Skip to main content

DSAR Roles

To keep the DSAR request process secure, Netwrix suggests configuring role-based access. Delegating control ensures that only appropriate users can modify DSAR configuration or view data, based on your company policies and the user's job responsibilities.

  • DSAR User – basic user role, which allows access to the tool itself and allows search requests to be run. This user can view only requests submitted by themselves (they can't view searches submitted by other users). This role can't access system settings or sensitive data identified, including filenames/locations.
  • DSAR Manager – has all the permissions of the DSAR User role, plus the ability to see and pause/cancel searches submitted by other users.
  • Super User – has all the permissions of the DSAR Manager role, with the addition of being able to see and amend the DSAR settings (user management, output path, batch run-time).

The following table briefly describes the DSAR roles:

RoleQuery CreationQuery ManagementOutputAdministrative area
CreateCancelView AuditView DetailsView ResultsExportReject
DSAR UserOwnOwnOwn
DSAR ManagerOwn++++++
Super User++++++++*

* Administrative area includes user maintenance, batch maintenance, and an option to ‘Run Now’ – which runs the queued batch.

DSAR Roles can be configured under Users → Permissions Management. For more information on how to configure roles, refer to User Management section.