportable action,” he says. “If we allow this person to resign rather than take action against him, then we don’t have to report it.”</p><p>Murphy notes that DEA typically has no role in individual cases of diversion. “If the diverter has a license from one of those state agencies, usually it’s required that they be reported, and then it’s up to the board how they proceed with the personal license of the individual,” he says. The DEA doesn’t regulate the personnel—that’s up to the state and the facility. </p><p>Cichon notes that the lack of standards when addressing diversion makes it more likely that offenders could slip through the cracks and move on to continue diverting drugs at another facility. “Unfortunately, there are different laws and statutes in every state that set up some sort of reporting requirements,” he says. “There are medical boards, nursing boards, pharmacy boards, and not every worker even falls under some sort of licensing board for that state.” ​</p><h4>Staying Ahead</h4><p>Due to the stigma of discovering diverters on staff, many hospitals just aren’t preparing themselves to address the problem proactively, Cichon explains.</p><p>“This is something that is probably happening but we’re not finding it,” he says. “The statistics I’ve seen at hospitals that are being proactive and looking at this are finding at least one person a month who is diverting drugs in their facility. If a 300-bed hospital is finding one person a month, and Hospital B has the same amount of staff and beds and is finding nothing…”</p><p>NADDI has been providing training for hospitals to develop antidiversion policies. Cichon notes that many hospitals throughout the country have no plan in place to actively look for diverters. “As big as the issue is, many of them are still just not being that proactive in looking at the possibility that this is happening in their facility.”</p><p>Cichon encourages a team approach to diversion that acknowledges diversion as a real threat. “Not just security personnel should be involved with the diversion aspect,” he says. “Human resources, pharmacy personnel, security, everyone is being brought into this investigation, because the bigger picture is patient safety. The diverting healthcare worker typically isn’t one who’s going to be selling or diverting his or her drugs on the street, but they are abusing the drugs while they are working.”</p><p>Leon worked hard on diversion prevention at HCMC after discovering a surprising pattern: almost all of the diverters he investigated wanted to be caught. “What got me on this path of prevention was observing the nurses as they would admit to what they did,” he explains. “More often than not the nurses would say, ‘I wanted somebody to stop me. I needed help, didn’t know how to ask for it, and I was hoping somebody would stop me.’ That’s pretty powerful when you’re sitting there listening to this on a consistent basis.”</p><p>Leon implemented mandatory annual training for everyone in the hospital—from food service workers to surgeons—to recognize the warning signs of drug diversion. “If a nurse or anesthesiologist or physician is speaking with you and telling you they are having these issues, then you should say something,” Leon explains. “It’s not doing the wrong thing—you’re helping them, and that’s the message we sent out. Look, these individuals are not bad individuals. Something happened in their lives that led them down this path.”</p><p>Leon also had cameras installed throughout the hospital that allowed him to observe diversion but also kept his investigations accurate. “We had a nurse who was highly suspected of diverting,” he says. “With the cameras I was able to show that she wasn’t diverting, just being sloppy. The employees appreciated the cameras because it showed they weren’t diverting medication, they just made a mistake.”</p><p>Over time, HCMC personnel became more comfortable coming forward with concerns about their coworkers. Before the facility started the annual training, Leon caught at least one diverter a month. Before he retired, he says, that number had dropped to one or two a year.</p><p>“The success of our program at HCMC was the fact that we paid more attention to educating rather than investigating,” Leon says. “You have to keep those investigative skills up, but you have to spend equal amount of time on prevention and awareness.”</p><p>Mitchell points to algorithmic software that can identify a potential diverter long before their peers could. Taking data such as medicine cabinet access, shift hours, time to waste, and departmental access allows software to identify anomalies, such as a nurse whose time to waste is often high, or a doctor who accesses patients’ files after they have been discharged. </p><p>“Most people are using the logs from the medicine cabinets trying to do statistical analysis,” Mitchell explains. “You find out 60 days or six months later, or you don’t see that pattern emerge by just using one or two data sets. That doesn’t help. The goal is to identify these people as quickly as possible so they are no longer a risk to themselves or the patients or anyone they work with.”</p><p>Murphy encourages facilities to be in full DEA compliance to mitigate diversion. “If somebody wants to steal or becomes addicted, they are going to find a way to do it, and sooner or later they are going to get caught, but then there’s a problem because the hospital has to work backwards to determine how much was stolen and reconcile all that,” he says. He also notes the importance of following up internally on each diversion case and figuring out what went wrong, and adjusting procedures to address any lapses. </p><p>“Every entity that has a DEA program should have diversion protocols in place because if they don’t they are playing Russian roulette with theft and loss and their DEA registration,” Murphy says.  ​</p>GP0|#cd529cb2-129a-4422-a2d3-73680b0014d8;L0|#0cd529cb2-129a-4422-a2d3-73680b0014d8|Physical Security;GTSet|#8accba12-4830-47cd-9299-2b34a4344465