Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Made some updates


Live Search
spaceKeyZenGRCOnboardingGuide
additionalnone
placeholderSearch our site
typepage

Overview


Tip
titleBETA FEATURE

Those taking part in our beta program have functionality documented here.

As we redesign and improve ZenGRC user roles

 As an initial milestone in a larger initiative to re-imagine role-based access control in ZenGRC, we're releasing

an

this initial beta feature that

provides

allows administrators to maintain more granular control over individual object permissions by creating user groups that can be assigned to specific objects.


This functionality allows administrators to create user groups, which can then be assigned to objects. All users in the group have full read, write, and delete control of the object regardless of their respective respective global role permissions.

However, while users in the group have administrative control over the specific object to which their group has been added, their ability to see other objects mapped to their that assigned item depends on their global roles.

Creating Groups


To create or modify a group, complete the following:

  1. Click Settings | Groups.
  2. Click Actions | New Group.



  3. Add a descriptive title so it can be differentiated from other groups or users.
  4. Select one or more users in the People drop-down.
  5. Click Save.
  6. Alternatively, click Cancel to close the dialog box without saving.

Assigning Groups to Items


At present, groups can be assigned only to objects that have an "owner" field.  To allow a group or groups to have access to an item, complete the following steps:

  1. Open the item from the System of Record or a module's home page.
  2. Click to edit the Owner field.
  3. Select the group in the drop-down.



  4. Click Save.