Your scored breakdown
All six stages scored out of 12, so you can see at a glance which parts of the chain run on their own and which wait on a person.
Incident handling has six stages. Most enterprise security programs are fully built through stage two and improvised after that. Answer 24 questions in about three minutes and see exactly where the gap opens in yours.
Security programs get measured on inputs: cameras deployed, guard hours purchased, sites covered. Those numbers go up every year while the outcome that matters stays flat, because more detection with the same response capacity produces more evidence, not fewer incidents. The scorecard measures the other direction. It asks what your program does in the first 30 seconds, who gets reached and how fast, whether deterrence happens without a person deciding to trigger it, and whether an incident can close without someone writing a report at the end of a shift.
Answer honestly rather than aspirationally. The value is in the gap it exposes, and a flattering result is worth nothing in a budget review. Nobody sees your answers unless you ask for a review.
Stage one. Whether the system knows what it's looking at, rather than only that something moved. Most enterprise programs score well here, so treat this as your baseline.
Camera coverage and detection coverage are not the same thing.
Classification is what makes automated action safe to turn on.
Alert fatigue is the quiet reason real events get missed.
Cloud-only architectures go blind exactly when someone cuts the line.
Stage two. Whether an alert is real, and who decides. This is where most programs are still entirely manual, and where the gap usually opens.
Verification is the step that decides whether anything else happens.
Measure from the detection timestamp, not from when the report was filed.
Every human step in the chain is a delay you can measure.
Verification that produces no context just moves the problem downstream.
Stage three. The first moment your program changes the outcome instead of documenting it. Deterrence is almost always a subset of camera coverage, so answer for the sites that matter.
Not what gets logged. What the intruder experiences.
Voice is the most effective non-physical deterrent in the field.
Perimeters, lots, gates, docks, and laydown areas, not just lobbies.
A single siren teaches people that nothing follows the siren.
Stage four. Getting a verified event to someone who can act on it. Without a mouse click, most programs stop here.
Count the manual steps between confirmation and notification.
A binder on a shelf is not an executable procedure.
Most serious incidents happen when the fewest people are watching.
Single points of failure show up on the worst night, not an average one.
Stage five. Guards, police, or a monitoring centre dispatching on verified video. What responders know before they arrive decides how the incident ends.
The answer drives both your cost per incident and your arrival time.
Live context is the difference between a response and a surprise.
False dispatches burn budget, goodwill, and police response priority.
If you can't measure it, you can't defend it or improve it.
Stage six. An incident isn't finished when the subject leaves. It's finished when there's a defensible record, available immediately rather than written from memory at the end of a shift.
Manual reporting is a recurring labor cost that rarely appears in a security budget.
A record written from memory two days later is not evidence.
Scattered evidence is what makes an incident hard to defend later.
Retrieval speed is what your organization experiences as security's value.
Tell us who you are and your score appears on the next screen, broken out by stage.
We use this to route a demo request if you ask for one. No call happens unless you request it.
Your band summary appears here.
Your score is yours to keep. Nothing else happens unless you ask.
Your result appears the moment you finish, scored stage by stage. It's an assessment, not a sales deck.
All six stages scored out of 12, so you can see at a glance which parts of the chain run on their own and which wait on a person.
How your result reads against published ASIS International research, so it lands as an industry pattern rather than a local failure.
The stage your program runs best, so the result reads as a plan to build on rather than a list of failures.
Any stage still running on manual effort shows in yellow. The shape of the problem is obvious without reading a word.
A score out of 72 and a named maturity band give you a defensible starting point for an internal case, not a vague sense that things could be better.
The three questions that separate a system that alerts from a system that resolves. Ask them of anyone, including us.
Bands describe capability, not effort. A well-run program with disciplined people and good cameras still lands mid-scale, because the band measures how much of the workflow runs without someone deciding to run it.
Almost nothing runs without a person deciding to run it. The program produces a record after the fact, and little else happens on its own.
A few steps are automated, usually in detection. Verification and everything downstream still run on manual effort.
Parts of the workflow run on their own. The chain breaks wherever coverage or automation runs out.
Most of the chain holds without manual intervention. One or two stages still wait on a person being available.
The workflow runs end to end with limited handoffs. A stage or two still needs attention.
Detection through resolution runs as one workflow. People handle judgment calls, not routine steps.
You bring your score and a site layout. We walk the two weakest stages and show what closing them looks like with your existing solutions, and our autonomous capabilities, including SARA Agentic AI running the workflow from detection to resolution.
What happens with your answers, what the report contains, and how this relates to the models security teams already use.
Last updated: July 2026
Benchmark figures on this page come from Security Incident Management in 2025, published by ASIS International. The study was fielded in September 2024 with 618 respondents and 433 completed responses, giving a margin of error of roughly 5 percent at 95 percent confidence. The scoring model, band thresholds, and stage weightings are RAD's own and are published in full on this page. Scores are self-reported and are not an audit, a certification, or a substitute for a site assessment.