Managing Roles and the Permission Matrix

Open Settings > Roles & Permissions. This area requires Full Access plus Manage Roles or Manage Permissions.

Roles tab

Roles group access rules for employees, client contacts, or vendor investigators. Open a role to review its Name, notes, active status, user type, rank, MFA requirement, access groups, Default Group, and permissions.

  • User type: identifies which people can use the role.
  • Rank: places the role in the management hierarchy and affects which roles or users it can manage.
  • Require MFA: adds a role-level multi-factor authentication requirement.
  • Access groups: identifies the visibility groups available to that role.
  • Default Group: supplies a starting visibility group for supported newly created content.

Permission Matrix

Use Permission Matrix to compare feature grants across roles. Permissions distinguish actions such as viewing, adding, editing, deleting, sending, approving, and exporting. Some have dependencies: changing one can add required supporting grants or remove dependent grants.

Make and verify a change

  1. Choose the intended role and review who uses it.
  2. Adjust the relevant fields or permission grants.
  3. Review any dependency changes and save.
  4. Verify the intended workflow with the affected access level and record scope.

A permission change affects users assigned to that role. Full Access, Limited Access, assignments, access groups, and workflow restrictions remain separate checks. A broad role grant is not a substitute for correcting a missing case assignment.