JANUARY2025 U.S. Department of Homeland SecurityCybersecurity and Infrastructure Security Agency CONTENTS Background and Content...........................................................................1 The Model........................................................................................................1 Purpose................................................................................................................2 Scope.....................................................................................................................2 Risk Assessment............................................................................................3 Security Measures........................................................................................3Cost Levels......................................................................................................3Complexity Levels..........................................................................................3 Security Enhancements Table...............................................................4 Coordination and Administration......................................................4Installation of Security Measure.......................................................5Train and Exercise.............................................................................6Perimeter Security.............................................................................7Access Control...................................................................................7Crowd Management..........................................................................8Traffic Management..........................................................................8Emergency Management..................................................................8 Glossary...............................................................................................................9 Resources.........................................................................................................10 BACKGROUND AND CONTENT As the Sector Risk Management Agency for Commercial Facilities, theCybersecurity and Infrastructure Security Agency (CISA) is committed topartnering with venue operators in mitigating the threat of targeted violenceand preparing for potential incidents. In collaboration with industry expertsand security professionals, CISA developed theVenue Guide for SecurityEnhancements. Applying the guide will enable venue operators to effectivelyidentify and manage risk. This guide serves as a broad catalog to support safe and secure day-to-day operations and event management planning and execution. Use of theguidance in this resource will not deter or prevent all threats. As appropriate,venues should have response and recovery plans. However, because everyvenue is unique, CISA recommends conducting a site-specific physicalsecurity assessment. THE MODEL The ‘Security Enhancements Table’ within this guide is a model to help operatorsunderstand the security measure options, intended outcomes, risks addressed,and benchmarks for robust security practices. For additional information andcontext, please see the Glossary and Resources sections located at the end ofthe document. TheVenue Guide for Security Enhancementsis: ●Voluntary:The security measures outlined in this guide are optionalconsiderations to enhance security posture and risk tolerance, but theydo not place any obligation on venue operators. This information can andshould be tailored to the needs of each individual venue. ●Not Comprehensive:The guide offers a core set of securityconsiderations and mitigations that are broadly applicable, but it does notidentify all physical security considerations needed for venue operators.Before implementing, consider the type of venue and the uniquechallenges it faces and create a personalized risk management strategy. PURPOSE This guide aims to help venue operators enhance safety, protect assets, andcreate secure environments through effective security measures and bestpractices. The guide: 1.Provides guidance for venues,such as evaluating securitymeasures, complexity levels, costs, options, and threats mitigatedby these measures. By balancing these factors, venues can create asecure environment for operators and guests. 2.Recommends broadly applicable considerations forevaluating security practices,such as assessing measures andimproving physical security compliance to ensure staff and visitorsafety. 3.Offers actionable guidancefor prioritizing the most effectivesecurity practices and proactively reducing the risk of major threats. 4.Provides venue operators with a tailored menu of securityoptions,allowing them to select the most suitable and effectivemeasures for their venue’s budget, size, location, and risk factors. Venue operators have access to a range of cyber and physical servicesthrough CISA online and in person. Reach out to your local CISA