SOCI Consultant Perth: Independent Physical Security Consulting for Critical Infrastructure in WA

If your organisation operates a critical infrastructure asset in Western Australia and is subject to the Security of Critical Infrastructure Act 2018, you need a consultant who understands the physical security obligations — not just the cyber and governance dimensions that most national firms focus on.

Smartsec Security Solutions is a Perth-based independent physical security consultancy. We work with critical infrastructure operators across WA to deliver the physical security assessments, risk registers, and CIRMP physical security plans that SOCI compliance requires — without selling or installing systems, and without the conflicts of interest that come with a vendor-linked advisory model.

 

What SOCI Requires From a Physical Security Perspective

The Security of Critical Infrastructure Act 2018 places mandatory obligations on responsible entities across 11 critical infrastructure sectors. The Critical Infrastructure Risk Management Program (CIRMP) requires operators to establish and maintain a risk management program that addresses physical security hazards alongside cyber, personnel, and supply chain risks.

The enhanced CIRMP Rules — proposed by the Department of Home Affairs in 2026 — go further, introducing a requirement for responsible entities to develop and maintain a dedicated physical security plan. This plan must address:

  • Site nature, ownership, tenancy, and collateral exposure from nearby assets
  • Physical access controls — perimeter, surveillance, alarm systems, and continuous monitoring of critical components
  • Business hours and out-of-hours access controls — CCTV, alarms, secure doors, and sensors
  • Protective security measures across the whole asset
  • Incident response arrangements for physical security breaches
  • Testing and effectiveness review of all security arrangements
  • Integration with other organisational plans including cyber security and emergency response

The compliance deadline for the physical security plan is 30 June 2028 — but the requirement to document a compliance pathway in intervening reporting periods means the work needs to start now.

For the full breakdown of what the CIRMP physical security plan must contain, see our detailed article: CIRMP Physical Security Plan — What Critical Infrastructure Operators in Australia Need to Know.

 

What Smartsec Does as Your SOCI Physical Security Consultant

Our role is straightforward — we provide the independent physical security assessment and documented plan that sits at the foundation of your CIRMP physical security compliance. We do not provide cyber security consulting, personnel security advice, or supply chain risk management. We focus exclusively on physical security, which means the advice is deep, specific, and grounded in direct site knowledge rather than a generalist framework.

Independent physical security assessment. A structured, site-specific evaluation of your critical infrastructure asset — covering perimeter and access controls, surveillance and alarm systems, out-of-hours arrangements, sensitive area identification, and incident response capability. Aligned with ISO 31000:2018 and the PSPF Facility Security Plan principles that underpin the CIRMP physical security plan requirement.

CIRMP physical security plan development. Translating the assessment findings into a documented plan that addresses each required element of the CIRMP physical security plan — suitable for inclusion in your risk management program and for attestation purposes.

Risk register support. Physical security hazards identified and rated using a likelihood-consequence methodology consistent with ISO 31000:2018, providing the risk register entries your CIRMP requires for physical security.

Ongoing review and update. The CIRMP requires security arrangements to be tested and maintained. We support responsible entities with periodic review assessments that keep the physical security plan current and reflect changes in the threat environment or site conditions.

 

Why a WA-Based Independent Consultant Matters for SOCI Physical Security Work

Most national security consulting firms approach SOCI from a cyber and governance perspective. Physical security — the actual site, the actual perimeter, the actual access control arrangements — is often treated as a secondary consideration or delegated to a subcontractor who may not understand the critical infrastructure context.

Smartsec works exclusively in physical security. Our assessments are conducted by an experienced, Perth-based consultant with direct knowledge of the WA critical infrastructure operating environment — including the specific challenges of remote and regional assets, extended response times, harsh environmental conditions, and the operational realities of WA’s energy, water, transport, and health sectors.

We are vendor-neutral. We do not supply or install security systems, and we have no commercial relationships with security product suppliers. Every recommendation reflects what the asset actually needs to meet its physical security obligations — not what a product catalogue offers.

We are also a licensed WA Security Risk Consultant and Security Agent, holding the Security Risk Management Certified Professional (SRMCP) credential. Our assessments are produced to a standard that is defensible to regulators, boards, and auditors.

 

Critical Infrastructure Sectors We Work With in WA

Smartsec delivers SOCI physical security consulting for operators across the following sectors in Western Australia:

  • Energy — electricity, gas, and liquid fuel assets
  • Water and sewerage
  • Transport — freight infrastructure and freight services
  • Health — hospital and health service assets
  • Broadcasting and communications

If your organisation operates a critical infrastructure asset in WA and needs independent physical security advice for CIRMP compliance, we can help.

 

Get Started

The right starting point is a brief scoping conversation. We will confirm whether your asset falls within the CIRMP framework, clarify what the physical security plan requirement means for your specific site, and outline what an assessment and plan development engagement would involve.

Contact Smartsec Security Solutions to arrange a confidential scoping conversation.

 

more insights

Call for a scope chat