(PSC) Exam V1– Defense Counterintelligence
and Security Agency (DCSA) SPeD Physical
Security – 2026/2027 Edition – Verified
Questions and Answers
What are some techniques used in performing a security survey? (6)
Observing,
Questioning,
Analyzing,
Verifying,
Investigating,
Evaluating.
What is the requirements document?
A major result of the planning phase, the requirements document identifies the main reasons for
implementing new measures or upgrading older systems.
What is the purpose of a security survey?
Determine and document the current security posture,
Identify deficiencies and excesses in existing security measures,
Compare the current posture with a determination of the appropriate level of security,
Recommend improvements in the overall situation.
,What are three common approaches to a physical security assessment?
Outside-Inward approach,
Inside-Outward approach,
Functional approach.
Which approach to physical security assessment occurs when an assessment team takes the role
of perpetrator and begins outside the facility focusing on the successive layers of security?
Outside-Inward approach.
Which approach to physical security assessment occurs when an assessment team takes the role
of defender and works its way from the asset out toward the outer perimeter?
Inside-Outward approach.
Which approach to physical security assessment occurs when an assessment team evaluates
security functions and disciplines and collates the findings?
Functional (Security Discipline) approach.
What are five criteria of a good security survey report?
Accuracy,
Clarity,
Conciseness,
Timeliness,
Slant or pitch.
,What are the objectives of physical access control? (6)
Deter potential intruders,
Distinguish authorized from unauthorized people,
Delay and prevent intrusion attempts,
Detect intrusions and monitor intruders,
Trigger appropriate incident response by communicating to security officers and police,
Deny by opposing or negating the effects of an overt or covert actions.
What is an asset?
Anything of tangible or intangible value (people, property, information) to the organization.
What is risk analysis?
A process for identifying asset values, and vulnerabilities to ascertain risks.
How is an asset's critically determined?
An asset's criticality is based on the mission and goals of the organization and how the company
would recover in the event that the asset is no longer available.
What are the three steps to identifying a company's assets?
Define and understand the company's primary business functions and processes,
Identify site and building infrastructure and systems,
, Identify the company's critical tangible and intangible assets.
What two types of costs should be considered when valuing an asset?
Direct costs and indirect costs.
What are some factors to consider in valuing assets?
Injuries or deaths related to facility damage,
Asset replacement costs,
Revenue loss due to lost functions,
Availability of backups and system redundancy,
Availability of replacements,
Critical support agreements in place,
Critical or sensitive information value,
Impact on revenue and reputation.
When determining asset values, what are some direct costs?
Financial losses (including value of goods lost),
Increased insurance premiums,
Insurance deductibles,
Lost business,
Labor expenses incurred as a result of the event,
Management time dealing with the event,
Punitive damage awards not covered by insurance.