Customize Privilege Information

The Privileges tab displays a list of all permissions users have within the application. Within this tab, you can also customize the names, descriptions, risk ratings, and visibility of individual privileges.

NOTE: Changes will not affect privileges within any reviews that are currently in an Open status.

To customize privilege information, complete the following steps:

  1. From the Applications list, select the application you want to view or change. The Applications / Details page appears.

  2. Select the Privileges tab.

  3. Select the privilege to be customized.

  4. If you've selected a group, the Group the following information is displayed:

    Field:

    Description:

    Group Header Name

    Displays the native name of the group (the names exactly as they appear on the application report).

    To change the name:

    • Select the Group Header Name field and enter the name as it will appear within the review.

    NOTES:

    • Names must be unique and cannot be changed to modify the current group/privilege structure (ex. two groups cannot be named the same in order to consolidate groups).

    • Permission Assist retains the native names of all groups so the native names may be restored at any time; refer to the Revert To Original Values field description below for more information.

    • The native name of a group is always available by hovering over the group header name and selecting the information bubble () to the left of the name.

    • Changes will not affect groups within any reviews that are currently in an Open status.

    Restrict Visibility

    Allows you to determine whether the group and any of the privileges below the group are visible to reviewers during a review.

    NOTES:

    • Using this option is typically not recommended because it inhibits the selected privilege (or group of privileges) from being reviewed. Be aware that if you complete a review without information visible to reviewers you may need to complete an additional review in order to meet some auditing requirements (ex. FDICIA, SOX). 

    • Using this option to simulate other review methodologies (such as group-level reviews) is not recommended.

    Revert to Original Values

    Selecting this link will restore the privilege to its original values. The Group Header Name field will be reset to the native name and visibility will be reset (the Restrict Visibility option will not be selected).

  5. If you've selected a privilege, the following information is displayed:

    Field:

    Description:

    Privilege Name

    Displays the native name of the privilege (the names exactly as they appear on the application report).

    To change the name:

    Select the Privilege Name field and enter the name as it will appear within the review.

    NOTES:

    • Permission Assist retains the native names of all privileges so the native names may be restored at any time; refer to the Revert To Original Values field description below for more information.

    • The native name of a privilege is always available by hovering over the privilege and selecting the information bubble () to the left of the privilege name.

    • Changes will not affect privileges within any reviews that are currently in an Open status.

    Description

    Allows you to enter a custom description to further explain what the permission is and how it is used. Descriptions can be displayed by selecting the information bubble () to the left of the privilege name.

    Risk Rating

    Allows you to assign a level of criticality to a specific privilege. To assign a risk rating:

    • Select the Risk Rating field and then select an option from the drop-down list.

    Restrict Visibility

    Allows you to determine whether the privilege is visible to reviewers. 

    NOTE:

    • Using this option is typically not recommended because it inhibits the selected privilege (or group of privileges) from being reviewed. Be aware that if you complete a review without information visible to reviewers you may need to complete an additional review in order to meet some auditing requirements (ex. FDICIA, SOX). 

    • Using this option to simulate other review methodologies (such as group-level reviews) is not recommended.

    Revert To Original Values

    Selecting this link will restore the privilege to its original values. The Privilege Name field will be reset to the native name; any changes made to the Description, Risk Rating, or visibility option will be lost.

  6. When all changes have been made, select the Save button.