Contributed content: this article was written by a third-party contributor and does not necessarily reflect the views of Hesper Herald. Editorial and Advertising Policy
Not long ago, the manager of a Midlands warehouse reported a fire door at the back of the building that had stopped shutting as intended, and when a security engineer arrived to examine it, the fault itself proved less troubling than the fact that weeks had gone by without anyone noticing. A drooping hinge had opened a gap, the door had been wedged ajar several times for ventilation, and the alarm sensor watching that entrance had not been tested since it was fitted three years earlier.
As it happened, no harm came of it, with no intrusion, nothing taken and nothing to write up, yet a lapse like this is precisely what makes life easy for an opportunist, and it is a good deal more common than the average business owner imagines.
Figures from the Home Office’s Commercial Victimisation Survey put the share of UK firms likely to suffer some kind of crime this year at nearly a third, and although that covers a broad mix of offences, from theft committed by customers to violence directed at staff, burglary and vandalism, the very threats good security is meant to deter, still form a significant slice: in a typical year, 8% of businesses are hit by a burglary or a failed attempt at one, and vandalism affects a further 8%. Separately, the ONS counted 78,707 burglaries at non-domestic premises across England and Wales in the twelve months ending March 2025, hardly a modest tally and not an evenly spread one, because some premises are easier to hit than others, and the difference usually lies less in one obvious failure than in a small cluster of weaknesses, both physical and procedural, that build up slowly.
Specialists carrying out surveys of commercial premises, from a lone shop unit to a warehouse complex of several buildings, describe a recurring set of five warning signs, none of which looks alarming in isolation but which together give an unmistakable account of how exposed a given site really is.
1. Where the Cameras Fail to Reach
Cameras are fitted at the great majority of businesses, but far fewer have them aimed at the places a would-be intruder would realistically use to force entry.
Installers meet the same pattern constantly: a commercial CCTV system put in years ago and added to in fits and starts as the building changed around it, leaving newer extensions, storerooms or stretches of car park outside its view. They routinely find ageing analogue equipment too coarse to pick out anyone’s face or read a number plate at a useful distance, recorders that keep only a handful of days of footage before wiping it, and cameras covering the entrance to the car park while a loading bay at the side goes unobserved.
Nor is the remedy necessarily to “install more cameras.” Shifting a couple of units already in place can get rid of a blind spot, or the better answer may be retiring an old DVR in favour of an IP-based NVR with sensible retention, remote viewing and motion-triggered alerts, since what counts is whether coverage genuinely follows the building’s true weak points rather than wherever the cameras were first put up a decade ago.
2. Outdoor Lighting That Falls Short
Lighting faults are among the cheapest to put right yet among the most often ignored: overgrown shrubs screening the sensor on a dusk-to-dawn light, a motion-sensor floodlight left broken for months and unreported because the site is empty after dark, or lamps installed when the building was new and never reconsidered as planting grew up or extensions went on.
Dim lighting is not only a problem for anyone keeping watch by eye, since it also undercuts CCTV, with even a well-specified camera struggling in poor light unless it has enough illumination or infrared assistance matched to the distances involved, and engineers find that taking five minutes to stroll the boundary once night has fallen reveals more than most people would predict: which parts are well lit, which are lit at the wrong angle and which have slipped into darkness unnoticed.
3. Alarm Systems Left Without Testing or Servicing
Coming across an intruder alarm that has not seen an engineer for over a year is now so ordinary that experienced installers hardly bother to mention it, because a system is often installed and commissioned, then left largely to its own devices unless a false alarm drags someone’s attention back to it.
Two reasons explain why this matters. One is that sensors wear with age, so PIR units gradually lose calibration, standby batteries grow too old to rely on and detectors blending microwave and infrared sensing in one dual-technology unit need recalibrating at intervals to keep behaving as intended. The other, frequently the more serious, concerns compliance, because the national policy currently in force allows a police response for systems serviced in line with BS EN 50131 and monitored by a receiving centre with NSI or SSAIB accreditation, whereas letting maintenance lapse and building up a string of false alarms can see that priority withdrawn altogether, leaving the business to fall back on its keyholders alone or on a third-party service.
Regular servicing is therefore far more than a formality to tick off, as it is what keeps a system performing the task it was put in to do.
4. Access Arrangements That Are Unchecked or Stale
Owners tend to be most taken aback by this issue, since it rarely resembles a security weakness until somebody sets it down in black and white: master keys unchanged through several rounds of staff departures, alarm codes passed around a team years ago and never altered, and fobs handed to former staff and never cancelled.
Consultants regularly visit sites where the person in charge honestly has no idea how many people could still let themselves in with keys or codes that function, which is no criticism of that individual but simply the natural consequence of years of changing staff without a proper system of access control logging who arrived, who left and when.
A modern electronic access system, whether entry is by card, by fob or by biometric reading, offers two benefits a bundle of shared keys can never match, restricting which areas people may enter and at what hours while keeping an auditable log, and should something go wrong, that log frequently marks the line between knowing exactly how events unfolded and simply guessing.
5. Alarms That Detect but Summon No One
In practice, an alarm that keeps sounding while nobody responds is worth about as much as leaving the building unprotected, yet engineers still encounter premises whose intruder alarm stands alone without any link to a monitoring station, relying on nothing but its own racket to frighten away whoever is breaking in or to attract the attention of passers-by.
That gap disappears once a system is monitored, linked to a receiving centre and backed by an up-to-date keyholder list: when a signal comes in, the ARC can verify the alert, call keyholders in the proper order and, where the system is entitled to it, ask the police to attend. Without that connection, response speed is pure chance, turning on whether somebody hears the alarm, whether that person knows who to ring and whether the contact can be reached.
The keyholder list itself also justifies a separate check, since engineers frequently find disconnected numbers, names of people no longer employed by the business and a calling sequence bearing no relation to who could genuinely get there at short notice.
Seeing How It All Connects
No single one of these five problems is ruinous by itself, and a floodlight grown a little faint or an unrevised keyholder list will not finish off a business on its own, but they rarely appear in isolation: sites with poor lighting often turn out to have an elderly CCTV system that nobody improved to compensate for the gloom, and a business careless about cancelling old fobs is usually no more careful about getting its alarm serviced, so the effects build on one another.
A thorough inspection of the site is worthwhile not because it reveals one spectacular defect but because it shows how a pattern runs through all five areas, with each shaping the others, which is why a warehouse with first-class cameras yet no monitored link for its alarm still has a critical hole, and a retail unit with a carefully maintained alarm but cameras that leave blind spots stays exposed to opportunistic theft its alarm would never register alone.
Owners who notice one of these weaknesses, or perhaps two, in their own buildings should take the obvious step of asking a suitably qualified person to walk the whole site rather than letting an incident settle the question. The warehouse manager in the opening story was lucky, the gap being spotted before anyone exploited it, but few businesses can count on such fortune, and given how often commercial premises are currently burgled, chance is hardly something to build a security plan around.
