6 CFR 27.225
§ 27.225 Site security plans.
United States · 6 CFR — Domestic Security · Status: effective
Cite this
- Citation
- 6 CFR 27.225, § 27.225 Site security plans, United States, version 1 as recorded 2026-07-09, yourstate.us, https://yourstate.us/provision/12176
- Permanent ID
ys:prov:12176@1- SHA-256
307636c6c6959f99662646c1ec0a709376d2eb3a7fffb00ddc8ec630f4c2abef
The hash is SHA-256 of this version's text, with every run of whitespace collapsed to a single space and the ends trimmed. The ID always leads back here, and checking it says whether the text you cited is still the current version.
Full text
(a) The Site Security Plan must meet the following standards:
(1) Address each vulnerability identified in the facility's Security Vulnerability Assessment, and identify and describe the security measures to address each such vulnerability;
(2) Identify and describe how security measures selected by the facility will address the applicable risk-based performance standards and potential modes of terrorist attack including, as applicable, vehicle-borne explosive devices, water-borne explosive devices, ground assault, or other modes or potential modes identified by the Department;
(3) Identify and describe how security measures selected and utilized by the facility will meet or exceed each applicable performance standard for the appropriate risk-based tier for the facility; and
(4) Specify other information the Executive Assistant Director deems necessary regarding chemical facility security.
(b) Except as provided in § 27.235, a covered facility must complete the Site Security Plan through the CSAT process, or through any other methodology or process identified or issued by the Executive Assistant Director.
(c) Covered facilities must submit a Site Security Plan to the Department in accordance with the schedule provided in § 27.210.
(d) Updates and revisions.
(1) When a covered facility updates, revises, or otherwise alters its Security Vulnerability Assessment pursuant to § 27.215(d), the covered facility shall make corresponding changes to its Site Security Plan.
(2) A covered facility must also update and revise its Site Security Plan in accordance with the schedule in § 27.210.
(e) A covered facility must conduct an annual audit of its compliance with its Site Security Plan.
Legislative history
This is a federal regulation, adopted through agency rulemaking under the Administrative Procedure Act — not enacted by a recorded vote of Congress.