Add Your Team¶
SaaS Create accounts for colleagues and give them the right level of access.
Time: ~3 minutes
Roles¶
| Role | Can do | Best for |
|---|---|---|
| user | Read only: dashboard, findings, reports | Executives, auditors, compliance officers |
| manager | Everything a user can, plus triage: assign, snooze, mark fixed. Not accepting a risk | Security analysts, IT staff on the daily rota |
| org_admin | Everything: users, organization settings, integrations, keys, and accepting a risk | IT managers, security leads |
super_admin exists as well, but it is the platform role held by SentriKat operations. It is not assignable from your account.
Create a Team Member¶
There is no email invitation. You create the account and hand over the first password yourself.
- Go to Users & Access
- Click Create User
- Fill in the details and set an initial password
- Pick the role
- Save, then give the person their password through whatever channel you already use for credentials
Ask them to change it after the first login, from their avatar menu under Security settings.
LDAP
Self-hosted installations connected to LDAP invite users from the directory instead. See LDAP and SSO.
Managing Users¶
All of the following is under Users & Access, by opening the user.
Change a role: pick a different role and save.
Organization access: the Organization Memberships section of the user controls which organizations they can see. Someone working on one client cannot see another client's data.
Deactivate: click Deactivate. They can no longer log in, and their activity history is kept.
Notifications Are Per Organization¶
Notifications are not a personal preference in SentriKat. They are configured once for the organization, under Alerts:
- email to the organization's notification addresses
- outbound webhook to Slack, Teams, Discord, or a custom endpoint
The avatar menu holds Security settings and Logout.
See Alerts for what fires and where it goes.
Team Setups That Work¶
- Two people, the usual small team: one
org_adminwho handles setup and integrations, onemanagerwho triages daily. - Compliance reporting: add your CISO or compliance officer as a
user. They read the reports and cannot change anything.
You're All Set¶
- Account created and logged in
- Organization configured
- Agent deployed and scanning
- Dashboard understood
- Compliance reports ready
- Issue tracker connected
- Team added
What's Next?¶
- The full User Guide for every feature in depth
- Alerts for Slack, Teams and Discord
- SIEM Integration to forward events to your SOC
- The API Reference for scripting and automation
- The FAQ for common questions