Skip to main content

DSAR Roles

To keep the DSAR request process secure, Netwrix suggests configuring role-based access. Delegating control ensures that only appropriate users can modify DSAR configuration or view data, based on your company policies and the user's job responsibilities.

  • DSAR User – basic user role, which allows access to the tool itself and lets the user run search requests. This user can view only the requests they submitted (they can't view searches that other users submitted). This role can't access system settings or sensitive data identified, including filenames/locations.
  • DSAR Manager – has all the permissions of the DSAR User role, plus the ability to see and pause/cancel searches that other users submitted.
  • Super User – has all the permissions of the DSAR Manager role, with the addition of being able to see and amend the DSAR settings (user management, output path, batch run-time).

The following table briefly describes the DSAR roles:

RoleQuery CreationQuery ManagementOutputAdministrative area
CreateCancelView AuditView DetailsView ResultsExportReject
DSAR UserOwnOwn–Own––––
DSAR ManagerOwn++++++–
Super User++++++++*

* Administrative area includes user maintenance, batch maintenance, and an option to ‘Run Now’ – which runs the queued batch.

You can configure DSAR roles under Users → Permissions Management. For more information on how to configure roles, refer to User Management section.