YonSuite Users, Roles and Data Permissions
Assign application rights and organisation data scope by job role using least privilege.
Learning objective
Create an auditable and maintainable access model.
03
Steps
01Map jobs, duties, organisation scope and approval responsibilities.
02Create roles and assign menus/actions by business responsibility.
03Set company, department and warehouse data scope; menu access alone is insufficient.
04Assign users and run both positive and unauthorised-access tests.
05Establish joiner, mover, leaver and periodic review processes.
- 01
Map jobs, duties, organisation scope and approval responsibilities.
- 02
Create roles and assign menus/actions by business responsibility.
- 03
Set company, department and warehouse data scope; menu access alone is insufficient.
- 04
Assign users and run both positive and unauthorised-access tests.
- 05
Establish joiner, mover, leaver and periodic review processes.
04
Implementation notes
- Avoid stacking many direct permissions on individuals.
- Apply segregation of duties to key roles.
- Disable leavers promptly and retain audit records.