HOMELAND SECURITY FUNDAMENTALS
Systematic framework for understanding, assessing, and countering threats to national infrastructure, civil society, and sovereign institutions.
National Security encompasses the whole-of-government effort to prevent, protect against, mitigate, respond to, and recover from threats and hazards facing the state. It integrates domestic intelligence, border security, infrastructure protection, emergency management, and cybersecurity into a unified national security posture.
- Terrorism — Domestic & International
- Cybersecurity attacks on critical systems
- Natural hazards & disaster events
- Pandemics & biological threats
- Radiological / nuclear incidents
- Chemical & HAZMAT emergencies
- Foreign intelligence / espionage
- Transnational organized crime
- Risk-informed resource allocation
- Whole-of-government integration
- Intelligence-led operations
- Layered defense architecture
- Public-private partnership
- Civil liberties preservation
- Interoperability across agencies
- Resilience by design
CRITICAL INFRASTRUCTURE SECTORS
16 sectors designated as critical. Disruption would have debilitating effects on security, national economic security, or public health and safety.
Click any sector above to view dependencies and risk profile.
THREAT TAXONOMY
Structured classification of all threat categories across the homeland security domain, enabling systematic analysis and tailored response planning.
INTERNAL THREAT LANDSCAPE
Threats originating from within national borders, including domestic extremism, insider threats, and subversion of institutions.
EXTERNAL THREAT LANDSCAPE
Threats originating beyond national borders, including state-sponsored operations, transnational terrorism, and cross-border infiltration.
THREAT MATRIX PLOT
2D and matrix-based visualization of threats by likelihood versus consequence severity. Interactive plotting tool.
CONSEQUENCE →
THREAT ASSESSMENT PROCESS
Structured methodology for evaluating threats using intelligence, context, and analytical frameworks to support decision-making.
- CARVER Matrix — Criticality, Accessibility, Recuperability, Vulnerability, Effect, Recognizability
- MSHARPP — Mission, Symbolism, History, Accessibility, Recognizability, Population, Proximity
- ACH Method — Analysis of Competing Hypotheses to reduce analytical bias
- STRIDE — Spoofing, Tampering, Repudiation, Info Disclosure, DoS, Elevation (cyber)
- PMESII-PT — Political, Military, Economic, Social, Info, Infrastructure, Physical, Time
- Source reliability and information credibility rating (A–F / 1–6)
- Alternative hypothesis consideration mandatory
- Confidence levels stated: High / Moderate / Low
- Dissent recorded and preserved in assessment record
RISK QUANTIFICATION MODEL
Mathematical and semi-quantitative frameworks for converting qualitative threat assessments into actionable risk scores.
- AVOID — Eliminate the activity causing the risk
- REDUCE — Apply controls to lower likelihood or consequence
- TRANSFER — Assign risk to another entity (insurance, partner)
- ACCEPT — Tolerate residual risk within defined thresholds
- ESCALATE — Refer decision to higher authority when risk exceeds mandate
COURSE OF ACTION ANALYSIS
Structured decision-making process for identifying, comparing, and selecting response options to homeland security threats.
| CRITERION | WEIGHT | COA-1: PASSIVE MONITOR | COA-2: ACTIVE DEFENSE | COA-3: OFFENSIVE RESPONSE |
|---|---|---|---|---|
| Speed of Effect | 30% | ★★☆ (2) | ★★★ (3) | ★★★ (3) |
| Legal Authority | 25% | ★★★ (3) | ★★★ (3) | ★☆☆ (1) |
| Collateral Impact | 20% | ★★★ (3) | ★★☆ (2) | ★☆☆ (1) |
| Deterrence Value | 15% | ★☆☆ (1) | ★★☆ (2) | ★★★ (3) |
| Resource Efficiency | 10% | ★★★ (3) | ★★☆ (2) | ★☆☆ (1) |
| WEIGHTED SCORE | 2.45 / 3.0 | 2.65 / 3.0 ✓ | 1.85 / 3.0 |
MITIGATION MEASURES
Layered controls mapped to threat categories, covering prevention, detection, response, and recovery across all 16 critical sectors.
CONTINUITY OF OPERATIONS
Plans and procedures to ensure the continuation of essential functions across all threat environments.
- Essential Functions — Identify and prioritize minimum viable operations
- Orders of Succession — Pre-designated leadership continuity chain
- Delegations of Authority — Emergency decision-making authorities
- Alternate Facilities — Primary, alternate, contingency, emergency sites
- Interoperable Communications — Redundant comms across all scenarios
- Vital Records — Protection and accessibility of mission-critical data
- Human Capital — Personnel accountability and welfare plans
- Test, Training, Exercise — Annual validation cycle with AAR
LEGAL FRAMEWORK
Key statutory authorities, executive directives, and international obligations governing homeland security operations.
- National Security Act — Establishes the national security apparatus; consolidates intelligence and security agencies
- Counter-Terrorism Act — Enhanced surveillance and investigative authorities; judicial oversight framework
- Intelligence Services Act — Foreign and domestic intelligence collection authority and oversight
- Disaster Management Act — Government disaster assistance, emergency declarations, and relief frameworks
- State of Emergency Act — Executive emergency powers, conditions of use, and parliamentary oversight
- Military Aid to Civil Authority — Conditions and limits for armed forces support to domestic security
- Cybersecurity & Critical Infrastructure Act — National cybersecurity authority and critical sector protection mandates
- National Security Strategy — Government-wide strategic framework for identifying and countering security threats
- Critical Infrastructure Protection Directive — Identification, prioritisation, and protection of national critical assets
- National Cybersecurity Strategy — Whole-of-government cyber resilience posture and incident response coordination
- National Counter-Terrorism Strategy (NCTS) — Policy framework for prevention, pursuit, protection, and preparation
- Trusted Identity & Access Directive — Common credential standards for government personnel and facilities
- National Resilience Framework — Continuity, recovery, and cross-sector interdependency planning mandate
- Data protection legislation compliance required for all personal data handling
- Intelligence activities governed by ministerial authorisation and judicial oversight frameworks
- Independent oversight body review mandatory for new surveillance programs
- Ombudsman or Inspector General reviews significant security activities
- Whistleblower protections preserved for national security personnel
GLOSSARY OF TERMS
Authoritative definitions for homeland security, threat assessment, and COA analysis terminology.