Physical Access Control Systems

A physical access control system restricts who or what can enter a secured area, using defined rules and standards to enforce authorization.

2 slides · 1 min read · Domain 5

Slide 1

Physical access control systems (PACSs) are designed to regulate the movement of people, materials, and equipment through defined physical spaces, such as entryways or openings in a secured perimeter.

Specific authorization rules must be applied to authenticate the identity of any entity attempting to pass through an entryway, whether it is a user ID, shipment manifest and related information, device ID, or property tag identifier. Requirements for PACS are outlined in standards such as NIST SP 800-53, Rev. 5—Security and Privacy Controls for Information Systems and Organizations.

In addition to controlling access to areas within a facility, PACSs can also restrict or permit physical access to specific devices, such as endpoints, servers, wiring closets, or other hardware components. For example, a server rack might be configured with two separate combination locks, each requiring a different individual to unlock, thereby enforcing dual control. This approach depends on effective administrative procedures to ensure that no single staff member has knowledge of both combinations.

Much of the art and science behind PACS is closely tied to the design and construction of physical environments. The acronym PACS may refer broadly to this category of security systems, or more specifically to a defined set of policies, procedures, and standards (e.g., NIST SP 800-53, Rev. 5), used by U.S. government agencies and their contractors. The context in which the term appears should help clarify its intended meaning and reinforce the importance of understanding PACS, even for organizations not directly involved in the U.S. federal marketplace.

Test this domain