Unit of competency Outline

Date retreived
22/07/2026 6:08 PM AWST

Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.

Implement security risk management plans

Implement security risk management plans

Unit of competency
National Code
CPPSEC5005
State Code
OBI58
TGA Status
Current
DTWD Status
Approved
Current Release Number
1.00
Current Release Date
30/09/2019
State Implementation and Classification
Approved Date
20/05/2020
Field of Education
099905 - Security Services
Original Release Date
20/05/2020
Nominal Hours
40
Description
This unit specifies the skills and knowledge required to implement security risk management plans. It includes organising, costing and allocating resources, monitoring emerging security risks and changes in the operating environment against activities and targets in action plans, and reviewing treatment options to update security risk management plans. Risk management plans are implemented based on the principles of ISO31000:2018 Risk management - Guidelines (ISO31000).This unit is suitable for those using a broad range of cognitive, technical and communication skills to select and apply methods and technologies to analyse information and provide solutions to sometimes complex problems.Legislative, regulatory or certification requirements apply in some states and territories to the provision of advice on security solutions, strategies, protocols and procedures. For further information, check with the relevant regulatory authority.
Notes
Elements and Performance Criteria
1 Organise and allocate resources to support security risk management plan.
  • 1.1 Access and interpret key requirements of legislation, regulations and Australian standard ISO31000 to understand and comply with requirements for implementing security risk management plans.
  • 1.2 Review security risk management plan to clarify and cost resource requirements.
  • 1.3 Plan and schedule activities and targets to meet requirements of risk management action plans.
  • 1.4 Define roles, responsibilities and work schedules for implementing security risk management plan and communicate to relevant persons.
  • 1.5 Organise efficient allocations of resources, equipment and materials required to implement risk management action plans.
  • 1.6 Disseminate information to support security risk management plan information according to workplace and regulatory requirements.
2 Monitor emerging security risks and operating environment.
  • 2.1 Monitor emerging risks and assess ongoing suitability of implemented security risk treatment options based on ISO 31000 principles.
  • 2.2 Monitor changes to operating environment and identify and incorporate corrective contingency measures into security risk management plan.
  • 2.3 Regularly review risk management targets and outcomes against action plans to confirm aims and objectives are achieved.
  • 2.4 Prepare documentation and guidelines explaining incidence, nature and causes of emerging security risks and contingencies implemented.
3 Review treatment options and update security risk management plan.
  • 3.1 Systematically review effectiveness of security risk treatment options in meeting risk management objectives.
  • 3.2 Identify and test required corrective measures to confirm suitability to meet risk management objectives.
  • 3.3 Modify security risk management plan to incorporate corrective measures and address discrepancies between treatment options and risk incidence.
  • 3.4 Seek feedback from relevant persons on effectiveness of treatment options and make required adjustments to incorporate feedback.
  • 3.5 Cost long and short-term options to accurately estimate resource allocations to support security risk management plan.
  • 3.6 Confirm stages of implementation for security risk management plan and coordinate required resources to ensure availability.
  • 3.7 Finalise updated security risk management plan according to workplace and regulatory requirements.
No information
No information
Replaces
State Code National Code Title Type
D1476 CPPSEC5005A Implement security risk management plan Unit of competency