The Organization and User Security Matrix controls which records each user role can access in SmartSimple and what actions they can perform on those records. The User Security Matrix governs access to user records, and the Organization Security Matrix governs access to organization records. Both matrices combine hierarchy permissions, which grant access based on organizational relationships, with role or category permissions, which set granular view, add, edit, delete, and lookup rights for each user role.
Who: Global administrators
When to Use the Organization and User Security Matrices
Use the Organization and User Security Matrices when:
- A new SmartSimple system is being implemented and organization and user access needs to be defined from the start.
- Specific user roles need controlled access to view, edit, add, delete, or search for user records across organizations.
- Access to organization records must be restricted by category and by organizational hierarchy.
- Different user roles require different levels of access to users and organizations in the system.
- A user role should be limited to its own organization, its sub-organizations, or all organizations.
Configure the User Security Matrix
To configure the User Security Matrix:
- Click the System Administration gear in the upper navigation bar, select Global Settings from the drop-down menu, and then click the Security tab.
- Click User Security Matrix.
- Locate the Login User Role section and select the user role to assign permissions to.
- Locate the Hierarchy Permissions section and check the checkboxes for the applicable permissions to determine the records a user role can view and modify based on organizational relationship:
- Users Under All Organizations - Access to all users across all organizations.
- Users Under Own Organization - Access to users within the current user's organization.
- Users Under Sub Organizations - Access to users within the current user's organization or its sub-organizations.
- Own Profile - Access to the user's own profile.
- Locate the Role Permission section and check the checkboxes for the applicable permissions to establish granular, role-by-role permissions for viewing, editing, deleting, and searching.
- Click Save.
Configure the Organization Security Matrix
The Organization Security Matrix defines how users can interact with organization data.
To configure the Organization Security Matrix:
- Click the System Administration gear in the upper navigation bar, select Global Settings from the drop-down menu, and then click the Security tab.
- Click Organization Security Matrix.
- Locate the Login User Role section and select the user role to assign permissions to.
- Locate the Hierarchy Permissions section and check the checkboxes for the applicable permissions to determine the general permissions a user role has to view and modify the organization data it belongs to. Set view, edit, add, delete, and search permissions for All Organizations, Own Organization, Sub Organizations, and Associated Organizations.
- Locate the Category Permissions section and check the checkboxes for the applicable permissions to establish granular, category-by-category permissions for viewing, editing, deleting, and searching.
- Click Save.
Organization and User Security Matrix Examples
Review the Hierarchy Permissions in the Organization and User Security Matrices examples for organization contacts and system administrators.
Organization Security Matrix Examples
The following example shows the Hierarchy Permissions for an organization contact role who can view, edit, and lookup their own organization, and can also view sub-organizations.
The following example shows the Hierarchy Permissions for a system administrator who can view, edit, add, delete, and lookup all organizations.
User Security Matrix Examples
The following examples show the Hierarchy Permissions for an organization contact that can view, add, and lookup colleagues in their own organization. They can also view, edit, add, and lookup their own profile.
View Change History
For live systems, a note is required for any change to the security matrix for audit purposes due to the sensitive nature of the configuration options included here. Previous changes can also be reviewed using the history option.
To view Change History:
- Click the System Administration gear in the upper navigation bar, select Global Settings from the drop-down menu, and then click the Security tab.
- Click Organization Security Matrix or User Security Matrix.
- Click the Change History icon.