SDMmag logo
search
Go to Ask SDM AI
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
SDMmag logo
  • NEWS
  • PRODUCTS
  • TOPICS
    • Access Control & Identification
    • Integration & Network Solutions
    • Life Safety & Fire Alarm
    • Monitoring
    • Smart Home
    • Trends & Industry Issues
    • Video Solutions
  • COLUMNS
    • Digital Shuffle
    • Editor's Angle
    • Insider News & Business
    • Integration Spotlight
    • Marketing Madmen
    • Security & the Law
    • Security Comings & Goings
    • Security Networkings
    • Technology @ Work
    • Technology Solutions & Skills
    • SIA Waypoints
    • Cybersecurity Chronicle
  • EXCLUSIVES
    • Annual Industry Forecast
    • Dealer of the Year
    • Project of the Year
    • SDM 100
    • State of the Market Series
    • Systems Integrator of the Year
    • Top Systems Integrator Report
    • TMA Excellence Awards
  • BLOG
  • MEDIA
    • Videos
    • Podcasts
    • Polls
    • White Papers
  • EVENTS
    • Industry Calendar
    • Webinars
  • MORE
    • Classified Ads
    • Newsletters
    • SDM Store
    • State of Security eBook
    • Sponsored Insights
  • BUYERS GUIDE
    • Buyers Guide
    • Take a Tour
  • EMAG
    • eMagazine
    • Archive Issues
    • Monitoring Today
    • Advertise
  • SIGN UP!

SDM Industry Voices

6 Steps to Improve Integrators’ Cybersecurity Skills

By John Nemerofsky
John Nemerofsky
April 15, 2022

Most security integrators lack expertise in defending against cybersecurity attacks on a client’s network. That’s slowly changing, but for now, it’s difficult for integrators to justify the costs of training cybersecurity experts or to hire experienced experts from other employers. Integrators often rely on a client’s IT department for cyber issues. 

However, that doesn’t absolve integrators from playing a vital role in protecting client networks with basic cyber hygiene. Here’s a look at six steps physical security integrators can and should take immediately. 

Know what’s there – Providing network and systems integrity begins with an accurate inventory of what security devices are installed and where. Remove or disable any readers, cameras or other devices no longer needed and work with your client to upgrade aging infrastructure and systems. Don’t let forgotten security equipment become an entry point for hackers.

Change passwords – Robust passwords are the first line of defense protecting any network device from enabling a hacker to access company records and operational data. One weak password is all that’s needed for hackers to create data breaches and launch ransomware attacks. For installation simplicity, manufacturers ship products with passwords such as 12345678. Immediately following installation, integrators must create strong passwords combining long strings of upper- and lower-case letters, numbers and special characters. Don’t use words found in dictionaries or letters and numbers that are sequential on a keyboard. Then change passwords at least quarterly or anytime a disgruntled employee with widespread network access leaves the job. Also, create firmware passwords to prevent unauthorized resetting or rebooting of devices. 

Update software – Hackers constantly look for ways to penetrate security devices’ operating software. Unpatched software is a leading factor in successful cyberattacks. When manufacturers locate potential cybersecurity flaws, they provide patches through software updates. Keep abreast of upgrades to security devices and upgrade client software as soon as possible. 

Gain certifications – Top device manufacturers offer certification classes for integrators to ensure security equipment is installed and maintained correctly. These classes for technicians don’t have deep dives into cybersecurity. However, proper installation and maintenance leave less exposure for hackers. Also, many clients look for manufacturers’ certifications when selecting an integrator. 

Encourage your technicians and project managers to pursue industry certifications offered by ASIS, the Security Industry Association and others. Certifications including the Physical Security Professional (PSP), Physical Security Certification (PSC) and the Certified Security Project Manager (CSPM) provide cybersecurity elements. SIA’s Security Industry Cybersecurity Certification (SICC) is aimed at a wide gamut of professionals, including lead service technicians and installers and project managers, providing them with a deeper understanding of physical security and cybersecurity convergence. 

Looking for quick answers on security topics? Try Ask SDM, our new smart AI search tool. Ask SDM →

Use multifactor authentication – Certain areas of a facility, such as records rooms and security operations centers, require a higher level of security to protect valuable data. Adding multifactor authentication goes beyond an access reader and may be as simple as adding a keypad for authorized employees to enter a unique code. Better yet, installing and integrating a touchless facial or iris reader into the existing access control system dramatically increases security as, unlike a code, biometrics can’t be shared.

Migrate to OSDP – Open Supervised Data Protocol is the current standard for access control. It has become an international standard with the backing of SIA and the International Electrotechnical Commission. It’s time for OSDP to replace the 45-year-old Weigand protocol that offers no encryption between the reader and door controllers. Hackers can easily capture the Weigand signal and create a clone access card. OSDP, combined with modern credentials, provides secure end-to-end deployments with AES-128 encryption. 

Also, OSDP is required for integrators working with organizations requiring the highest levels of security, such as the federal government and data centers. OSDP meets the requirements of the Federal Identity, Credential and Access Management (FICAM) guidelines for secure bi-directional communication. Also, the standard integrates with biometric technologies for multifactor authentication. It’s an integrator’s responsibility to help clients migrate to OSDP for greater security.

Three other quick cybersecurity suggestions include:

  • Advise your clients to limit the number of users with administrative privileges. 
  • Users and programs should only have the necessary privileges to complete their tasks. (Principle of Least Privilege)
  • Help clients develop a written presentation to raise employee awareness of cyber hygiene. 

It’s the responsibility of today’s integrator to become more cyber-savvy. Our clients depend on us to support their IT departments and ensure the security function doesn’t provide an easy target for hackers.


KEYWORDS: cyber security OSDP Sage Integration

Share This Story

John

John Nemerofsky is chief operating officer at SAGE Integration, and focuses on operations and company growth strategies. He is the former president of SST, a company he grew to $140 million in yearly sales with offices in New York, New Jersey, Washington, D.C., and Maryland. In 2009, he became the vice president of Stanley Security Systems.

Blog Topics

SDM Editors

Industry Voices

Recent Comments

Wonderful Content! The way you describe the things...

amazing and very impressive dear check...

SOC Teams Protect Multi-Building Campuses

Smart Home Revolution

Benefits of Implementing 802.3bt

Blog Roll

Central Station Alarm Association

Electronic Security Association

Security Industry Association

Security-Net

Manage My Account
  • SDM Newsletters
  • Online Registration
  • eMagazine Subscriptions
  • Subscription Customer Service
  • Manage My Preferences

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the SDM audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of SDM or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • Doctor examining child patient with mother present in medical clinic
    Sponsored byHID

    The Human Side of Hospital Security: How Modern Visitor Management Protects People First

Popular Stories

Video surveillance camera

Why Video Health Monitoring Is a ‘No Brainer’

ESA Board of Directors Q2 26 Elections

Electronic Security Association Announces 2026 Board of Directors Election Results

TMA & SDM Logos

Becklar, Elite & Puget Win 2026 TMA/SDM Monitoring Center Excellence Awards

SDM Dealer of the Year 2026 Promotion

Poll

What’s the most promising trend in the industry?

What’s the most promising trend in the industry?
View Results Poll Archive

Products

Physical Security Assessment Handbook An Insider’s Guide to Securing a Business

Physical Security Assessment Handbook An Insider’s Guide to Securing a Business

See More Products
SDM 100 2026 Rankings
×

Be in the forefront of security intelligence when you receive SDM.

Join over 10,000+ professionals when you subscribe today.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Directories
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2026. All Rights Reserved BNP Media, Inc. and BNP Media II, LLC.

Design, CMS, Hosting & Web Development :: ePublishing