Our Baseline

The standards ledger

Physical security has a body of doctrine, most of it written for government facilities that cannot be allowed to fail. This is the reference set we practice from — and translate for private owners.

ICD 705 · ICS 705-01/-02

Sensitive Compartmented Information Facilities

The Intelligence Community directive and standards governing the design, construction, accreditation, and management of SCIFs — implemented through the IC Tech Spec. The most demanding facility-security standard in general use, and the backbone of our secure-space practice.

32 CFR Part 117

NISPOM — National Industrial Security Program

The operating rule for contractors safeguarding classified information — facility clearances, physical safeguarding, personnel security, and self-inspection. We help owners carry NISPOM obligations as practice, not paperwork.

FAR · DFARS

Federal Acquisition Regulation & Defense Supplement

The contract clauses through which security requirements reach private industry — safeguarding, facility access, and the flow-downs that arrive attached to federal and defense work. We map what applies, and build facilities and programs that satisfy it.

NIST SP 800-53 · 800-171

Physical & Environmental Protection Controls

The PE control family and CUI protection requirements that federal customers — and increasingly commercial ones — expect to see implemented and evidenced. A common language between your security program and your customers’ auditors.

NERC CIP-014

Physical Security of Critical Grid Assets

Risk assessment and physical protection requirements for the transmission infrastructure the grid — and every data center on it — depends on. Relevant doctrine for substations, on-site generation, and energy-adjacent campuses.

UFC 4-010-01

DoD Minimum Antiterrorism Standards for Buildings

The Department of Defense’s criteria for standoff, structural hardening, and site design against attack. We apply its logic — proportionately — to civilian facilities whose loss would be intolerable.

TIA-942 · ASIS/ANSI

Data Center & Industry Standards

TIA-942’s facility security provisions, Uptime-aligned resilience thinking, and the ASIS body of standards for risk assessment, security management, and investigations — the commercial layer of the reference set.

Standards fluency is not a substitute for cognizant authority — accreditation and regulatory decisions rest with the responsible government offices. Our work ensures that when those offices look, the facility is ready.

Next Step

Which of these apply to your facility?

That question has a definitive answer. A requirements mapping is usually where we start.

Prefer to talk? 866.960.7475 · info@orbitalfederal.com