Skip to content
arrow_back
search
ISM-1053 policy ASD Information Security Manual (ISM)

Secure Physical Access for Classified Equipment

Ensure physical security for critical equipment based on its classification.

record_voice_over

Plain language

This guideline ensures that crucial pieces of technology, like servers and devices used for secure communications, are kept in secure rooms suited to their importance. If this isn't done, there's a risk of unauthorised people physically accessing these devices, potentially leading to theft, tampering, or disruption of services, which can result in the loss of sensitive information or harm to the organisation's operations.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

OS, P, S, TS

ISM last updated

Nov 2024

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Classified servers, network devices and cryptographic equipment are secured in server rooms or communications rooms that meet the requirements for a security zone suitable for their classification.
policy ASD Information Security Manual (ISM) ISM-1053
priority_high

Why it matters

Without secure, classified-rated server/comms rooms, classified servers and crypto gear may be accessed or removed, causing data compromise and service disruption.

settings

Operational notes

Ensure classified servers, network devices and crypto equipment stay within approved security zones; review room certification, access lists and entry logs when changes occur.

Mapping detail

Mapping

Direction

Controls