ISTPIndustrial Security & Terrorism Preparedness
Home › Curriculum

Curriculum

14 topics, 40 training hours: scope, learning outcomes, lecturers and standards mapping for every ISTP topic.

TOTAL

40 hrs

1 training hour = 60 minutes

ONLINE

16 hrs

Days 1–2, live

ON SITE

24 hrs

Days 3–5, including 8 hours in the field

LECTURERS

UI 19 · 3S 19 · BNPT 2

split of training hours

Method. Within each training hour, one-way delivery by the lecturer is capped at 45 minutes; the remainder is exercises, case studies or structured discussion. Pre-programme materials are sent at D-7; the pre-test (D-1) and post-test (D+1) are held online, outside the 40 hours.
01The Role of Industrial Security in Terrorism PreventionISTP-M01 · Day 1 · Online · 2 hrs · BNPT

Scope

  • The national counter-terrorism prevention framework and the position of the private sector within it
  • The role of security units and facility managers in preparedness
  • Coordination and reporting lines from a facility to the competent authorities

Learning outcomes — participants are able to:

  • Explain the position of industrial security within the national counter-terrorism prevention ecosystem
  • Identify coordination and reporting lines from a facility to the competent authorities

Lecturer: BNPT speaker (to be announced) · ASIS CPP: Domain 1 — Security Principles & Practices (partial) · CTCB CCTP: Terrorism Fundamentals, Prevention and Mitigation · Law No. 5/2018

02Intelligence Gathering for Industrial SecurityISTP-M02 · Day 1 · Online · 2 hrs · UI

Scope

  • The intelligence cycle: planning, collection, processing, analysis, dissemination
  • OSINT for security professionals within ethical and legal limits
  • Producing a security intelligence brief for decision-makers

Learning outcomes — participants are able to:

  • Apply the intelligence cycle to a facility's information requirements
  • Produce a security brief from open sources while observing ethical and legal limits

Lecturer: Dr Stanislaus Riyanta · ASIS CPP: Domain 3 — Investigations (partial) · CTCB CCTP: Threat Identification

03Psychology for Industrial SecurityISTP-M03 · Day 1 · Online · 2 hrs · UI

Scope

  • The psychology of radicalisation and violent extremism
  • Behavioural indicators and insider threat in the workplace — without profiling on ethnic, religious or racial grounds
  • Psychological aspects of post-incident response and recovery

Learning outcomes — participants are able to:

  • Recognise behavioural indicators relevant to insider threat without profiling on ethnic, religious or racial grounds
  • Explain the psychological dynamics of radicalisation and their implications for personnel security programmes

Lecturer: Zora Arfina Sukabdi, Ph.D. · ASIS CPP: Domain 4 — Personnel Security (partial) · CTCB CCTP: Threat Identification

04Criminological Theory and Security System ConceptsISTP-M04 · Day 1 · Online · 2 hrs · UI

Scope

  • Selected criminological theory for crime prevention (including routine activity and situational crime prevention)
  • Security system concepts and Crime Prevention Through Environmental Design (CPTED)
  • From theory to the design of security controls

Learning outcomes — participants are able to:

  • Use criminological frameworks to explain threat patterns at a facility
  • Connect situational prevention theory with the design of security systems

Lecturer: Dr Sapto Priyanto · ASIS CPP: Domain 1 — Security Principles & Practices · CTCB CCTP: Prevention and Mitigation

05Terrorist Motivations and Modi Operandi in IndonesiaISTP-M05 · Day 2 · Online · 2 hrs · UI

Scope

  • The evolution of terrorist networks and motivations in Indonesia, based on public cases
  • Modi operandi and the attack planning cycle, at awareness level
  • Prevention intervention points that fall within the authority of facility managers

Learning outcomes — participants are able to:

  • Explain patterns of motivation and modi operandi on the basis of public cases
  • Identify prevention intervention points that fall within the authority of facility managers

Delivered at awareness level; contains no sensitive operational procedures. Sessions with an accompanying speaker follow the programme's speaker protocol.

Lecturer: Dr Sapto Priyanto with an accompanying speaker · ASIS CPP: No direct domain equivalent · CTCB CCTP: Terrorism Fundamentals, Threat Identification

06Regulatory Framework and StandardsISTP-M06 · Day 2 · Online · 2 hrs · 3S

Scope

  • Law No. 5/2018, Government Regulation No. 43/2012, and self-managed security regulation
  • The National Vital Object framework and sectoral regulation for regulated industries
  • Law No. 27/2022 on Personal Data Protection within the corporate security function
  • ISO 18788, ISO 28000 and ISO 31000 as management system frameworks

Learning outcomes — participants are able to:

  • Map the regulatory obligations applicable to the participant's facility
  • Produce a baseline compliance checklist for the security function

Lecturer: 3S lecturer (to be announced) · ASIS CPP: Domain 2 — Business Principles & Practices (partial); Domain 1 — Security Principles & Practices (partial) · CTCB CCTP: Prevention and Mitigation · ISO 18788:2015, ISO 28000:2022

07Security LeadershipISTP-M07 · Day 2 · Online · 2 hrs · 3S

Scope

  • Enterprise Security Risk Management (ESRM)
  • Security as a business enabler: budget, value and reporting to the board
  • Building a security culture: from compliance to commitment

Learning outcomes — participants are able to:

  • Build the case for a security budget in business language
  • Design the first steps towards a security culture in the organisation

Lecturer: 3S lecturer (to be announced) · ASIS CPP: Domain 2 — Business Principles & Practices · CTCB CCTP: — · ASIS ESRM Guideline

08Cyber Security for IndustryISTP-M08 · Day 2 · Online · 2 hrs · 3S

Scope

  • IT/OT convergence and the security of industrial control systems
  • NIST CSF 2.0: Govern, Identify, Protect, Detect, Respond, Recover
  • Social engineering and the cyber insider threat
  • Combined physical–cyber attacks (technical term; distinct from 'hybrid threat' in national security doctrine)

Learning outcomes — participants are able to:

  • Map the points where physical and cyber risk meet within a facility
  • Use NIST CSF 2.0 as a common language with the information technology function

Lecturer: 3S lecturer (to be announced) · ASIS CPP: Domain 6 — Information Security · CTCB CCTP: — · NIST CSF 2.0, ISO/IEC 27001:2022

09Industrial Security FoundationsISTP-M09 · Day 3 · On site · 3 hrs · 3S

Scope

  • The concept of industrial security and the national security ecosystem
  • Threat typology: terrorism, organised crime, insider threat, hybrid threat
  • Defence in depth as a working framework

Learning outcomes — participants are able to:

  • Use the core vocabulary and frameworks of industrial security consistently
  • Classify threats against the assets of a facility

A summary of the foundation material is also sent as pre-programme reading (D-7) so that participants share a common vocabulary from Day 1.

Lecturer: 3S lecturer (to be announced) · ASIS CPP: Domain 1 — Security Principles & Practices · CTCB CCTP: Terrorism Fundamentals

10Risk AnalysisISTP-M10 · Day 3 · On site · 3 hrs · 3S

Scope

  • ISO 31000:2018 and the ASIS Security Risk Assessment
  • Threat–Vulnerability–Consequence (TVC) and its relationship to TVRA
  • CARVER+Shock for asset prioritisation — a method developed for food defence as a derivative of the military CARVER method
  • The risk register, the 5×5 matrix, and the risk treatment plan

Learning outcomes — participants are able to:

  • Produce a simple risk register for a single facility
  • Set risk treatment priorities using a risk matrix

Lecturer: 3S lecturer (to be announced) · ASIS CPP: Domain 1 — Security Principles & Practices · CTCB CCTP: Threat Identification · ISO 31000:2018

11Crisis ManagementISTP-M11 · Days 3–4 · On site · 4 hrs · 3S

Scope

  • Organisational resilience as the overarching framework: prevent, prepare, respond, recover
  • ISO 22301 Business Continuity Management System and drafting a concise BCP
  • The Incident Command System (ICS) and crisis communication
  • Tabletop exercise: active threat and bomb threat scenarios; evacuation, lockdown, recovery

Learning outcomes — participants are able to:

  • Perform a role within the ICS structure during a tabletop exercise
  • Draft a concise BCP framework for the organisation's critical functions

Lecturer: 3S lecturer (to be announced) · ASIS CPP: Domain 7 — Crisis Management · CTCB CCTP: Preparedness and Response · ISO 22301:2019

12Physical Security SystemsISTP-M12 · Day 4 · On site · 3 hrs · 3S

Scope

  • Defence in depth, CPTED, perimeter and standoff distance
  • CCTV and video analytics, access control, intrusion detection
  • Control room integration (SOC/PSIM)
  • ISO 18788 for the standardisation of security operations

Learning outcomes — participants are able to:

  • Evaluate the physical security layers of a facility
  • Recommend physical security improvements on the basis of risk priority

Lecturer: 3S lecturer (to be announced) · ASIS CPP: Domain 5 — Physical Security · CTCB CCTP: Prevention and Mitigation · ISO 18788:2015

13Counter-Terrorism and Early DetectionISTP-M13 · Day 4 · On site · 3 hrs · UI

Scope

  • Hostile reconnaissance and pre-attack indicators
  • The attack planning cycle, at awareness level
  • IED, active shooter and VBIED threats; CBRN at awareness level
  • Reporting and coordination with the competent authorities

Learning outcomes — participants are able to:

  • Recognise indicators of hostile reconnaissance in the vicinity of a facility
  • Draft a facility reporting protocol to the competent authorities

Contains no sensitive operational procedures and does not assume the authority of the state.

Lecturer: Dr Sapto Priyanto with an accompanying speaker · ASIS CPP: Domain 1 — Security Principles & Practices (partial) · CTCB CCTP: Threat Identification, Prevention and Mitigation

14Field Case Study — On-Site Security Assessment (Role Play: Counter-Surveillance)ISTP-M14 · Day 5 · On site · 8 hrs · UI

Scope

  • Briefing, allocation of roles and safety protocols
  • Field observation in a shopping centre
  • Counter-surveillance detection role play: locating a target figure from activity patterns alone
  • Preparing and presenting findings to a panel

Learning outcomes — participants are able to:

  • Apply counter-surveillance detection techniques ethically in a public space
  • Present findings and security recommendations to an assessment panel

Scenarios are fictitious, run with the permission of the venue management, and without disturbing visitors.

Lecturer: Dr Sapto Priyanto · logistics & safety: INDOGUARD.org · ASIS CPP: Domain 1 — Security Principles & Practices (applied); Domain 5 — Physical Security (applied) · CTCB CCTP: Threat Identification · ISO 31000 (field application)

Structure at a glance

CodeTopicModeDayInstitutionHrs
ISTP-M01The Role of Industrial Security in Terrorism PreventionOnline1BNPT2
ISTP-M02Intelligence Gathering for Industrial SecurityOnline1UI2
ISTP-M03Psychology for Industrial SecurityOnline1UI2
ISTP-M04Criminological Theory and Security System ConceptsOnline1UI2
ISTP-M05Terrorist Motivations and Modi Operandi in IndonesiaOnline2UI2
ISTP-M06Regulatory Framework and StandardsOnline23S2
ISTP-M07Security LeadershipOnline23S2
ISTP-M08Cyber Security for IndustryOnline23S2
ISTP-M09Industrial Security FoundationsOn site33S3
ISTP-M10Risk AnalysisOn site33S3
ISTP-M11Crisis ManagementOn site3–43S4
ISTP-M12Physical Security SystemsOn site43S3
ISTP-M13Counter-Terrorism and Early DetectionOn site4UI3
ISTP-M14Field Case Study — On-Site Security Assessment (Role Play: Counter-Surveillance)On site5UI8
Total40

Curriculum structure v2.0 · learning outcomes validated by the Academic Lead · effective 27 September 2026. Any substantial change to the curriculum requires the approval of the Academic Board.

WhatsApp