Security and Controls | Platform
Roles and Permissions
Permission at the record, not just the screen.
What it does
Inside Roles and Permissions.
What a person can see and change is described precisely and reviewed.
01
Functional permissions at action level, not screen level
02
Data scope by entity, dimension, project and record
03
Role composition with inheritance and exceptions
04
Access review campaigns with owner sign-off
Where it sits
Part of Security and Controls.
Identity and Access Single sign-on, provisioning and access that expires. Segregation of Duties Conflicts prevented at assignment, not reported later. Approval Inbox One queue for every request waiting on you. Approval Matrix Authority limits as configuration, applied everywhere. Audit Evidence Control operation recorded as it happens. Data Residency Where data lives, stated and enforced.
Run Roles and Permissions against your books.
A working session on your structure and a month of your documents.
