Review roles and permissions to ensure users have the correct access aligned with their responsibilities. This helps maintain compliance and enforce least-privilege principles.
Steps to review roles and permissions:
Select Users from the left navigation pane.
Use the search bar to find the user by name, email, or username, etc.
Click the user’s name to open their profile.
Navigate to the Groups tab and identify the group associated with the user. Note the Group name and Application ID linked to that group.
Go to the Roles tab and use the Application dropdown to search for the recorded Application ID. This will display all roles assigned under that application.
Review:
Application-level roles assigned to the user.
Group-level roles inherited through memberships.
Confirm that roles align with the user’s job function and compliance requirements.
Result
Note:
Roles inherited from policy-on groups cannot be revoked individually. To adjust these, modify group membership.
For policy-off groups, roles can be adjusted directly from the Roles tab.