Security Management

Data Centre Physical Security and Access Zoning Design

Trains data centre security and facilities staff to design layered access zoning, biometric controls and monitoring systems that meet TIA-942 and ISO/IEC 27001 physical security expectations.

Duration5 training days
Content4 modules · 8 sessions
On completionAccredited attendance certificate
About the programme

Course Overview

A data centre breach rarely starts with a firewall failure; it starts with a delivery contractor left unescorted in a corridor, a shared badge, or a cage boundary that does not match the tenancy agreement. This course treats physical security as a zoning problem: participants learn to lay out concentric zones from car park to server cabinet, each with its own access control, verification method and monitoring, and to align that design with TIA-942 site infrastructure tiers and the physical and environmental controls in ISO/IEC 27001 Annex A. Sessions cover mantrap design and anti-passback logic, biometric and multi-factor credential selection for white space entry, visitor and contractor escort policy, and colocation cage segregation where competing tenants share a building. Practical exercises use anonymised facility drawings so participants practise assigning zone classifications, camera coverage and intrusion detection to a real floor plan rather than a generic checklist. The course also covers audit evidence: what a customer security assessment or certification physical security review actually asks to see, and how to keep zoning records current as tenancy and cage layouts change. Delegates leave able to design a zoning model from scratch or defend an existing one during a client or certification audit.

Expected Learning Outcomes

01

Design concentric access zones from perimeter to server cabinet aligned with TIA-942 tier requirements.

02

Specify mantrap, anti-passback and biometric controls appropriate to each data centre security zone.

03

Map ISO/IEC 27001 Annex A physical and environmental controls to specific zoning and monitoring decisions.

04

Plan visitor, contractor and vendor escort procedures that close common tailgating and shared-badge gaps.

05

Segregate colocation cages and shared tenancy areas to prevent cross-tenant access and sightline exposure.

06

Configure CCTV coverage and PSIM alerting to eliminate blind spots at cabinet rows and loading docks.

07

Prepare zoning and access records that withstand customer security assessments and certification audits.

Who Should Attend

01

Data centre facilities and security managers responsible for access control and zoning design.

02

Colocation and cloud provider security teams managing multi-tenant cage and suite segregation.

03

IT infrastructure managers who must brief physical security requirements to facilities contractors.

04

Compliance officers preparing data centres for customer or ISO 27001 physical security audits.

05

Security consultants designing access control systems for new-build or retrofit data centre projects.

06

Enterprise security architects coordinating physical controls with logical access and monitoring systems.

Course Modules

Select any module to see its sessions and points.

01

Zoning Models and Site Infrastructure Standards

2 sessions · 8 points

Session 1Concentric Zoning from Perimeter to Cabinet

  • Define zone boundaries from car park and loading dock through to white space and cabinet rows.
  • Assign access control methods and verification strength appropriate to each zone's sensitivity.
  • Align zoning decisions with TIA-942 site infrastructure tier requirements and redundancy expectations.
  • Document zone classifications in a facility drawing that security, facilities and IT teams share.

Session 2Mapping ISO/IEC 27001 Physical Controls to Design

  • Interpret ISO/IEC 27001 Annex A physical and environmental control requirements for data centre sites.
  • Translate audit control statements into specific access control, monitoring and logging decisions.
  • Identify evidence a certification auditor expects to see for each physical control in scope.
  • Build a control-to-design traceability matrix linking standard clauses to implemented measures.
02

Access Control and Credential Design

2 sessions · 8 points

Session 1Mantraps, Anti-Passback and Biometric Selection

  • Design mantrap sequencing and anti-passback logic to prevent tailgating into white space.
  • Select biometric or multi-factor credentials matched to the risk level of each access point.
  • Plan credential issuance, revocation and audit trails for employees, contractors and vendors.
  • Address failure modes, including fail-safe versus fail-secure decisions for fire and power events.

Session 2Visitor, Contractor and Vendor Escort Policy

  • Draft escort policies that close gaps exploited by delivery, maintenance and cabling contractors.
  • Design visitor management workflows that verify identity and purpose before white space entry.
  • Coordinate equipment removal and asset disposal procedures with physical security checkpoints.
  • Train reception and security officers to challenge unescorted individuals without disrupting operations.
03

Monitoring, Colocation and Multi-Tenant Segregation

2 sessions · 8 points

Session 1CCTV Coverage and PSIM Configuration

  • Plan camera placement to eliminate blind spots at cabinet rows, loading docks and mantraps.
  • Configure a physical security information management platform to correlate access and video events.
  • Set alert thresholds and escalation procedures for anomalous access patterns and forced-entry alarms.
  • Retain and index footage in line with customer contractual and regulatory retention requirements.

Session 2Colocation Cage and Suite Segregation

  • Design cage and suite boundaries that match tenancy agreements and prevent cross-tenant sightlines.
  • Coordinate shared infrastructure access, such as cooling and cabling risers, without compromising segregation.
  • Resolve conflicts between tenant-specific security requirements within a shared building envelope.
  • Audit cage boundaries periodically against lease documentation as tenancy layouts change.
04

Audit Readiness and Continuous Assurance

2 sessions · 8 points

Session 1Preparing for Customer and Certification Audits

  • Assemble zoning diagrams, access logs and incident records requested during customer due diligence visits.
  • Rehearse responses to common audit questions on tailgating controls, badge deactivation and camera retention.
  • Reconcile access control system reports against physical walk-through findings before an audit date.
  • Track corrective actions from prior audits through to verified closure with evidence.

Session 2Maintaining Zoning Integrity Over Time

  • Review zoning and access records whenever tenancy, cabling or floor plan changes occur.
  • Manage decommissioning of cabinets and cages so residual access rights are removed promptly.
  • Coordinate physical security changes with change management processes used by IT operations.
  • Report zoning risk and audit status to facility management and customer security stakeholders.

What the participant receives

4 course modules

A structured syllabus

8 training sessions

across 5 days

32 detailed points

Applied, detailed content

Accredited attendance certificate

On completing the programme

Complete your registration

We will contact you within one business day to confirm.

Ready to start?

Reserve your seat and start building the skill.

Enroll now

Share this course