Users And Roles
Role assignment determines who can onboard vendors, review evidence, manage remediation, and administer workspace settings.
Recommended principles
- grant the minimum access required
- separate program administration from day-to-day review work
- align permissions with ownership and escalation responsibilities