Security Management for Healthcare Facility Protection Training Course
| Course code | SD-SM-015 |
|---|---|
| Duration | 5 days |
| Level | Intermediate to Advanced |
| Category | Security Management |
| Delivery | Classroom or live online |
| Language | English |
| Certificate | Certificate of completion |
Course overview
Healthcare facilities must protect patients, staff, visitors, medicines, records and critical services while remaining accessible to people in distress. Security managers face threats that rarely occur in isolation: violence against staff, infant or patient abduction concerns, unauthorised access to clinical areas, drug diversion, aggressive visitors, cyber-physical disruptions and emergency incidents. Decisions must balance duty of care, clinical workflow, privacy, safeguarding and legal obligations. This course equips participants to build defensible, proportionate security arrangements for hospitals, clinics, laboratories and other healthcare estates.
Participants learn to assess healthcare security risks, identify vulnerabilities across public, clinical and restricted areas, and select controls that work in real operating conditions. The course covers security governance, threat and risk assessment, access control zoning, CCTV and alarm strategy, violence prevention, visitor management, incident command, evidence handling, emergency coordination and security performance measurement. Participants practise applying ISO 31000 risk methods, Hospital Incident Command System principles and life-safety requirements to realistic healthcare scenarios.
Delivery combines instructor-led technical sessions with facility-security case studies, tabletop incident exercises, control-design workshops and peer challenge sessions. Participants work through a simulated healthcare site, analyse its risk register and security incidents, then build an improvement plan. They leave with a practical Healthcare Facility Security Management Plan containing a risk profile, zoning model, control recommendations, incident escalation workflow, implementation priorities and measurable assurance indicators for presentation to operational and executive stakeholders.
The course is designed for experienced security, facilities, safety and resilience personnel who need to move from reactive guarding arrangements to integrated healthcare security management. It is equally relevant to managers responsible for approving capital controls, contracted security services or hospital-wide protective-security policies.
Course objectives
By the end of this course, participants will be able to:
- Conduct a healthcare facility security risk assessment using ISO 31000 likelihood, consequence and treatment criteria
- Map public, clinical, restricted and critical areas into a documented security zoning and access-control model
- Design proportionate CCTV, intrusion detection, duress alarm and visitor-management control specifications
- Develop a workplace violence prevention process incorporating behavioural indicators, reporting routes and response protocols
- Apply Hospital Incident Command System principles to security-led emergency and lockdown coordination
- Investigate security incidents using evidence preservation, witness documentation and corrective-action methods
- Construct security performance indicators, audit schedules and management-review reporting dashboards
- Produce a Healthcare Facility Security Management Plan with prioritised controls, owners, costs and implementation milestones
Benefits of attending
For you
- Build the credibility to brief clinical leaders and executives on healthcare-specific security risk decisions
- Gain a repeatable method for converting incident patterns into funded control improvements
- Strengthen capability to lead violence, access-control and emergency-security reviews across clinical departments
- Create evidence-based specifications for security technology and contracted guarding services
- Leave with a portfolio-quality Healthcare Facility Security Management Plan for use in senior-role applications
For your organisation
- Establish a consistent risk-assessment process for clinical, public and critical healthcare areas
- Reduce exposure to staff violence, unauthorised access, theft and disruption through prioritised controls
- Improve coordination between security, clinical operations, facilities, safeguarding and emergency teams
- Make stronger capital and service-provider decisions using documented control requirements and risk rationale
- Provide leadership with measurable security assurance indicators, audit evidence and accountable action plans
Target competencies
Who should attend
- Healthcare Security Managers — who must protect complex clinical estates while maintaining safe patient access
- Hospital Facilities and Estates Managers — who specify, operate or renew physical security infrastructure
- Health, Safety and Environment Managers — who coordinate violence prevention, emergency preparedness and assurance activities
- Clinical Operations Managers — who need security controls that support, rather than obstruct, patient care pathways
- Emergency Preparedness and Business Continuity Managers — who integrate security incidents into hospital command arrangements
- Contract Security Managers — who must translate healthcare risks into effective guard-force procedures and service levels
Requirements and prerequisites
Participants should have practical experience in healthcare operations, physical security, facilities management, safety, emergency planning or a related supervisory role. They should understand basic concepts such as risk likelihood and consequence, incident reporting, access control, CCTV and emergency procedures. Familiarity with their organisation’s site plans, security policies, incident data or contractor arrangements will help them apply the exercises directly. A laptop with spreadsheet and document-editing capability is recommended for workshop materials. Prior certification in security management, engineering expertise, software configuration skills and legal-specialist knowledge are not required.
Training methodology
The instructor uses healthcare-specific scenarios rather than generic corporate-security examples. Participants analyse hospital floor plans, incident logs, visitor flows and control failures; apply risk scoring in small teams; and test decisions through violence, lockdown and unauthorised-access tabletop exercises. Short technical briefings frame each method, followed by facilitated workshops in which participants draft usable artefacts. Peer review challenges assumptions about clinical access, patient dignity and operational practicality. The final day is dedicated to assembling and presenting an implementation-ready Healthcare Facility Security Management Plan.
Course outline
Day 1: Healthcare security risk and governance
- Healthcare threat landscape: violence, theft, diversion, intrusion and targeted harm
- Security governance roles across clinical operations, facilities, safeguarding and contracted services
- ISO 31000 risk assessment process for healthcare facilities
- Asset, people and service criticality classification
- Risk appetite, tolerability criteria and control-treatment selection
- Security incident data analysis and trend identification
- Legal, privacy and duty-of-care considerations in healthcare security
Workshop: Participants complete a risk register for a simulated hospital using incident data, site conditions and defined risk criteria.
Day 2: Physical protection and secure clinical access
- Security zoning for public, semi-restricted, restricted and critical areas
- Access-control permission models for staff, contractors, patients and visitors
- Visitor management workflows and identity-verification checkpoints
- CCTV coverage design, camera placement and evidential recording requirements
- Duress alarms, panic buttons and response-routing architecture
- Intrusion detection, perimeter protection and after-hours security arrangements
- Security design considerations for emergency departments, pharmacies and behavioural health units
Workshop: Participants produce a security zoning map and control matrix for a hospital campus plan, identifying gaps and treatment priorities.
Day 3: People protection, violence prevention and incident investigation
- Workplace violence risk factors in patient-facing healthcare settings
- Behavioural threat indicators and staff escalation pathways
- De-escalation boundaries, security intervention and clinical coordination
- Lone-worker protection and mobile-response procedures
- Patient, infant and vulnerable-person protection safeguards
- Incident scene management, evidence preservation and witness documentation
- Root-cause analysis and corrective-action tracking after security events
Workshop: Teams investigate a simulated emergency-department assault and produce an incident report, causal analysis and corrective-action plan.
Day 4: Emergency security operations and organisational resilience
- Hospital Incident Command System structure and security function roles
- Lockdown, shelter-in-place, evacuation and controlled egress decision criteria
- Security coordination during mass-casualty and infectious-disease events
- Protection of critical utilities, medical supplies and pharmaceutical stores
- Communication protocols for staff, visitors, police and emergency services
- Business continuity dependencies and security recovery priorities
- Tabletop exercise design, observation methods and after-action reporting
Workshop: Participants run a tabletop response to an armed-threat and access-disruption scenario, producing an incident action outline and after-action findings.
Day 5: Assurance, investment planning and security management plans
- Security policies, standard operating procedures and post orders
- Security technology and guarding-service requirement specifications
- Supplier oversight, service-level measures and contract-performance reviews
- Security audit methods, compliance checks and control testing
- Key performance indicators for incidents, response, access and assurance
- Risk-based investment prioritisation, cost justification and implementation roadmaps
- Executive reporting and management-review presentation techniques
Workshop: Participants assemble and present their Healthcare Facility Security Management Plan, including priorities, owners, milestones and assurance measures.
Tools & standards covered
ISO 31000:2018 Risk Management Guidelines, ISO 22320:2018 Emergency Management, NFPA 101 Life Safety Code, Hospital Incident Command System (HICS)
A typical training day
| 08:30 – 10:30 | First session |
| 10:30 – 10:45 | Refreshment break |
| 10:45 – 12:30 | Second session |
| 12:30 – 13:30 | Lunch and networking |
| 13:30 – 15:00 | Third session |
| 15:00 – 15:15 | Refreshment break |
| 15:15 – 16:30 | Workshop and daily review |
Live online deliveries follow the same structure in the East Africa Time zone, with shorter screen blocks and longer breaks.
What the fee includes
- Instruction by a practitioner facilitator
- Full course workbook and materials
- Exercise files, templates and case studies
- Certificate of completion
- Refreshments and lunch (classroom deliveries)
- Post-course application plan
- Facilitator follow-up on request
- Group rates from five participants
How you can take this course
Classroom
Scheduled sessions in Nairobi, Mombasa, Kigali, Dar es Salaam, Dubai and Cape Town.
Live online
The same facilitator and materials, delivered live for distributed teams and individuals.
In-house
Delivered privately for your team, at your offices or a venue of your choice, tailored to your context. Request a proposal.
Certification
Participants who complete the full five days receive the Skillset Development Certificate of Completion, stating the course title, course code, dates and delivery format — suitable for professional-development records and employer reimbursement.
Frequently asked questions
Upcoming sessions
New dates are being scheduled. Ask us about the next session or an in-house delivery for your team.
Ask about datesGroup of 5+?
Request in-house delivery or group rates →Related courses in Security Management
Avigilon Control Center Video Security Management Training Course
Security teams need more than live camera views to manage incidents, protect people, and meet evidential, privacy, and operational requireme…
ISO 28000 Security Management for Supply Chain Resilience Training Course
Supply-chain disruption is often treated as an operational problem until cargo theft, tampering, unauthorised access, supplier failure, cybe…
Genetec Security Center for Physical Security Operations Training Course
Physical security teams need to detect, verify, coordinate and document incidents without losing time between cameras, access-control events…
Security Management for Corporate Security Managers Training Course
Corporate security managers are expected to protect people, sites, information and operations while justifying expenditure to senior leaders…