Authority Arrives by Phone
A convincing caller can claim to be an executive, vendor, colleague or support technician. Voice and caller ID are not independent proof.
Role-aligned cyber-physical awareness for the people who screen visitors, route calls, manage badges or keys and handle requests for sensitive information.
Quick Answer
This training is for access-control staff, receptionists, front-desk personnel, concierges and secretaries or administrative assistants whose duties include visitors, calls, badges, keys, deliveries or sensitive information. It develops verification and escalation behaviour for AI-enabled social engineering. It is not generic training for every administrative role and does not replace employer procedure.
Attackers do not need to break a system if they can persuade a helpful person to transfer a call, reveal a schedule, accept a delivery or make an access exception.
A convincing caller can claim to be an executive, vendor, colleague or support technician. Voice and caller ID are not independent proof.
Schedules, names, extensions, locations and procedures can help someone build a more convincing attack.
A lost badge, urgent delivery, locked door or “quick favour” can create pressure to bypass the control the role is meant to protect.
The page is built around the actual request and the correct frontline response—not abstract cybersecurity terminology.
A familiar name or cloned voice asks for a transfer, schedule, mobile number or access exception. Staff verify using an approved internal channel.
A visitor knows the host’s name but is not confirmed. Staff follow the visitor process rather than allowing confidence or urgency to substitute for approval.
A delivery or service request appears routine. Staff confirm the destination, recipient or work order before granting deeper access.
A person asks for a temporary exception. Staff use the approved exception route and record the request instead of improvising.
What the Program Develops
Confirm who the person is and whether they are allowed to make the request before acting.
Recognize when routine-seeming information could support impersonation, targeting or unauthorized access.
Slow down urgent requests long enough to check the approved source and involve the correct manager.
Capture the caller, request, time and response so security or management can investigate and act.
Practical cyber-physical awareness for people making access, identity, reporting and escalation decisions—not technical IT administration.
Pause urgent requests and verify identity through a trusted channel before granting access, sharing information or changing procedure.
Recognize that caller ID, familiar voices, video and polished messages can be manipulated or generated.
Notice suspicious devices, QR codes, badge requests, vendor behaviour and access exceptions that cross the physical-digital boundary.
Record what happened, preserve useful details and escalate through the organization’s approved chain instead of improvising.
CP-AI Standard is a professional-development credential for frontline cyber-physical and AI-threat awareness. It is not IT training; does not replace employer procedures or statutory licensing such as NY DCJS or NJ SORA; and does not claim NIST or ASIS certification or endorsement, GDPR or CCPA compliance, equivalence to another credential, or automatic continuing-education credit.
Related Buyer Paths
Self-Purchase
See the individual route for reception, administrative and access-control professionals.
View PageTeam Purchase
Use the team route for learner counts, rollout questions and current delivery options.
View PageRelated Department
For leaders responsible for contractors, restricted spaces and connected building environments.
View PageFrequently Asked Questions
Yes, when their work includes visitor screening, call routing, access decisions, employee information, deliveries, keys or badges.
Yes when those duties involve visitors, sensitive calls or information, executive routing, keys, badges or access-related requests. The relevance depends on the work, not the title alone.
Yes. A relevant professional can enroll directly. The training remains supplemental and does not override employer procedures.
No. The safe control is not perfect visual or audio detection. Staff learn to treat media as unverified and confirm identity and authority through a trusted channel.
No. It complements site-specific procedure and management direction; it does not replace either.
Protect the Human Checkpoint
Train the people who answer the call, greet the visitor and handle the exception to verify before trust becomes access.
Train Your Frontline Team