← Back to Insights

BS7858 Security Screening & Vetting: What It Is and Why It Matters

30 July 2026
BS7858 Security Screening & Vetting: What It Is and Why It Matters

Every security company in the UK has a responsibility. A responsibility to hire the right people. To protect clients. To build trust. But how do you prove your staff is truly vetted and trustworthy? That’s exactly where BS7858 security screening & vetting comes in.

Whether you’re running a security firm, managing a guarding contract, or looking to achieve SIA ACS status, BS7858 is a standard you simply cannot ignore in 2026.

In this guide, BizGrow Holdings breaks it all down for you. Simply. Clearly. Practically.

What Is BS7858 Security Screening & Vetting?

BS7858 is a British Standard for the screening and vetting of individuals working in a secure environment.

It was created by the British Standards Institution (BSI). It sets out a clear process that employers must follow before hiring anyone into a security-related role.

Think of it as a detailed background check but with a structured, recognised framework behind it.

The standard covers:

  • Who the person is
  • Where they’ve worked for the past 5 years
  • Whether they have a criminal record
  • Their right to work in the UK
  • Their financial background

BS7858 is not just a tick-box exercise. It’s a proper, in-depth process that helps security businesses reduce risk and hire with confidence.

The latest version of the standard was updated to reflect modern hiring challenges, including remote working, digital identity checks, and gaps in employment. In 2026, following BS7858 is considered best practice across the UK security industry.

Who Does BS7858 Apply To?

Security Companies & SIA-Licensed Businesses

BS7858 is most commonly associated with the private security industry.

If you run a security company in the UK, whether you provide door supervisors, CCTV operators, close protection officers, or security guards, this standard applies to you.

In fact, if you’re working towards or already hold SIA Approved Contractor Scheme (ACS) status, BS7858 compliance is a core requirement. Inspectors will look for it during your audit.

Any member of staff who works in a security-critical role must be vetted to BS7858 standards before they begin work.

Other Industries Using BS7858

BS7858 isn’t limited to security companies alone.

Many other sectors adopt this standard when hiring staff who will work in sensitive or high-security environments. These include:

  • Facilities management companies
  • Cash-in-transit and logistics firms
  • NHS and healthcare organisations
  • Local councils and government bodies
  • Data centres and IT infrastructure providers
  • Aviation and airport ground services

Essentially, any organisation where trust, safety, and security are non-negotiable will benefit from following BS7858 vetting procedures.

Key Requirements of BS7858 in 2026

BS7858 is thorough. It’s designed to leave no stone unturned. Here’s what the standard requires:

5-Year Employment History Check

This is the backbone of BS7858.

Every candidate must provide a full, unbroken 5-year employment history. This includes:

  • Previous employers
  • Dates of employment
  • Reasons for leaving
  • Contact details for verification

If there are any gaps in employment, they must be explained and documented. Even periods of self-employment, education, or illness must be accounted for.

You can’t just take someone’s word for it. Each piece of information must be independently verified. That means contacting previous employers directly and keeping written records.

This step alone catches a significant number of inconsistencies in job applications.

Identity Verification

Before anything else, you must confirm the candidate is who they say they are.

BS7858 requires you to check original identity documents. These typically include:

  • Passport or national ID
  • Proof of address (utility bill, bank statement)
  • Right to work documents

In 2026, digital identity verification tools are increasingly used alongside traditional document checks. These tools speed up the process while maintaining rigour.

All documents must be recorded and retained as part of the vetting file.

Criminal Record & DBS Checks

A Disclosure and Barring Service (DBS) check is a mandatory part of BS7858 compliance.

For most security roles, an Enhanced DBS check is required. This reveals:

  • Spent and unspent convictions
  • Cautions, reprimands, and warnings
  • Information held by local police

A criminal record doesn’t automatically disqualify a candidate. But it must be assessed in context, considering the nature of the offence, how long ago it occurred, and the role they’re applying for.

All decisions must be documented clearly and consistently.

Right to Work in the UK

This is a legal requirement, not just a BS7858 one.

Every employer in the UK must verify that a candidate has the legal right to work before employment begins. BS7858 builds this into the vetting process formally.

You must check original documents, take copies, and record the date of the check. For candidates with time-limited right to work, you must also carry out follow-up checks before their permission expires.

Failing to do this correctly can result in civil penalties and reputational damage for your business.

Credit & Financial Checks

This element often surprises people, but it’s an important one.

BS7858 requires a basic credit check on candidates. Why? Because someone under severe financial pressure may be more vulnerable to bribery or dishonest behaviour.

This isn’t about judging people harshly. It’s about managing risk in security-sensitive environments.

The credit check typically looks at:

  • County Court Judgements (CCJs)
  • Insolvency or bankruptcy history
  • Severe financial irregularities

Minor financial issues don’t automatically disqualify a candidate. But they must be noted and considered during the overall vetting assessment.

Why BS7858 Compliance Is Critical for UK Security Businesses

Let’s be direct. In 2026, BS7858 compliance isn’t optional; it’s expected.

Here’s why it matters so much:

1. It Protects Your Clients

Your clients trust you to put the right people on their sites. BS7858 gives them confidence that every member of your staff has been properly checked.

2. It Protects Your Business

One bad hire can destroy years of hard work. A properly vetted workforce reduces the risk of theft, misconduct, or security breaches linked to your staff.

3. It Supports Contract Wins

Many large contracts, especially in the public sector, require proof of BS7858-compliant vetting. Without it, you simply won’t qualify.

4. It Strengthens Your Reputation

Companies that follow BS7858 demonstrate professionalism. Clients, partners, and auditors take notice.

5. It’s a Requirement for SIA ACS

If you’re pursuing or maintaining SIA ACS approval, BS7858 is not optional. It’s assessed directly during inspections.

At BizGrow Holdings, we’ve seen first-hand how businesses that get vetting right win more contracts, pass audits confidently, and build lasting client relationships.

BS7858 and SIA ACS | What’s the Connection?

Many security business owners ask this question, and it’s a great one.

SIA ACS (Approved Contractor Scheme) is the quality standard run by the Security Industry Authority. It recognises security companies that demonstrate excellence in how they operate.

BS7858 and SIA ACS are closely linked. Here’s how:

  • ACS inspectors directly assess whether your vetting processes meet BS7858
  • Your vetting files must be complete, consistent, and auditable
  • Any gaps or inconsistencies in vetting can cost you ACS points or even fail your audit

BS7858 compliance is one of the most heavily weighted areas during an ACS inspection. Companies that get it right score well. Companies that don’t struggle.

If you’re working towards SIA ACS, getting your BS7858 process in order is one of the highest-priority steps you can take.

BizGrow Holdings specialises in helping UK security companies align their vetting processes with both BS7858 and SIA ACS requirements, so you’re audit-ready from day one.

Common BS7858 Mistakes and How to Avoid Them

Even experienced security businesses make vetting errors. Here are the most common ones and how to avoid them:

❌ Incomplete Employment Histories

Accepting a CV without verifying every employer is a major mistake. Always contact previous employers directly and document responses.

Use a structured vetting checklist for every candidate.

❌ Unverified Gaps in Employment

Gaps happen, but they must be explained and evidenced. Leaving them unaddressed is a red flag in any audit.

Request a written explanation and supporting evidence for any gap over 28 days.

❌ Accepting Photocopies Instead of Originals

BS7858 requires original documents to be seen and verified. Copies alone are not acceptable.

Always check originals in person or through an approved digital verification tool.

❌ No Consistent Vetting Records

Every vetting decision must be documented. If it’s not written down, it didn’t happen as far as an auditor is concerned.

Maintain a complete, consistent vetting file for every member of staff.

❌ Starting Someone Before Vetting Is Complete

This is one of the most serious errors. BS7858 requires vetting to be completed before employment begins (in most cases).

Never place staff on site until their full vetting file is complete and approved.

❌ Not Keeping Records Up to Date

Vetting isn’t a one-time event. Right-to-work checks, for example, must be repeated for staff with time-limited permissions.

Set calendar reminders for expiry dates and review vetting records regularly.

How BizGrow Holdings Supports Your BS7858 Compliance

Getting BS7858 right takes time, knowledge, and the right systems. Many security businesses struggle to manage it consistently, especially as they grow.

That’s where BizGrow Holdings comes in.

We are a UK-based compliance consultancy specialising in the security industry. We help security companies of all sizes build vetting processes that are fully aligned with BS7858 and that hold up under SIA ACS inspection.

Here’s how we support you:

  • BS7858 Process Review: We audit your current vetting process and identify gaps
  • Vetting Templates & Documentation: We provide ready-to-use, compliant vetting forms and file structures
  • Staff Training: We train your team to carry out BS7858-compliant checks consistently
  • SIA ACS Preparation: We align your vetting process with ACS requirements, so you score highly at inspection
  • Ongoing Support: We stay with you beyond implementation to ensure you remain compliant as your business grows

Our clients don’t just pass audits: they build security businesses that clients trust, and competitors respect.

Whether you’re a startup security company or an established firm looking to tighten your processes, BizGrow Holdings has the expertise to help you get BS7858 right.

📞 Call us: 07898 205035
📧 Email: info@bizgrow-holdings.co.uk
🌐 Visit: bizgrow-holdings.com

Final Thoughts

BS7858 security screening & vetting is one of the most important standards in the UK security industry.

It protects your clients. It protects your business. And it proves that you take your responsibilities seriously.

In 2026, the bar is higher than ever. Clients expect more. Auditors look deeper. And contracts go to companies that can demonstrate real, documented compliance.

Don’t leave vetting to chance.

Get it right with a system that works and a team that knows exactly what auditors are looking for.

BizGrow Holdings is here to help. Get in touch today.

Frequently Asked Questions 

Q1. Is BS7858 a legal requirement in the UK?

BS7858 is a British Standard, not a law. However, it is a mandatory requirement for SIA ACS-approved companies and is widely expected across the UK security industry. Non-compliance can result in lost contracts and failed audits.

Q2. How long does a BS7858 vetting check take?

It typically takes between 2 and 6 weeks, depending on how quickly previous employers and references respond. Starting the process early, before a candidate’s intended start date, is strongly recommended.

Q3. Does BS7858 apply to subcontractors and agency staff?

Yes. If subcontractors or agency workers are carrying out security duties on your behalf, they must also be vetted to BS7858 standards. Responsibility remains with the hiring company.

Q4. What happens if an employee fails BS7858 screening?

A failed check doesn’t automatically mean rejection. Each case must be assessed individually based on the nature of the issue and the role. All decisions must be documented with clear reasoning.

Q5. How often should BS7858 checks be renewed?

There is no fixed renewal period under BS7858. However, right-to-work checks must be repeated for staff with time-limited permissions, and businesses should review vetting records regularly to ensure they remain accurate and up to date.