Difference between revisions of "Users & Groups"

From Privacy-Now
Jump to: navigation, search
(Groups Management)
(Users Management)
 
(63 intermediate revisions by 3 users not shown)
Line 1: Line 1:
After the ''Privacy-Now ®'' the system show in '''''User & Group management''''' the function necessary to see the ''Actived User & Groups''. A predefined ''Group'' represent a specific GDPR ''[[glossary|Role]]'' profile. In table below report the menu selection entries:
+
==Users Management==
 +
New ''users'' can be created using '''''Add New''''' and choosing '''New User''' in the self service menu.
 +
Existing ''users'' can be update selecting <b>''Users & Groups Management / Users Management''</b> menu and selecting the record to manage from the list.
 +
Access to ''users'' creation and administration is limited to ''users'' having administrative role (see later).
  
{| class="wikitable"
+
''Users'' shall be activated (in status "Active") to be operational. In other statuses, ''users'' are not active (they cannot login into Privacy-Now®) nor they are counted as licensed ''users''.
! Menu Selection!! Description
+
 
|-
+
''Users'' information are organized in five sections:
|Users & Groups Management / Users Management || this entry enables the ''[[glossary|User]]'' to see and open all the ''User'' master data information
 
|-
 
|Users & Groups Management / Groups Management || this entry enables the ''[[glossary|User]]'' to see and open all the ''[[glossary| Group]]'' master data.
 
|-
 
|Users & Groups Management / Add Group || this entry enables the ''[[glossary|User]]'' to define a new ''Working Group''. The enablement of the Group is performed using the '' [[glossary|Settings]]'' function
 
|}
 
all this link are granted to the ''Administrator'' user.
 
  
==Users Management==
+
* <u>''Tracking''</u>
<b>''Users & Groups Management / Users Management''</b> link open the ''User'' list. Selecting one of the record shown, the ''Administrator'' can see and change the ''User'' settings.
+
* <u>''Identification''</u>
The information are presented five sections:
+
* <u>''Details''</u>
*Tracking
+
* <u>''Process Settings''</u>
*Identification
+
* <u>''Password Management''</u>
*User Details
 
*Enabled on Processes
 
*Password Management
 
  
The table below report the fields and a short description of them:
+
The table below reports the fields and a short description of them:
 
{| class="wikitable"
 
{| class="wikitable"
 
! Section !! Field !! Description
 
! Section !! Field !! Description
 
|-
 
|-
|Tracking|| <u>Code</u> || Automatically created by the system identify uniquely the record information
+
|<u>''Tracking''</u>|| <u>Code</u> || Unique ''user'' identifier, automatically created by the system.
 
|-
 
|-
|Tracking|| <u>Project/Service</u> || Project service created when the ''service'' is initialized
+
|<u>''Tracking''</u>|| <u>Project/Service</u> || Environment identifier, corresponding to the organization owner of Privacy-Now® subscription and automatically managed by the system.
 
|-
 
|-
|Identification|| <u>Ticket Type</u> || Identify the process the information refer to. In our case "User"
+
|<u>''Identification''</u>|| <u>Type</u> || Record type identifier, automatically managed by the system.  
 
|-
 
|-
|Identification|| <u>Ticket Op Status</u> || Each process on the system is based on a workflow. This field report current status value.
+
|<u>''Identification''</u>|| <u>Status</u> || Status of the ''user''. Possible statuses are "Inactive" (when initially created) or ''Active''.  
 
|-
 
|-
|User Details|| <u>Name</u> || Name of the ''user''. Initially filled with the Name present in the Administrator section of Subscription.
+
|<u>''Details''</u>|| <u>Name</u> || Name of the ''user''.
 
|-
 
|-
|User Details|| <u>Surname</u> || Surname of the ''user''. Initially filled with the Surname present in the Administrator section of Subscription.
+
|<u>''Details''</u>|| <u>Surname</u> || Surname of the ''user''
 
|-
 
|-
|User Details|| <u>Username</u> || Assigned by the system
+
|<u>''Details''</u>|| <u>Username</u> || Login name used to access Privacy-Now®.
 
|-
 
|-
|User Details|| <u>Email</u> || Email of the ''user''. Initially filled with the Email present in the Administrator section of Subscription.
+
|<u>''Details''</u>|| <u>Email</u> || Email of the ''user''.  
 
|-
 
|-
|User Details|| <u>Admin</u> ||Yes /No flag. Filled by the Administrator, enable the ''User'' at the ''Administrator Role''
+
|<u>''Details''</u>|| <u>Admin</u> || This field may have two possible values "Yes" or "No". If set to "Yes" the ''user'' has administrative privileges and can perform special tasks such as ''users'' and ''groups'' administration but also manage [[Settings#Introduction|settings]].
 
|-
 
|-
|User Details|| <u>Language</u> || The language supported by Privacy-Now tools are English, French, Italian.Initially filled with the Email present in the Administrator section of Subscription.
+
|<u>''Details''</u>|| <u>Language</u> || The application interface language set for the ''user''. Supported languages are currently "English", "French" and "Italian". "Spanish" will come next.
 
|-
 
|-
|User Details|| <u>Timezone</u> || Timezone of the ''User''. Initially filled with the Timezone present in the Administrator section of Subscription.
+
|<u>''Process Settings''</u>|| <u>Access Request Creator</u> || If set to "Yes", it enables the user to create new ''access requests''.
 
|-
 
|-
|Enabled on Processes|| <u>Access Request Creator</u> || Enable the ''User'' to create the ''Access Request'' ticket
+
|<u>''Process Settings''</u>|| <u>Action Creator</u> || If set to "Yes", it enables the user to create new ''actions''.
 
|-
 
|-
|Enabled on Processes|| <u>Action Creator</u> || Enable the ''User'' to create the ''Action'' ticket
+
|<u>''Process Settings''</u>|| <u>Audit Creator</u> || If set to "Yes", it enables the user to create new ''audits''.
 
|-
 
|-
|Enabled on Processes|| <u>Audit Creator</u> || Enable the ''User'' to create the ''Audit'' ticket
+
|<u>''Process Settings''</u>s|| <u>Consent Creator</u> || If set to "Yes", it enables the user to create new ''consents''.
 
|-
 
|-
|Enabled on Processes|| <u>Consent Creator</u> || Enable the ''User'' to create the ''Consent'' ticket
+
|<u>''Process Settings''</u>|| <u>Data Breach Creator</u> || If set to "Yes", it enables the user to create new ''data breaches''.
 
|-
 
|-
|Enabled on Processes|| <u>Data Breach Creator</u> || Enable the ''User'' to create the ''Data Breach'' ticket
+
|<u>''Process Settings''</u>|| <u>Privacy Impact Assessment Creator</u> || If set to "Yes", it enables the user to create new ''privacy impact assessments''.
 
|-
 
|-
|Enabled on Processes|| <u>Issue Creator</u> || Enable the ''User'' to create the ''Issue'' ticket
+
|<u>''Process Settings''</u>|| <u>Issue / NC Creator</u> || If set to "Yes", it enables the user to create new ''issues / non conformities''.
 
|-
 
|-
|Enabled on Processes|| <u>Privacy Impact Assessment Creator</u> || Enable the ''User'' to create the ''Privacy Impact Assessment'' ticket
+
|<u>''Process Settings''</u>|| <u>Risk Creator</u> || If set to "Yes", it enables the user to create new ''risks''.
 
|-
 
|-
|Enabled on Processes|| <u>Processing Activity Creator</u> || Enable the ''User'' to create the ''Processing Activity'' ticket
+
|<u>''Process Settings''</u>|| <u>Processing Activity Creator</u> || If set to "Yes", it enables the user to create new ''processing activities''.
 
|-
 
|-
|Enabled on Processes|| <u>Risk Creator</u> || Enable the ''User'' to create the ''Risk'' ticket
+
|<u>''Process Settings''</u>|| <u>Knowledge Item Creator</u> || If set to "Yes", it enables the user to create new ''knowledge items''.
 
|-
 
|-
|Enabled on Processes|| <u>FAQ Creator</u> || Enable the ''User'' to create the ''Knowledge Item'' ticket
+
|<u>''Password Management''</u>|| <u>New Password</u>, <u>Old Password</u>, <u>Confirm New Password</u> || These fields work together, enter a new password in <u>New Password</u>, enter the previous password in <u>Old Password</u>, confirm the new password in <u>Confirm New Password</u> and press '''CHANGE PASSWORD''' to change the ''user'' password.
 
|-
 
|-
|Password Management|| <u>New Password</u> || Field used by <b>Change Password</b> button function to perform a password change.
 
|-
 
|Password Management|| <u>Old Password</u> || Field used by <b>Change Password</b> button function to perform a password change.
 
|-
 
|Password Management|| <u>Confirm New Password</u> || Field used by <b>Change Password</b> button function to perform a password change.
 
 
|}
 
|}
Note: All the modification became active after a ticket saving, except for the Change Password function. This function modify directly the information.  
+
 
 +
Note that when the environment is initially created, a ''user'' with administrative role is created and activated using subscription information. The access credentials of this ''user'' are sent by mail.
 +
 
 +
For more information on how to manage the ''user'' record, visit [[How_To#Records_Management|records management]].
  
 
==Groups Management==
 
==Groups Management==
  
<b>''Users & Groups Management / Group Management''</b> link open the ''Group'' list. Selecting one of the record shown, the ''Administrator'' can see and modify the ''Group'' settings.  
+
<b>''Users & Groups Management / Add Group''</b> menu item lists the available ''groups'' and allows to manage ''groups'' (create, modify, delete). Only ''users'' with administrative privileges have the rights to perform ''group'' management.
  
The table below report the list standard group created when the system is initialized
+
When a Privacy-Now® environment is created, a set of default ''groups'' are generated. They are:
  
 
{| class="wikitable"
 
{| class="wikitable"
 
! Group!! Description
 
! Group!! Description
 
|-
 
|-
|<Service> - AUD || Automatically created by the system enable the ''User'' at the ''[[glossary|Auditor]]'' role
+
|<organization> - AUD || Designed to include the ''auditors'' ''users''.
 
|-
 
|-
|<Service> - DC || Automatically created by the system enable the ''User'' at the ''[[glossary|Data Controller]]'' role
+
|<organization> - DC || Designed to include the ''data controller'' ''users''.
 
|-
 
|-
|<Service> - DP || Automatically created by the system enable the ''User'' at the ''[[glossary|Data Processing]]'' role
+
|<organization> - DP || Designed to include the ''data processor'' ''users''.
 
|-
 
|-
|<Service> - DPO || Automatically created by the system enable the ''User'' at the ''[[glossary|Data Protect Officer]]'' role
+
|<organization> - DPO || Designed to include the ''data protection officers'' ''users''
 +
|}
 +
 
 +
In the table above, <organization> is to be replaced with the name of the organization used for Privacy-Now® subscription.
 +
 
 +
Note that ''groups'' are only collections of ''users'' and that actual privileges are defined in process records (e.g. ''access requests'') by assigning a ''group'' to one of the available profiles (see process guides).
 +
 
 +
The pre configured groups cannot be deleted but they can be renamed and modified in terms of belonging members.
 +
 
 +
If Privacy process defined at ''Company'' level required the implementation of others roles, the ''Administrator'' can define all the other necessary Groups,to make the standard process complaint the company one using the <b>''Add New''</b> function
 +
 
  
 +
=== Add group ===
 +
<b>''Users & Groups Management / Add Group''</b> menu item enables to create a new ''group''.
 +
 +
The table below reports the fields belonging to a ''group'' and a short description of them:
 +
{| class="wikitable"
 +
! Section !! Field !! Description
 +
|-
 +
|<u>''General''</u>|| <u>Name</u> ||The name of the group.
 +
|-
 +
|<u>''General''</u>|| <u>Description</u> ||A description for the group (e.g. its purpose).
 +
|-
 +
|<u>''General''</u>|| <u>Default</u> ||Non editable, automatically managed by Privacy-Now®.
 +
|-
 +
|<u>''General''</u>|| <u>Status</u> ||Non editable, automatically managed by Privacy-Now®.
 +
|-
 +
|<u>''Members''</u>|| <u>Code</u> ||The ''user'' identifier of the member, not editable and automatically managed by Privacy-Now®.
 +
|-
 +
|<u>''Members''</u>|| <u>Full Name</u> ||Surname and Name of the member, not editable here because assigned in ''user'' management.
 +
|-
 +
|<u>''Members''</u>|| <u>User Login</u> ||Login identifier of the member, not editable here because assigned in ''user'' management.
 +
|-
 +
|<u>''Members''</u>|| <u>Group Manager</u> ||Used to identify and mark if the member of the ''group'' is the manager of the group. Actually, the manager will have the same privileges as the members.
 +
|-
 +
|<u>''Members''</u>|| <u>Type</u> ||Field not used.
 +
|-
 +
|<u>''Members''</u>|| <u>Status</u> ||Status of the member, not editable here because modified in ''user'' management.
 +
|-
 +
|<u>''Members''</u>|| <u>VIP Type</u> ||Field not used.
 
|}
 
|}
If Privacy process defined at ''Company'' level required the implementation of others roles, the ''Administrator'' can define all the other necessary Groups,to make the standard process complaint the company one using the <b>''Add Group''</b> function
 
  
== Add Group ==
+
In the <u>''General''</u> form, use '''SAVE''' or '''SAVE&EXIT''' to update the ''group''. Use '''DELETE''' to delete a ''group''.
 +
 
 +
In the <u>''Members''</u> form see the figure below for the available commands.
 +
 
 +
[[File:Groups_management_ENG_v1.0.JPG|centre|thumb|800x800px|Groups management controls and commands.]]
  
<b>''Users & Groups Management / Add Group Management''</b> link open the form that  enable the ''User'' to create a new group and add group members.
+
=== Modify group ===
All the members liked to a group have the same privileges on the ticket information.
+
Use <b>''Users & Groups Management / Groups Management''</b> menu item to see the list of available ''groups'' and click on the one to update. Modify using the features and commands described above in [[Users_&_Groups#Add_group|Add group]].
Privileges are settled up at process level.
 

Latest revision as of 13:21, 18 February 2019

Users Management

New users can be created using Add New and choosing New User in the self service menu. Existing users can be update selecting Users & Groups Management / Users Management menu and selecting the record to manage from the list. Access to users creation and administration is limited to users having administrative role (see later).

Users shall be activated (in status "Active") to be operational. In other statuses, users are not active (they cannot login into Privacy-Now®) nor they are counted as licensed users.

Users information are organized in five sections:

  • Tracking
  • Identification
  • Details
  • Process Settings
  • Password Management

The table below reports the fields and a short description of them:

Section Field Description
Tracking Code Unique user identifier, automatically created by the system.
Tracking Project/Service Environment identifier, corresponding to the organization owner of Privacy-Now® subscription and automatically managed by the system.
Identification Type Record type identifier, automatically managed by the system.
Identification Status Status of the user. Possible statuses are "Inactive" (when initially created) or Active.
Details Name Name of the user.
Details Surname Surname of the user
Details Username Login name used to access Privacy-Now®.
Details Email Email of the user.
Details Admin This field may have two possible values "Yes" or "No". If set to "Yes" the user has administrative privileges and can perform special tasks such as users and groups administration but also manage settings.
Details Language The application interface language set for the user. Supported languages are currently "English", "French" and "Italian". "Spanish" will come next.
Process Settings Access Request Creator If set to "Yes", it enables the user to create new access requests.
Process Settings Action Creator If set to "Yes", it enables the user to create new actions.
Process Settings Audit Creator If set to "Yes", it enables the user to create new audits.
Process Settingss Consent Creator If set to "Yes", it enables the user to create new consents.
Process Settings Data Breach Creator If set to "Yes", it enables the user to create new data breaches.
Process Settings Privacy Impact Assessment Creator If set to "Yes", it enables the user to create new privacy impact assessments.
Process Settings Issue / NC Creator If set to "Yes", it enables the user to create new issues / non conformities.
Process Settings Risk Creator If set to "Yes", it enables the user to create new risks.
Process Settings Processing Activity Creator If set to "Yes", it enables the user to create new processing activities.
Process Settings Knowledge Item Creator If set to "Yes", it enables the user to create new knowledge items.
Password Management New Password, Old Password, Confirm New Password These fields work together, enter a new password in New Password, enter the previous password in Old Password, confirm the new password in Confirm New Password and press CHANGE PASSWORD to change the user password.

Note that when the environment is initially created, a user with administrative role is created and activated using subscription information. The access credentials of this user are sent by mail.

For more information on how to manage the user record, visit records management.

Groups Management

Users & Groups Management / Add Group menu item lists the available groups and allows to manage groups (create, modify, delete). Only users with administrative privileges have the rights to perform group management.

When a Privacy-Now® environment is created, a set of default groups are generated. They are:

Group Description
<organization> - AUD Designed to include the auditors users.
<organization> - DC Designed to include the data controller users.
<organization> - DP Designed to include the data processor users.
<organization> - DPO Designed to include the data protection officers users

In the table above, <organization> is to be replaced with the name of the organization used for Privacy-Now® subscription.

Note that groups are only collections of users and that actual privileges are defined in process records (e.g. access requests) by assigning a group to one of the available profiles (see process guides).

The pre configured groups cannot be deleted but they can be renamed and modified in terms of belonging members.

If Privacy process defined at Company level required the implementation of others roles, the Administrator can define all the other necessary Groups,to make the standard process complaint the company one using the Add New function


Add group

Users & Groups Management / Add Group menu item enables to create a new group.

The table below reports the fields belonging to a group and a short description of them:

Section Field Description
General Name The name of the group.
General Description A description for the group (e.g. its purpose).
General Default Non editable, automatically managed by Privacy-Now®.
General Status Non editable, automatically managed by Privacy-Now®.
Members Code The user identifier of the member, not editable and automatically managed by Privacy-Now®.
Members Full Name Surname and Name of the member, not editable here because assigned in user management.
Members User Login Login identifier of the member, not editable here because assigned in user management.
Members Group Manager Used to identify and mark if the member of the group is the manager of the group. Actually, the manager will have the same privileges as the members.
Members Type Field not used.
Members Status Status of the member, not editable here because modified in user management.
Members VIP Type Field not used.

In the General form, use SAVE or SAVE&EXIT to update the group. Use DELETE to delete a group.

In the Members form see the figure below for the available commands.

Groups management controls and commands.

Modify group

Use Users & Groups Management / Groups Management menu item to see the list of available groups and click on the one to update. Modify using the features and commands described above in Add group.