enterprise-security-risk-management-banner-desktop

Enterprise Security Risk Management

Kroll’s global Enterprise Security Risk Management team excels at proactive threat and risk mitigation, reacting to crises and offering personnel, expertise, advisory and bandwidth when our clients are challenged in ways that affect their internal capabilities and external function.

Helping organizations and individuals anticipate, respond to and mitigate a myriad of enterprise-wide security challenges.

With the attack surface constantly growing in scope and complexity, your security program must also evolve. Enter Kroll’s Threat Life Cycle Management. With end-to-end cyber and physical risk solutions, we help uncover exposures, validate the effectiveness of your defenses, implement new or updated controls, fine-tune detections, and confidently respond to any threat.

As the senior advisers to our clients on all security and threat-related issues, we provide the critical insights executives need to make serious decisions that protect their enterprise from the threats of today and tomorrow.

Investigating and Protecting against C-Suite Level Fraud

Discover how Kroll’s Forensic Investigations, Cyber Risk, and Enterprise Security Risk Management teams came together to help a client identify, investigate and protect against C-suite-level fraud and credit card abuse. Request our qualifications

Our Background

Federal State and Local Law Enforcement Officers
Federal State and Local Law Enforcement Officers
Former Corporate Security Executives
Corporate Security Executives
Members of the U.S. Foreign Service
Members of the U.S. Foreign Service and Military Veterans
Professional engineers of various disciplines
Professional engineers of various disciplines

Why Choose Our Services

  • Specialized Expertise: Our experts draw from decades of experience in the field and in-depth knowledge of your industry’s unique risks, requirements and regulations.
  • Customized Solutions: We collaborate closely with you to develop personalized security strategies that align with your values, mission, culture, preferences and confidentiality requirements.
  • Comprehensive Assessments: We conduct thorough security assessments, identifying vulnerabilities and recommending practical, cost-effective solutions.
  • Emergency Preparedness: Our services include developing and testing emergency response plans, ensuring your institution is well-prepared for a range of contingencies.
  • Technology Integration: We stay at the forefront of security technology trends and can assist in implementing state-of-the-art solutions.

 

  • Training and Education: We offer tailored training programs, empowering stakeholders with general security awareness and the skills needed to respond effectively in emergencies.
  • Community Engagement: We work with your staff, community and leadership to foster a culture of security awareness and vigilance.
  • Privacy Protection: We help safeguard your personal information, digital assets and sensitive data, ensuring your privacy remains uncompromised.
  • Risk Management: We provide guidance on risk management strategies, including insurance considerations and contingency planning.
  • Regulatory Compliance: We ensure that your organization or institution meets the rigorous security regulations and standards required by the sector or industry you operate in.

Case Examples

Threat Management and Workplace Violence Program Review

Kroll was engaged by a world-renowned cancer hospital and research institute to conduct an enterprise-wide analysis of their threat management and workplace violence programs, processes, training and preparedness.

Publicity-Driven Threat Management Support

Kroll was engaged by one of the largest global law firms to provide threat intelligence monitoring and assessments throughout a highly controversial and widely publicized trial.

Executive Protection Program Review and Executive Threat Assessments

Kroll was engaged by one of the most advanced executive protection programs in the world to conduct comprehensive annual reviews of all aspects of their global program and simultaneously provide threat assessment reports for the organization’s senior leadership team.

Active Assailant, Workplace Violence and General Security Awareness Training

Kroll was engaged by a global law firm to conduct in-person security awareness, workplace violence and active assailant training at all their offices.

Professional Sports League—Emergency Action Planning and Training

Kroll was engaged by a professional sports league to help develop league-wide emergency action protocols, assess team compliance with the league requirements, and evaluate their ability to activate such protocols through practical exercises.

Geopolitical Risk Monitoring

Kroll was engaged by a software company with operations and employees in Ukraine to assess the potential risk of invasion by Russian forces and to provide dynamic crisis management, business continuity, resilience consulting and risk monitoring.

Physical Security Assessments

Kroll was engaged by a major university to conduct a physical assessment of security-related technologies implemented at the university’s central campus. Kroll’s work included interviews with various university personnel and on-site surveys of the campus.

Insider Threat

Kroll was engaged by a global distribution company that was concerned about incidents of internal sabotage at one of its distribution warehouses to conduct a thorough site review of its physical, technical and procedural security measures.

Police Department Independent Evaluation

Kroll was engaged by the City of Austin to comprehensively evaluate the Austin Police Department concerning the extent to which forms of racism, bigotry and discrimination are present throughout protocols, practices and behaviors.

CEO Jake Silverman on Kroll’s Executive Protective Services

CEO Jake Silverman talking with CNBC about the surge in interest around executive protective services, and how Kroll’s experts are helping clients in key areas such as cybersecurity, physical security, operational security and digital threat monitoring.

Watch CNBC Clip Here

CEO Jake Silverman of Kroll’s Executive Protective Services

Sky News | Kroll's Steve Rumbold Shares Insights on The Recent Europe Blackouts

Kroll’s Managing Director of our Enterprise Security Risk Management Practice, Steve Rumbold, shares his insights via Sky News on the recent Europe Blackouts. Rumbold outlines how organizations can stay ahead by preparing for operational disruptions before they escalate. Watch the full interview and learn how your business can take proactive steps today to prevent, detect and respond to critical risks.

Sky News | Kroll's Steve Rumbold Shares Insights on The Recent Europe Blackouts

Kroll's 2025 Financial Crime Report

From pivotal elections to advances in AI to heightened geopolitical tensions, the events of the past year have only amplified the challenges of fighting financial crime. Based on data from over 600 executives across the globe, our report provides insight to help leaders prepare for what’s next.

Stay Ahead with Kroll

Security and Risk Management Consulting

Kroll’s team excels at proactive security consulting and expert advisory solutions, aligning our comprehensive offerings with your enterprise’s risk appetite. We offer personnel, expertise, advisory and bandwidth when our clients are challenged in ways that stress their comfort or internal capabilities.

Threat Management, Workplace Violence and Active Assailant Advisory

Kroll specializes in the precise and carefully measured application of threat management principles to thwart your organization’s most compelling threat actors while continuously maintaining control of its safety, principles and reputation.

Business Continuity, Resilience and Disaster Preparedness

In today’s fast-paced world, disruptions can happen anytime. Kroll’s full suite of business continuity, resiliency and disaster preparedness capabilities is designed to prepare your enterprise for unexpected risks and maintain competitiveness throughout the full lifecycle of any disruption.

Operational Security

Kroll’s sophisticated global network of experts can assist with your operational security (OPSEC) needs, whether they are proactive to avoid enterprise risks, reactive augmentation to your current capabilities or capacity-building due to threats.

Sector and Industry Specific Services

Kroll experts provide security services tailored to the needs and specific contexts of diverse industries.

Webinar Replay | Active Assailant Preparedness Webinar with Enterprise Security and Risk Management Experts

Webinar replay on proactively identifying, preparing for and responding to active assailant threats in the workplace, hosted by Kroll Enterprise Security Risk Management Managing Directors and Crisp, a Kroll business.

Know more

Webinar Replay | Active Assailant Preparedness with Security and Risk Management Experts

Frequently Asked Questions

ESRM is a strategic program management methodology that uses globally established and accepted risk management principles to tie an organization’s security practice directly to its mission and goals. ESRM identifies at-risk assets across the entire enterprise, considering various aspects of the business, including people, processes, intellectual property, technology and reputation.

The ESRM approach recognizes that security is not an isolated, compartmentalized or tactical issue, but a unique type of risk that requires specialization to understand and manage. This critical consideration needs to be woven into the fabric of the entire organization to truly address those items that pose the most significant risks. By adopting ESRM, businesses can better understand their security risks, make informed decisions to protect their assets and respond effectively to potential incidents or breaches.

img

Let's solve for the future