- 1 Minute to read
- Print
- PDF
User Role
- 1 Minute to read
- Print
- PDF
Introduction
Users Roles restrict/allow users to access data and perform actions on the SAFE application.
This document allows users to understand the level of data they can access and perform actions based on the assigned User Roles.
The following four pre-configured User Roles are available in SAFE:
- Admin
- Auditor
- Viewer
Admin
The users with Admin Role have complete access to all system features, functions, and data.
Auditor
The users with Auditor Role have complete access to certain features, functions, and data related to assessment, reporting, etc. Still, they do not have access to certain administrative functions such as configuring global policies, custom control policies, assessment and management tools, etc.
Viewer
The users with Viewer Role have only view access to system features, functions, and data.
User Role Access
Module | Sub-Module | Admin | Auditor | Viewer |
---|---|---|---|---|
Dashboard | Overall Score/Score Trend | View | View | View |
Score Change | View | View | View | |
Technology Distribution | View | View | View | |
Asset Groups | View | View | View | |
Technology Spider Graph | View | View | View | |
Asset Group Spider Graph | View | View | View | |
Location wise Score | View | View | View | |
Gap Report | View | View | View | |
Actionable Insight | View | View | View | |
Master Control List | Read-Write | Read-Write | View | |
About Page | View | View | View | |
Policy | View | View | View | |
Compliance | View | View | View | |
Assessment | People | Read-Write | Read-Write | Read Only |
Policy | Read-Write | Read-Write | Read Only | |
Technology | Read-Write | Read-Write | Read Only | |
CSP | Read-Write | Read-Write | Read Only | |
External | Read-Write | Read-Write | Read Only | |
Compliance | Read-Write | Read-Write | Read Only | |
Reports | Overall Report | Generate/Schedule | Generate/Schedule | Generate/Schedule |
Technology Report | Generate/Schedule | Generate/Schedule | Generate/Schedule | |
Asset Report | Generate/Schedule | Generate/Schedule | Generate/Schedule | |
Asset Group Report | Generate/Schedule | Generate/Schedule for user’s local group + All global group | Generate/Schedule for user’s local group + All global group | |
Compliance Report | Generate/Schedule | Generate/Schedule | Generate/Schedule | |
External Report | Generate/Schedule | Generate/Schedule | Generate/Schedule | |
Scheduled Report | Read/Write | Read/Write for his own reports | Read/Write for his own reports | |
History Report | Read/Write | Read/Write for his own reports | Read/Write for his own reports | |
Miscellaneous Report | Generate/Schedule | Generate/Schedule | Generate/Schedule | |
Notifications | Asset Score Change | Read-Write | Read-Write | Read-Write |
Vertical Score Change | Read-Write | Read-Write | Read-Write | |
Asset Group Score Change | Read-Write | Read-Write | Read-Write | |
Overall Score Change | Read-Write | Read-Write | Read-Write | |
Asset Offboarding - Auto Retire | Read-Write | Not Visible | Read-Write | |
Asset Offboarding - Auto Delete | Read-Write | Not Visible | Read-Write | |
Financial Risk Exposure | Read-Write | Not Visibile | Not Visibile | |
Manage Agent | Read-Write | Read-Write | Read Only | |
Administration | User Management | Read-Write | Read Only | Read Only |
Company Management | Read-Write | Read Only | Read Only | |
Department Management | Read-Write | Read Only | Read Only | |
Location Management | Read-Write | Read Only | Read Only | |
Company Profile | Read-Write | Read Only | Read Only | |
Asset Management | Read-Write | Read Only | Read Only | |
Manage Assets | Read-Write | Read Only | Read Only | |
Asset Group Management | Read-Write | Read-Write for user-created groups | Read-Write for user-created groups | |
Custom Fields | Read-Write | Read Only | Read Only | |
Agent Global Policy | Read-Write | Not Visible | Not Visible | |
Asset Offboarding Policy[Cycle 7] | Read-Write | Not Visible | Not Visible | |
Agent & Site management | Read-Write | Read Only | Read Only | |
Governance Management | Read-Write | Read Only | Read Only | |
SAFE Hooks | Read-Write | Read-Write | Not Visible | |
Assessment Tools | Read-Write | Read-Write Note: Auditor has only Read access for AWS Configuration. | Not Visible | |
Management Tools | Read-Write | Not Visible | Not Visible | |
Enrichment Tools | Read-Write | Not Visible | Not Visible | |
Settings | Read-Write | Read Only | Read Only | |
Settings > Customizable Dashboard | Read-Write | Read-Write | Read Only | |
Control Policies | Read-Write | Not Visible | Not Visible |