guide– Defense Counterintelligence and Security Agency (DCSA)
SPeD Physical Security – 2026/2027 Edition – Verified
Questions and Answers
- Each SAPF, T-SAPF, SAPCA, SAPWA, and SAPTSWA will have procedures for identification
and control of visitors seeking physical access in accordance with this volume and Reference (f).
_______ and __________ should be used to the maximum extent.
Personal introduction and identification
- When all individuals within a SAPF, T-SAPF, SAPCA, SAPWA, and SAPTSWA cannot be
personally identified, a badging system may be required by the PSO. This normally occurs when
a SAPF, T-SAPF, SAPCA, SAPWA, and SAPTSWA hosts more than ______ people.
25
When a badge system is considered necessary, it will be documented in the ______________and
address topics such as __________________
- standard operating procedures (SOPs)
- badge accountability, storage, disposition, destruction, format, and use.
If card readers are used in conjunction with badges and a means exists to lock out lost, unused,
and relinquished badges, the PSO or GSSO may negate the requirements in this section for
_________________
badge inventory, accountability, and destruction.
,When not occupied, SAPFs and T-SAPFs will be alarmed in secure mode and secured with an
approved General Services Administration (GSA) ___________ combination lock in accordance
with Federal Specification __________.
- FF-L2740A
- FF-L 2740B
Access control to a SAPCA will be accomplished by _________________control devices only.
_____________________will not be installed on SAPCA doors and independent alarm systems
will not be installed in a SAPCA
- mechanical or electronic access
- Spin-dial combination locks
SAP Construction Procedures - SAO
§ (1) Review and approve or disapprove the design concept, construction security plan (CSP),
and final design for each construction project before the start of construction in accordance with
Reference (f) and this volume.
§ (2) Physically inspect a SAPF, T-SAPF, SAPCA, SAPWA, and SAPTSWA before accreditation
in accordance with construction standards in Reference (f) and this volume.
§ (3) Provide construction advice and guidance as required.
§ (4) Inspect SAPFs, T-SAPFs, SAPCAs, SAPWAs, and SAPTSWAs at an interval as
determined by the CA SAPCO and withdraw accreditation when situations dictate.
§ (5) Approve and document mitigations commensurate with the standards in Reference (f).
§ (6) Recommend waivers of physical security safeguards to the Director, CA SAPCO.
§ (7) Ensure mitigating strategies are implemented and documented in the CSP in Reference (f)
when using non-U.S. citizen workers.
§ (8) Request construction surveillance technicians to supplement site access controls, implement
screening and inspection procedures, and monitor construction and personnel in accordance with
Reference (f).
, SAP Construction Procedures - site security manager
§ (1) Advise the SAO of the potential for variation from the requirements of this volume.
§ (2) In consultation with the SAO, develop a CSP regarding implementation of the standards of
this volume and Reference (f). The CSP will include a plan of action and milestones required to
document the SAPF, T-SAPF, SAPCA, SAPWA, and SAPTSWA construction from start to
finish.
§ (3) Conduct periodic security inspections for the duration of the SAPF, T-SAPF, SAPCA,
SAPWA, and SAPTSWA construction to ensure compliance with the CSP.
§ (4) Prepare necessary waiver requests and forward to the SAO for further processing.
§ (5) Investigate and document security violations or deviations from the CSP. Notify the PSO of
security violations and the SAO of deviations from the CSP within 24 hours of incident
detection.
§ (6) Implement physical access control measures in accordance with Reference (f).
SAP Construction Procedures - Certified TEMPEST technical authority (CTTA)s
§ (1) Review construction or renovation plans to determine if TEMPEST countermeasures are
required and recommend solutions. To the maximum extent practicable, TEMPEST mitigation
requirements will be incorporated into the design.
§ (2) Provide the SAO with documented results of the review with recommendations.
Accreditation
. The SAO will inspect any SAP area before accreditation. Periodic re-inspections will be
conducted based on threat, physical modifications, sensitivity of SAPs, and past security
performance, but will be conducted no less frequently than every 3 years. Inspections, announced
or unannounced, may occur at any time. The current FFC will be reviewed during inspections to
ensure continued compliance. Technical surveillance countermeasures (TSCM) evaluations may
be required at the discretion of the SAO, as conditions warrant, and will be implemented in
accordance with DoDI 5240.05 (Reference (h)). Inspection reports will be retained within the
SAPF, T-SAPF, SAPCA, SAPWA, and SAPTSWA and by the SAO.