SIA ACS Explained: Everything a Security Company Needs to Know
What is SIA ACS? Is it mandatory? Why might your security company need ACS if your guards already hold SIA licences? What does the assessment involve, how much does it cost, and can ACS help you compete for larger security contracts?
If you run a private security company in the UK, sooner or later you are likely to come across SIA ACS.
A potential client may ask whether you are ACS approved. A tender might include ACS in its supplier requirements. Or you may notice established security companies displaying the ACS accreditation mark and wonder whether your business should be working towards it too.
Quick answer:
An SIA licence relates to the individual carrying out licensable security activity. SIA ACS assesses the security business behind those individuals.
SIA licenses people. ACS approves eligible security contractors.
That distinction matters because a client is not only buying a licensed security officer. They are relying on the company that recruits, screens, trains, deploys, supervises and manages that officer.
This guide explains what ACS means, who can apply, what the standard assesses, how the application and assessment process works, what it costs and how to prepare your security company properly.
In This Guide
- What is SIA ACS?
- SIA licence vs ACS
- Is ACS mandatory?
- Why companies pursue ACS
- Who can apply?
- What does ACS assess?
- Policies, processes and evidence
- Application process
- What happens during assessment?
- How much does ACS cost?
- How long does it take?
- Common preparation mistakes
- What happens after approval?
- Is ACS worth it?
- Can you prepare yourself?
- Frequently asked questions
What Is SIA ACS?
SIA ACS stands for the Security Industry Authority Approved Contractor Scheme.
The Security Industry Authority regulates the UK’s private security industry. While the SIA licenses individuals carrying out certain regulated security activities, ACS is a voluntary quality-assurance scheme for eligible private security businesses.
Through ACS, a security contractor can be assessed against the SIA’s Approved Contractor Scheme standard and, if successful, approved for specific security activities.
ACS approval can cover regulated activities including:
- Security guarding
- Door supervision
- Public space surveillance (CCTV)
- Close protection
- Key holding
- Cash and valuables in transit
- Vehicle immobilisation, where applicable in Northern Ireland
The activities for which you seek approval should reflect the regulated security services your company actually provides.
SIA Licence vs SIA ACS: What’s the Difference?
This is one of the most important distinctions for a security-company owner to understand.
| SIA Licence | SIA ACS |
|---|---|
| Relates to an individual | Relates to the security contractor |
| Applies to people carrying out applicable licensable activities | Assesses how the security business operates |
| Held by guards, door supervisors, CCTV operators and other licence holders | Approval is held by the business for specified activities |
| Focuses on the individual’s eligibility to perform regulated work | Looks at management, people, resources, service delivery and business controls |
| Required for applicable licensable roles | Participation in ACS is voluntary |
Imagine your company deploys 40 officers and every one of them holds the correct SIA licence. That is essential where licensing is required, but those licences do not tell a prospective client how your company recruits staff, screens them, manages contracts, handles incidents, monitors performance or controls its records.
Licensed guards do not automatically mean an ACS-ready security company.
Is SIA ACS Mandatory?
No. SIA ACS is a voluntary scheme.
A private security company is not automatically required by law to obtain ACS approval simply to operate.
However, there is an important difference between something being legally mandatory and being commercially required by a buyer.
The SIA states that ACS approval is required for many public contracts, and some private-sector buyers, frameworks and procurement exercises also include ACS as part of their supplier criteria.
The more useful commercial question is often:
Could not having ACS prevent our company from competing for the contracts we want?
ACS does not guarantee that your company will win a tender. You may still be assessed on price, experience, mobilisation, capacity, references, financial standing, social value, methodology and technical capability.
But there is a major difference between losing a tender because another company submitted a stronger bid and being unable to compete because you do not meet the buyer’s minimum requirements.
Compliance does not always win the contract. Sometimes it is what gets you through the door.
Why Do Security Companies Get SIA ACS?
1. Access to Contract Opportunities
If ACS is listed as a minimum supplier requirement, a company without approval may be unable to compete regardless of how strong its security service is.
This can make ACS particularly relevant to businesses targeting public-sector contracts, larger commercial clients, facilities-management frameworks and more formal procurement environments.
2. Greater Buyer Confidence
Any security company can describe itself as professional and reliable. Buyers still need a way to evaluate that claim.
ACS provides an independently assessed framework through which an eligible security business can demonstrate that it has been assessed against the SIA’s standard.
Approved contractors are also included on the SIA’s register and can use the ACS accreditation mark in accordance with SIA rules.
3. Stronger Business Systems
This is one of the most useful benefits of preparing properly for ACS.
Security businesses can grow quickly. Contracts increase, employee numbers rise and management becomes busier, but the systems behind the company do not always develop at the same speed.
ACS preparation can highlight weaknesses in areas such as:
- Recruitment and screening
- Training and employee records
- Customer and contract management
- Complaints and incidents
- Risk management
- Financial controls
- Performance monitoring
- Document control
- Operational procedures
- Management responsibilities
The value of ACS preparation is therefore not simply obtaining another accreditation. Done properly, it can help create a more controlled and scalable security business.
Who Can Apply for SIA ACS?
A security company must meet the SIA’s eligibility requirements before it can progress through the approval process.
Current requirements include, among other things, that an applicant must:
- Provide private security services in the UK
- Offer services in activities regulated by the SIA
- Provide those services under contract
- Have provided contracted security-industry services for at least 12 months
- Supply at least two licensable operatives in each activity for which approval is sought
- Ensure people deployed on regulated activity meet the SIA’s current employment-status requirements
- Meet the SIA’s fit-and-proper requirements
- Meet applicable SIA licensing requirements for directors and controlling minds
- Deploy security operatives holding the correct SIA licences
Can a new security company get ACS straight away?
Generally, no. The current eligibility rules require the business to have supplied contracted security-industry services for at least 12 months before applying.
However, a new company that intends to pursue ACS later can begin building the right policies, processes and records from day one.
Creating proper systems early is usually much easier than trying to reconstruct a year’s worth of screening records, training evidence, customer records, incident reports and management reviews shortly before an assessment.
Always check the latest official SIA eligibility guidance before applying because requirements can change.
What Does SIA ACS Actually Assess?
For businesses following the standard route, the current ACS standard contains seven broad criteria:
- Strategy
- Service Delivery
- Commercial Relationship Management
- Financial Management
- Resources
- People
- Leadership
These are broken down into 33 sub-criteria and 78 indicators.
The assessment is not simply a checklist asking whether certain documents exist. Assessors take a broader view of how the business operates and whether its systems work in practice.
Policies, Processes and Evidence: What Assessors Are Looking For
One of the biggest mistakes a security company can make is treating ACS as a paperwork exercise.
Downloading generic policies, changing the company name and storing them in an ACS folder does not prove that those procedures are actually being followed.
A useful way to think about ACS compliance is:
Policy → Process → Implementation → Evidence → Review → Improvement
For example, your company may have a complaints procedure. But can you demonstrate how complaints are received, recorded, investigated, communicated, closed and reviewed by management?
The same principle applies across the business:
- Recruitment: Can you show that real employees were recruited using your documented process?
- Screening: Are screening records complete, accurate and controlled?
- Training: Where are the records, and how are training needs identified?
- Customer service: How is customer satisfaction monitored and acted upon?
- Incidents: Can you demonstrate that incidents are recorded, escalated, reviewed and closed?
- Performance: Who reviews KPIs, how often, and what happens when performance falls below expectations?
Your documented systems should reflect what your business actually does — and your evidence should support it.
The ACS Self-Assessment Workbook
The ACS Self-Assessment Workbook is an important part of preparation for businesses following the standard route.
Rather than treating it as a form that simply needs completing, use it as a structured gap-analysis tool.
For every requirement, ask:
- Do we meet this requirement?
- If yes, can we prove it?
- If partially, what is missing?
- If no, what needs to be created, changed or implemented?
The important difference is between saying “we think we’re compliant” and being able to demonstrate how the business meets the requirement.
What Does the SIA ACS Application Process Look Like?
There are currently standard and passport routes to ACS approval. For a business following the standard route, the process broadly looks like this:
- Check EligibilityConfirm that your company meets the current SIA eligibility requirements.
- Complete a Gap ReviewCompare your existing business systems and evidence against the ACS requirements.
- Prepare the BusinessCorrect gaps in policies, processes, responsibilities, records and implementation.
- Complete the Self-AssessmentWork through the ACS Self-Assessment Workbook and supporting report.
- Apply to the SIASubmit your application and pay the appropriate application fee.
- Eligibility ChecksThe SIA reviews the application and carries out its required checks.
- Arrange the AssessmentWhen instructed, arrange your assessment with an approved assessing body.
- Address FindingsRespond to any improvement needs identified during the assessment.
- SIA DecisionThe SIA reviews the assessment report and makes the approval decision.
- Maintain ComplianceIf approved, continue operating the systems and complete ongoing assessment and registration requirements.
What Happens During an ACS Assessment?
The assessor does not simply sit in a meeting room and work through 78 questions one by one.
The SIA describes the assessment as taking a holistic view of the business.
Before the assessment, the assessor may review information including your self-assessment, staff information, contracts and the sectors in which your company operates.
During the assessment, they may:
- Review company documents and management systems
- Visit offices or control rooms
- Visit operational sites
- Interview employees
- Speak with customers
This is why compliance needs to exist beyond management’s filing cabinet.
If your procedures say officers receive certain briefings but the officers interviewed know nothing about them, there may be a problem. If you say customer feedback is regularly collected but cannot demonstrate how, there may be a problem. If training is supposedly controlled but the records are incomplete, there may be a problem.
What your business says it does should match what your business can demonstrate it actually does.
What About British Standards?
Relevant security-industry British Standards and codes of practice can also form part of the assessment.
The SIA identifies BS 7858 as an important benchmark for screening and vetting, while other general or sector-specific standards may apply depending on the services your company provides.
A guarding company, events-security provider, key-holding business and close-protection provider may therefore have different operational standards to consider.
How Much Does SIA ACS Cost?
There are several costs to consider: the SIA application fee, annual registration fees, assessment-body charges and the cost of getting the company ready.
As of August 2026, SIA application fees are based on the number of licensable staff:
| Licensable Staff | SIA Application Fee |
|---|---|
| Up to 10 | £400 |
| 11–25 | £800 |
| 26–250 | £1,600 |
| More than 250 | £2,400 |
Once approved, the current annual registration fee is £25 per licensable individual deployed.
Assessment fees are paid separately to the chosen assessing body.
Don’t Forget the Cost of Preparation
A company with mature systems, complete records and properly implemented procedures may need relatively limited preparation.
A business with generic policies, incomplete employee files, inconsistent screening, poor document control and limited evidence may have considerably more work to complete.
Fees can change, so always verify the latest SIA charges before applying.
How Long Does SIA ACS Take?
There is no single realistic preparation timescale that applies to every security company.
Two businesses with the same number of officers can be in completely different positions.
One may already have controlled screening files, training records, customer-management systems, incident reporting and management reviews. Another may have incomplete records, generic documentation and important procedures that exist mainly in the director’s head.
Instead of asking only: “How long will ACS take?”
A better first question is: “How far away from ACS-ready are we today?”
A structured gap review gives you a much better starting point.
What Happens If the Assessor Finds Gaps?
Finding a problem does not necessarily mean the whole application immediately fails.
The assessment report can identify improvement needs where action is required to meet the ACS standard, as well as improvement opportunities.
Current SIA guidance allows new applicants a six-month period, once eligibility has been confirmed, in which to undergo assessment and address improvement needs arising from the assessment report.
For existing approved contractors, improvement needs identified during annual assessment normally need to be addressed within a shorter period.
Do not make the formal assessment your first gap analysis.
Common SIA ACS Preparation Mistakes
Starting Too Late
If ACS is likely to matter to your growth strategy, waiting until an important tender appears can create unnecessary pressure.
Relying on Generic Templates
A policy carrying your company name is not automatically a policy that reflects how your organisation actually operates.
Focusing Only on Paperwork
Assessors can examine operational practice, records, employees, customers and how your systems work in reality.
Having Processes but No Evidence
If a process is supposed to happen regularly, your company should normally be able to demonstrate that it happens.
Keeping Compliance in One Person’s Head
As a business grows, important systems need to be understood and implemented across the organisation rather than depending entirely on one director or manager.
Preparing for the Assessor Instead of the Business
The strongest question is not simply:
“What do we need to show the assessor?”
It is:
“What should a properly controlled security company be doing, and how can we demonstrate that we do it?”
What Happens After You Become ACS Approved?
ACS is not something you obtain once and then forget about.
Approved contractors must continue meeting the required eligibility conditions, approval conditions and ACS standard.
Businesses on the standard route are required to undergo annual assessment. Approved contractors must also re-register each year and renew their ACS approval every three years.
The SIA also expects approved businesses to notify it of relevant significant changes.
The objective is not to get through assessment day. It is to build systems that continue working after assessment day.
Is SIA ACS Worth It for a Small Security Company?
It can be, but the answer should depend on your business objectives rather than simply wanting another accreditation badge.
Before pursuing ACS, ask:
- What type of clients do we want?
- What contracts do we want to bid for over the next two or three years?
- Are prospective buyers already asking for ACS?
- Are we planning to move into larger commercial or public-sector work?
- Do our target frameworks or procurement processes require or expect ACS?
- Would strengthening our internal systems benefit the company even before approval?
If your growth strategy involves competing in more formal procurement environments, ACS may become commercially important.
Before spending time and money on accreditation, check the market you actually want to enter.
Review tender eligibility criteria, PQQ requirements, frameworks, approved-supplier requirements, procurement policies and the expectations of your target customers.
The question is not simply whether ACS is good to have. The question is whether ACS supports where you want your security business to go.
Can I Prepare for SIA ACS Myself?
Yes. Hiring an ACS consultant is not mandatory.
The SIA provides its own guidance, standard and Self-Assessment Workbook. Consultants are independent advisers and are not approved or endorsed by the SIA.
Responsibility for meeting the ACS requirements remains with the applicant business and its senior decision-makers.
Security companies often choose compliance support because understanding the requirements is only the beginning. Someone still has to review the existing business, identify gaps, improve documentation, implement processes, organise evidence, check employee records and prepare management for assessment.
At the same time, management may already be dealing with clients, rotas, recruitment, payroll, incidents, mobilisations, staff shortages, new business and tender deadlines.
For many companies, ACS preparation therefore becomes a substantial internal project competing for management time.
How ESC Support Ltd Can Help With ACS Preparation
Good ACS preparation should begin by understanding where your business stands today rather than immediately creating more paperwork.
Depending on your company’s position, our SIA ACS consultancy service can assist with:
- ACS compliance gap analysis
- Review of existing policies and procedures
- Company-specific policy and procedure development
- Self-assessment support
- Evidence and employee-record reviews
- Process implementation support
- Identification of outstanding compliance gaps
- Management preparation
- Pre-assessment readiness reviews
- Ongoing compliance support
The objective is not to make a company look compliant for one assessment.
It is to help create systems that can operate properly before, during and after the assessment process.
Frequently Asked Questions About SIA ACS
Is SIA ACS mandatory?
No. Participation in the Approved Contractor Scheme is voluntary. However, some buyers, tenders and public-sector contracts may require ACS approval as part of their supplier criteria.
If all my guards have SIA licences, do I still need ACS?
Individual SIA licences and company ACS approval serve different purposes. The licences relate to individuals carrying out licensable security activities, while ACS assesses the security contractor itself.
Do guards still need SIA licences if the company becomes ACS approved?
Yes. ACS approval for the company does not replace the licensing requirements applying to individuals carrying out licensable activities.
Can a brand-new security company get ACS?
Current eligibility rules generally require the company to have provided contracted security-industry services for at least 12 months before applying.
How much does SIA ACS cost?
As of August 2026, SIA application fees range from £400 to £2,400 depending on the number of licensable staff. Approved contractors also currently pay an annual registration fee of £25 per licensable individual deployed. Assessment-body fees are separate.
How long does ACS preparation take?
There is no universal timescale. It depends on the size and complexity of the company and how mature its existing policies, processes, records and evidence are. A gap assessment is usually the best starting point.
Can I prepare for ACS without a consultant?
Yes. A company can manage its own preparation using the SIA’s official guidance and Self-Assessment Workbook. A consultant is optional and should support the business rather than replace management responsibility for compliance.
Does ACS guarantee that I will win security contracts?
No. ACS cannot guarantee tender success. However, where a buyer requires ACS as part of its procurement criteria, approval may allow your company to compete for an opportunity that would otherwise be unavailable.
Final Thoughts: ACS Is About the Company Behind the Guards
If your guards are already correctly SIA licensed, why might the company still pursue ACS?
Because the customer is not only buying licensed security officers.
They are buying the organisation that recruits, screens, trains, deploys, supervises and supports those officers. They are relying on the company that manages incidents, communicates with the customer, monitors performance and ultimately takes responsibility for the security service being delivered.
The individual SIA licence and company-level ACS approval therefore answer two different questions.
For security companies looking to strengthen their systems, demonstrate credibility and compete for contracts where ACS matters, Approved Contractor status can form an important part of the company’s growth strategy.
The key is preparing properly rather than treating compliance as a last-minute paperwork exercise.
Preparing for SIA ACS? Start by Finding the Gaps.
You don’t need to guess whether your security company is ready. ESC Support Ltd can review your current compliance position, identify missing policies, processes and evidence, and help you understand what needs to be addressed before assessment.
You run the security business. We help manage the compliance.
See exactly how our SIA ACS consultancy supports you from start to finish →
Book Your FREE ACS Compliance Gap Check →Information in this guide is based on Security Industry Authority guidance available in August 2026. SIA requirements, processes and fees can change. Businesses should always confirm the latest official SIA requirements before applying.
“`