التفاصيل

Security Service Management System Certification

GB/T 42765-2023

01

مقدمة الخدمة

Security service management system certification is an authoritative evaluation mechanism for security service organizations to establish, implement, maintain and continuously improve their management system capabilities. It aims to help organizations improve their security service capabilities and management level through systematic and scientific management methods, effectively prevent and control risks during operation, and ensure to provide customers with high-quality and standardized security services. This certification is mainly based on GB/T 42765-2023 "Guidelines for Requirements and Use of Security Service Management System", which comprehensively examines the management and control capabilities of security service organizations in the whole process of organizational environment, leadership, planning, support, operation, performance evaluation and improvement, and finally grants the organization a certificate with a validity period of three years.

Certification core content

The certification of security service management system revolves around the systematic management of security services, with the following dimensions as the core:

Organizational environment and leadership: understand the organization and its internal and external operating environment, identify the needs and expectations of stakeholders, and determine the scope of management system; Top management's commitment and leadership, formulation of strategic policies and objectives, and clarification of post responsibilities and authority.

Risk management and planning: establish a risk assessment framework to identify, analyze and evaluate potential risks in the process of security services; According to the risk, formulate countermeasures, plan the plan to realize the policy and objectives, and incorporate the measures into the management system process.

Support process: resource allocation guarantee, personnel ability evaluation and training, security service awareness training, internal and external communication mechanism, written information control (system documents, records, etc.)

Operation control: planning and control of operation, establishment of code of conduct and ethics, use and authorization management of defense equipment, guarantee of key resources, and quality inspection of security service (guard, guard, patrol, escort, technical prevention, etc.).

Performance evaluation: establish an appropriate index system to monitor, measure and analyze the performance of security services; Compliance evaluation, internal audit and management review

Improvement mechanism: identification and correction of unqualified items, continuous improvement measures (PDCA cycle), and changing the security service management plan when necessary.

Certification process

Security service management system certification is usually divided into the following stages:

Application and acceptance: submit the application materials (business license, qualification certificate, system documents, internal audit/management review records, etc.), and the certification institution will conduct application review to confirm that the organization has the basic conditions for certification (the system has been in operation for 3 months, the internal audit and management review have been completed, there is no record of violation of laws and regulations within one year, and it has not been included in the list of seriously untrustworthy enterprises).

First-stage audit (document audit): conduct document audit and site preparation evaluation, review the compliance of system documents with GB/T 42765 standards, understand the basic situation of the organization, main risks and compliance with laws and regulations, and confirm the adequacy of the second-stage audit preparation.

The second stage audit (on-site audit): conduct on-site audit, including personnel interview, document record inspection, service on-site inspection (guard, patrol, monitoring center, etc.), effectiveness verification of security service control measures, evaluation of compliance and effectiveness of the system, and identification of nonconformities.

Rectification and review: for the nonconformities found in the audit, the organization shall complete the rectification within the specified time limit and submit the evidence, which will be reviewed by the audit team.

Certification decision and certification: certification certificate will be issued after the technical review is passed, confirming that the organization meets the standard requirements, and the certificate is valid for three years.

Supervision and audit: conduct supervision and audit once a year after obtaining the certificate (within 12 months after certification for the first time, and the interval between two supervision shall not exceed 15 months) to confirm that the system continues to meet the certification requirements.

Re-certification audit: Re-certification audit is conducted before the certificate expires, and the certification qualification is extended, usually for three years.

Certification value

Improve the management level of security service: help security practitioners adopt advanced, systematic and scientific management techniques and methods, and establish a management system covering the whole process of personnel recruitment, training, dispatch, supervision and emergency response, so as to significantly improve the security service capability and management level.

Enhance the market competitiveness: the certification certificate can be used as an "objective quantitative evaluation factor" in the bidding activities of government procurement, military procurement, enterprise procurement security or property services, so as to gain extra points for bidding and increase the chances of winning the bid.

Reduce operational risk: through systematic risk assessment and management framework, prevent and avoid risk damage in the operation of the organization as much as possible, reduce the probability of security incidents, and protect the interests and safety of customers.

Meet the requirements of laws and regulations: help organizations meet the requirements of laws and regulations such as the Regulations on the Administration of Security Services, systematically implement relevant laws and standards on security services, and reduce legal risks.

Enhance customer trust and brand reputation: through independent third-party certification, prove to stakeholders that the organization has the ability to provide high-quality security services, and enhance the trust of customers, partners and regulatory agencies.

Promote international integration: GB/T 42765 revised and adopted the international standard ISO 18788:2015 to provide reference and help for Chinese security enterprises to connect with internationalization and specialization, and promote the international integration of security services.

Guide the high-quality development of the industry: help security companies identify the key links and risk factors of quality control, continuously improve quality management, ensure the effective operation of the management system, and guide the development of security services in the direction of standardization and standardization.

03

عملية الخدمة

04

ملف القواعد

هل تحتاج إلى هذه الشهادة؟

اتصل بنا