The full visitor lifecycle — pre-registration, check-in and identity verification, scoped badge issuance, host notification, and escort policy — plus watchlist screening and how visitor management integrates directly with the access control system covered in Module 4.
Every visitor is a deliberate exception carved into an otherwise closed access control policy, and this module treats that exception with the same rigor as a permanent credential rather than an informal front-desk courtesy. It works through pre-registration, rigorous check-in and ID verification, badge design and scoped access, automatic host notification, and watchlist screening — five stages that only actually work as a single connected lifecycle, not as isolated point features.
By the end of this module you should be able to explain why an unmanaged sign-in sheet is one of the most consistently exploited weaknesses in physical security, and why integrating visitor management directly into the same access control database as Module 4's employee credentials — one authoritative log, not two systems reconciled after the fact — is what makes both day-to-day control and post-incident investigation actually work.