On the morning of 2 April 2015, Garissa University College became the site of one of the darkest days in Kenya's modern history. Gunmen linked to al-Shabaab entered the campus before dawn and, over the course of many hours, killed 148 people, most of them students who had done nothing more than go to sleep the night before expecting an ordinary day of classes. It remains one of the deadliest attacks ever carried out on Kenyan soil, and more than a decade later, it is still referenced whenever the country talks seriously about school and university security.
This article does not attempt to relive the events of that day in detail, and it is written with real care for the students, families, and communities who carry that loss. What it does attempt is something more forward-looking: an honest look at what has been publicly documented about the security gaps that existed before and during the attack, and what those documented gaps can teach Kenyan schools and universities today about protecting their own campuses. Security planning that grows out of remembrance, rather than sensationalism, is the only way a tragedy like Garissa can genuinely serve the people who come after.
What Has Been Publicly Documented About the Security Gaps
Several details about the lead-up to and response during the Garissa attack have been confirmed through parliamentary testimony, government statements, and extensive reporting in the years since. It has been publicly stated that Garissa University College's principal had requested additional security ahead of the attack, and that this request was not granted in time. Kenya's then Interior Minister later told a parliamentary committee that security officers had received intelligence about a possible attack beforehand, but that the response on the day itself was hampered by poor coordination between different security agencies.
The response timeline itself has also been widely documented and criticised. Kenya's elite Recce Squad, the specialised unit that eventually confronted the attackers, did not reach the campus until many hours after the assault began, a delay that was later attributed partly to logistical problems, including police helicopters that were not operational at the time, which forced personnel to travel by a combination of small aircraft and road transport. Public anger over this delay was significant and visible in the days that followed, with students and citizens directly questioning security forces over the gap between when the alarm was raised and when a coordinated tactical response actually arrived. It has also been noted that the physical layout of the student accommodation, with barred windows intended to keep intruders out, made it harder for students to escape or be rescued once the attackers had cornered them inside.
Taken together, these documented details point to a combination of failures rather than a single cause: a security request that went unmet, intelligence that was not acted on quickly enough, a delayed and poorly coordinated emergency response, and building design that inadvertently worked against the people it was meant to protect. This is not a simple story, and no single piece of technology or policy change would have addressed every one of these failures at once. But looking at each of them individually does offer real, transferable lessons for how Kenyan educational institutions think about safety today.
Lesson One: Security Requests From Institutions Need to Be Taken Seriously
One of the more sobering details from Garissa is that campus leadership had flagged concerns and asked for additional protection before the attack happened. Whether at a university, a national school, or a private academy, institutional leaders are often the first to notice when a threat feels credible, whether that is a specific warning, a pattern of suspicious activity, or simply a location that feels exposed given its surroundings. Schools and universities benefit from having a genuine, responsive channel to escalate security concerns, whether that means engaging local police commanders directly, working with county security committees, or contracting a private security provider who can respond faster than waiting on a formal request to move through several layers of bureaucracy.
Lesson Two: Perimeter Security Is the First and Most Basic Layer
Campuses, especially larger ones with multiple gates, sprawling grounds, and hostel blocks spread across a wide area, depend heavily on perimeter security functioning as intended. A wall or fence is only as good as its weakest section, and an entry point that is poorly lit, unmonitored, or staffed by a single guard with no backup leaves an obvious gap. Kenyan institutions reviewing their own perimeter security today should look honestly at every access point, not just the main gate, including smaller staff entrances, delivery points, and any section of boundary wall that borders open or undeveloped land.
Lesson Three: Detection Needs to Happen Immediately, Not After the Fact
A recurring theme across many security failures, not just at Garissa, is the gap between when something goes wrong and when anyone with the authority to respond actually finds out. Traditional guarding relies on a person physically noticing an intrusion, which becomes far less reliable at night, during shift changes, or across a large perimeter that a handful of guards cannot watch simultaneously. This is where modern monitoring technology has genuinely changed what is possible for institutions that can invest in it. AI-assisted perimeter monitoring, using cameras that can detect movement along a boundary line or flag unusual loitering near a fence, can alert security personnel and, where integrated properly, local police, within seconds of a breach rather than relying entirely on a guard noticing in real time. We offer this kind of monitoring at Secuwatch, and we position it specifically as a way to close the detection gap that has repeatedly proven costly in security failures across different types of institutions, not just schools. It is worth being clear-eyed that this kind of system is one layer among several, and its value lies in giving people more warning time and better information, not in replacing trained personnel or a properly coordinated response plan.
Lesson Four: Coordinated Response Planning Matters as Much as Prevention
Even the best perimeter security and detection systems cannot fully substitute for a fast, well-coordinated emergency response once an incident is underway. The delays documented in the aftermath of Garissa, including transport and coordination problems between different security units, point to a broader lesson that applies well beyond that single tragic event. Institutions should have clear, rehearsed protocols for what happens the moment a threat is detected, who gets notified first, how students and staff are meant to respond, and what direct lines of communication exist with local police stations. Regular drills, however unwelcome they may feel to organise, tend to reveal gaps in a response plan long before those gaps matter in a real emergency.
Lesson Five: Building Design Should Support Escape, Not Just Prevent Entry
The detail about barred hostel windows hampering escape during the Garissa attack is a difficult but important one. Security measures designed purely to keep intruders out can sometimes work against the people inside during an actual emergency. Institutions planning or renovating student accommodation, dormitories, or any enclosed space should think through both directions of the problem: how to prevent unauthorised entry, and how occupants can safely exit or be reached quickly if something does go wrong.
Choosing Security Partners for Kenyan Schools and Universities Today
For any institution taking campus security seriously in the years since Garissa, the practical challenge is finding providers who genuinely understand the specific risks that schools and universities face, rather than applying a generic commercial security package. This includes guarding services trained specifically for educational environments, monitoring systems suited to large, open campus perimeters, and providers who are transparent about response times and what their systems can and cannot do. Comparing more than one security provider, checking licensing, and asking direct questions about how quickly an alert actually reaches a human decision-maker are reasonable steps for any school administration to take before committing to a security contract.
A Grounded Conclusion
The lessons drawn from Garissa are not really about technology at all, though modern tools like AI-assisted perimeter monitoring can genuinely help close some of the detection and response gaps that have proven costly in the past. They are, more fundamentally, about institutions being heard when they raise concerns, about perimeter security being treated as a serious first line of defence rather than an afterthought, and about emergency response being planned and rehearsed well before it is ever needed. Kenyan schools and universities carry a responsibility to their students that goes beyond academics, and honouring what happened at Garissa means continuing to ask, honestly and without complacency, whether today's campuses are genuinely prepared for the threats they might one day face.