Skip to main content

Administrators

Manage the administrators who have access to your Containment.AI dashboard, control their permissions, and invite new team members.

Accessing Administrators

  1. Go to Settings
  2. Click the Administrators tab
  3. View and manage administrators and their permissions

Admin List

The admin list shows:

ColumnDescription
NameAdmin's display name
EmailWork email address
RolePermission level
StatusActive, Pending, or Inactive
Last ActiveMost recent login

Inviting Admins

Send Invitation

  1. Click Invite Admin
  2. Enter email address
  3. Select role/permissions
  4. Click Send Invitation

Invitation Email

The new admin receives:

  • Welcome message
  • Dashboard link
  • Setup instructions
  • Organization name

Invitation Status

StatusDescription
PendingInvitation sent, awaiting action
AcceptedAdmin completed setup
ExpiredNo action after 7 days

Admin Roles

Built-in Roles

RoleCapabilities
OwnerFull access, can't be removed
AdminFull access except billing
AnalystView and manage alerts
ViewerRead-only access

Role Permissions Matrix

PermissionOwnerAdminAnalystViewer
View dashboardYesYesYesYes
Manage alertsYesYesYes-
Configure policiesYesYes--
Manage usersYesYes--
Manage adminsYesYes--
Manage billingYes---
Delete organizationYes---

Granular Permissions

The Administrators tab also lets you configure granular permissions for each admin:

Permission Categories

CategoryPermissions
BillingView and manage billing
Policy AdminCreate, edit, and manage policies
User AdminManage end users and invitations
Audit ViewerView audit logs and activity

Assigning Permissions

  1. Click an admin to open their detail drawer
  2. View or modify their assigned permissions
  3. Toggle individual permission categories
  4. Save changes

Custom Roles

Enterprise

Create custom roles with specific permissions:

  1. Click Create Role
  2. Enter role name and description
  3. Select permissions
  4. Save

Example Custom Roles

Security Analyst

  • View alerts and acknowledge/resolve them
  • View audit logs and export data
  • View policies and users (read-only)

Policy Admin

  • Full policy management
  • View alerts and users
  • View integration settings

Managing Admins

Change Role

  1. Click the admin's row
  2. In the detail drawer, click Edit Role
  3. Select new role
  4. Save changes

Deactivate Admin

  1. Click the admin's row
  2. Click Deactivate
  3. Confirm action

Deactivated admins:

  • Cannot sign in
  • Lose dashboard access
  • Can be reactivated later

Remove Admin

  1. Click the admin's row
  2. Click Remove
  3. Confirm removal

Removed admins:

  • Lose all access
  • Must be re-invited to regain access
  • Audit history preserved

Transfer Ownership

As owner, transfer to another admin:

  1. Go to Settings > Account
  2. Find Transfer Ownership
  3. Select new owner
  4. Confirm with your password

Admin Activity

View admin actions:

  1. Go to Activity
  2. Filter by actor type: "Admin"
  3. See all admin actions

Tracked actions:

  • Logins and logouts
  • Configuration changes
  • Alert management
  • User actions

Security

Session Management

Admins have secure sessions:

  • Automatic timeout after inactivity
  • Secure token storage
  • Device tracking

Multi-Factor Authentication

Enterprise

Require MFA via SSO:

  1. Configure in your IdP
  2. Enable SSO enforcement
  3. All admins must use MFA

Troubleshooting

Admin Can't Sign In

  1. Check admin status is "Active"
  2. Verify email address
  3. Try password reset
  4. Check SSO configuration (if used)

Wrong Permissions

  1. Review assigned role
  2. Check granular permissions in detail drawer
  3. Verify role inheritance
  4. Contact owner if needed

Invitation Not Received

  1. Check spam folder
  2. Verify email address
  3. Resend invitation
  4. Check email delivery

Best Practices

Least Privilege

  • Assign minimal necessary permissions
  • Use Viewer role when appropriate
  • Review permissions regularly

Access Reviews

  • Audit admin list quarterly
  • Remove inactive admins
  • Verify role appropriateness

Documentation

  • Document who has access
  • Note why each admin needs access
  • Track permission changes