Access Controls

Administer access rights and permissions to Intelligent Risk Platform™ applications and data

Overview

The Intelligent Risk Platform data access and security model enables risk management organizations to define granular access controls to protected resources and to ensure that end users and client applications that access those resources perform only authorized operations.

This data access and security model is based on three entities: principals, roles, groups:

  • Principals
  • Roles
  • Groups

These entities enable you to manage access rights and permissions for protected Intelligent Risk Platform resources (e.g. exposure sets, server instances, databases). The following sections describe core entities in detail.

Principals, groups, and roles may be managed by a tenant administrator in Admin Center.

Access Rights

Access rights specify who may access a protected resource. Access rights to exposure sets, server instances, hosted databases may be granted to groups.

Permissions

Permissions specify who may perform operations on a protected resource. A group may be assigned one or more roles, which define the permissions granted to the members of that group. Role-based permissions determine who may view, update, create, upload, or download protected resources.