6.1 Purpose of Enhanced Risk Assessment
Enhanced Tier venues and events (those expecting 800 or more people at any one time) are required under Martyn’s Law to undertake a comprehensive terrorism risk assessment. This goes beyond the basic security plan and demands a deeper understanding of threat vectors, vulnerabilities and layered security responses.
Key Objectives:
- Identify potential terrorism-related threats specific to your venue / event
- Evaluate the likelihood and potential impact of each threat
- Develop detailed mitigation strategies tailored to these risks
This is a living document and should be reviewed regularly or after any operational change.
6.2 Structured Approach to Risk Assessment
The process of enhanced risk assessment should follow a structured methodology, such as:
- Asset Identification – What are you trying to protect? (people, assets, brand reputation)
- Threat Analysis – What are the relevant and credible threats (e.g. vehicle attacks, Improvised Explosive Devices (IEDs), insider threat)?
- Vulnerability Assessment – What weaknesses exist in current procedures or infrastructure?
- Risk Evaluation – Combine likelihood and impact to prioritise risk treatment
- Mitigation Planning – Identify proportionate and effective actions
Use of tools such as the Enhanced Risk Register Template is recommended
6.3 Mitigation Measures: Practical Examples
Once threats are prioritised, you must determine suitable reasonably practicable mitigation measures. These will vary based on your site’s layout, function and available resources.
Examples of Enhanced Mitigations:
Physical Security:
- Hostile Vehicle Mitigation (HVM) such as bollards or perimeter barriers
- Controlled entry points with search procedures or screening
- Surveillance systems (CCTV with active monitoring)
Operational Procedures:
- Staff training on dynamic lockdown and emergency protocols
- Formalised search and sweep procedures
- Communication plans to coordinate during an incident
People Measures:
- Deployment of security personnel
- Vetting processes for staff and contractors
- Identification and credentialing for key team members
The mitigation strategy should be integrated into the Enhanced Security Plan and communicated clearly to staff
6.4 Coordination with Authorities
It is expected that Enhanced Tier venues engage more closely with:
- Police Counter Terrorism Security Advisors (CTSAs)
- Security Industry Authority (SIA) for compliance readiness
- Local Authority Safety Advisory Groups (SAGs)
- Early engagement ensures that plans align with local emergency services protocols and improves overall resilience
Schedule annual plan walkthroughs or table-top exercises with external agencies.
6.5 Documentation and Review
All findings and measures must be documented in your Enhanced Security Plan. This includes:
- Detailed risk assessment and mitigation log
- Implementation timeline
- Names and responsibilities of contributors
- Schedule for future review and updates
- This course includes an Enhanced Tier Security Plan Template (see Lesson 2 handouts) which can be used to structure this content
- Allow for a separate decision log so you can record your actions
Handout (will open in a new tab):
In Lesson 7, we will look at how to finalise the Security Plan for submission or inspection, including integrating risk assessments and preparing for enforcement activity.