A comprehensive security audit isn’t a luxury — it’s a legal and operational necessity for any South African commercial property. Whether you manage a retail park in Sandton, a logistics warehouse in Durban, or a corporate office in Cape Town, vulnerabilities exist that only a structured assessment can reveal.
I’ve personally conducted over 200 site security audits across Gauteng, KwaZulu-Natal, and the Western Cape. Below is the exact 12-point checklist I use — refined through years of fieldwork and aligned with PSIRA regulations and SABS standards. If you’d rather have professionals handle this, Azo Makhanye Security Services offers full audit packages tailored to South African compliance requirements.
The 12-Point Security Audit Checklist
- Perimeter Assessment
Walk the full boundary. Check fencing integrity, wall height (minimum 2.4m for high-risk areas), razor wire condition, and whether vegetation creates blind spots. Note any gaps where intruders could breach. - Access Control Points
Evaluate all entry and exit points — pedestrian gates, vehicle booms, loading docks. Are biometric readers functioning? Is tailgating possible? Verify visitor management protocols against POPIA requirements. - CCTV & Surveillance Coverage
Map camera positions against the site layout. Identify dead zones. Check recording retention (minimum 30 days recommended), night vision capability, and whether footage is monitored in real-time or only reviewed reactively. - Lighting Audit
Conduct a night-time walkthrough. Poorly lit areas — parking lots, stairwells, service corridors — are where most incidents occur. Solar-powered security lights are increasingly cost-effective for load-shedding resilience. - Guard Force Evaluation
Verify PSiRA registration of all officers. Review shift schedules, patrol routes (are they randomised?), incident response times, and communication equipment. Azo Makhanye provides fully vetted, PSiRA-compliant guard deployments. - Alarm & Detection Systems
Test every sensor — PIR detectors, beam barriers, panic buttons. Confirm armed response integration and average response time (under 4 minutes is the benchmark in metro areas). - Fire & Life Safety Compliance
Check fire extinguisher service dates, emergency exit signage, evacuation plans, and sprinkler systems. South African sites must comply with SANS 10400-T and local municipal fire bylaws. - Cybersecurity Intersection
Physical and cyber security converge at server rooms, network cabinets, and IP-based surveillance. Ensure server rooms have biometric access, UPS backup, and that default passwords on IP cameras have been changed. - Emergency Response Protocols
Review documented procedures for armed robbery, bomb threats, civil unrest, and medical emergencies. When was the last drill conducted? Staff awareness is often the weakest link. - Key & Asset Management
Audit key registers, master key holders, and safe combinations. Transition to electronic access where possible — it creates an audit trail that physical keys cannot. - Incident History Analysis
Review the past 12 months of incident reports. Look for patterns — time of day, location on site, modus operandi. This data directly informs where to allocate additional resources. - Regulatory Compliance Check
Confirm compliance with the Private Security Industry Regulation Act, POPIA (data from CCTV), OHS Act, and any sector-specific requirements. Non-compliance carries significant fines and reputational risk.
Don’t Leave Your Site Exposed
A security audit reveals what complacency hides. I’ve seen R50-million facilities brought to their knees by a R200 padlock failure. Whether you conduct this audit internally or bring in specialists like the Azo Makhanye team, the important thing is to act — before an incident forces your hand.
