
Precious metal protection security assessment for a remote facility

A remote mining operation required an independent assessment to evaluate whether its high-value asset protection program was resilient, defensible, and prepared for evolving security risks.
The Challenge
The organization operated a remote industrial facility responsible for protecting high-value precious metal assets. Although the site had an experienced security team, established physical controls, and a dedicated security operation, leadership wanted an independent review to determine whether the overall security program could withstand foreseeable threats and support defensible decision making.
The engagement was initiated because previous reviews had identified security concerns without being supported by a comprehensive risk assessment. The objective was to integrate threat and risk assessment, governance review, and operational effectiveness into a single evaluation of the site’s security program.
The remote operating environment added significant complexity. Limited emergency response resources, a single primary access route, and the potential for operational disruption required the assessment to consider continuity, evacuation planning, and recovery alongside traditional physical security measures. Wildfire activity delayed site inspections and reinforced the importance of resilient operations under real-world conditions. Confidentiality was also essential because the assessment examined sensitive vulnerabilities, asset protection strategies, and operational security practices.
Our Approach
The engagement followed an integrated assessment model built around three complementary workstreams. The first involved a Harmonized Threat Risk Assessment using the RCMP/CSEC methodology to identify and evaluate assets, threats, vulnerabilities, safeguards, inherent risk, and practical measures for reducing residual risk. The assessment examined people, facilities, sensitive information, physical security systems, critical operations, and threats ranging from theft and insider activity to fire, system failures, and site disruption.
The second workstream reviewed the organization’s security governance framework, policies, and operational procedures. Documentation was evaluated against internal audit methodology and recognized standards including Government of Canada Physical Security Guides, ISO 22341, ISO 22301, ISO 31000, and ASIS International guidance. Functional areas such as access control, visitor management, surveillance, perimeter protection, emergency response, training, and governance were assessed for effectiveness and consistency.
The third workstream evaluated physical protection systems using the Protection, Detection, Response, Recovery model. Documentation reviews, interviews, site inspections, previous assessment findings, and operational processes were analyzed together. A cross-walk matrix identified risks that consistently appeared across the threat assessment, governance audit, and physical protection review, allowing recommendations to be prioritized according to their significance and practical impact.
Final deliverables
The Outcome
The engagement provided leadership with an integrated understanding of the organization’s security program by combining threat and risk analysis, governance validation, and operational effectiveness into a single assessment. The review confirmed several existing strengths, including committed security personnel, established physical controls, positive relationships with operational stakeholders, and a dedicated focus on protecting high-value assets.
At the same time, the assessment identified systemic opportunities to strengthen evidentiary assurance, recovery readiness, governance, continuity planning, automation, and performance measurement. Five critical risk themes were identified, and the resulting remediation roadmap established priorities for immediate stabilization, systems integration, and longer-term modernization.
Without this engagement, the organization may have continued operating with a security program that appeared effective in daily operations while remaining vulnerable to evidence loss, surveillance disruption, manual process limitations, insider threats, and reduced resilience during a significant incident or evacuation.
Key insight
Get the strategy needed to reduce risk with confidence
Get the strategy needed to reduce risk with confidence
Start with a confidential discussion about your right next step.
Related Case Studies

Expert security opinion in public attraction assault litigation

National loss prevention program development for a distribution and logistics organization

