Skip to main content

Get help for ARIS Risk and Compliance

Manage maintenance of user groups and master data

Specify whether roles and master data can be managed in ARIS Risk and Compliance and/or in the ARIS Repository. ARIS Repository is the storage location where all data used by ARIS is saved. The repository can contain various databases. All data in the repository can be used by ARIS products. This ensures that no redundant data is stored, once entered, data can be reused considering various aspects, all ARIS products use the same basic data, and the functionality of ARIS products can be used seamlessly.

Roles

ARIS Risk and Compliance roles are managed in ARIS Administration (Configuration Configuration > Risk and Compliance > DATA MANAGEMENT > Roles). Create roles manually there or import roles using Get from ARIS Repository. Then assign users to roles under <Role> > User assignment. Only roles available in Role administration can be used. For detailed information, refer to Manage roles in the online help of ARIS.

There are basically two ways to manage users, roles and their privileges. For detailed information, refer to How to manage users, roles, and their privileges.

Master data objects

By default, the maintenance of objects that are originally created in ARIS Risk and Compliance and in the ARIS Repository is enabled. We recommend to model master data objects in an ARIS modeling environment and then transfer them to ARIS Risk and Compliance. Therefore, enable Objects with origin in ARIS Risk and Compliance and disable Objects with origin in ARIS Repository to prevent master data objects to be edited in ARIS Risk and Compliance. It is possible to specify the master data objects in ARIS Risk and Compliance, however, since data from ARIS Risk and Compliance cannot be transferred to ARIS Repository, the data in ARIS Repository and ARIS Risk and Compliance would become asynchronous.

If editing is disabled, it is impossible to create, edit, or delete master data. The following assignments cannot be edited either, because every modification changes the original state from ARIS Architect and leads to asynchronous data in ARIS Architect and ARIS Risk and Compliance:

  • Assignments of documents

  • Assignments in forms of other master objects

  • Assignments of hierarchy elements

  • Assignments in tabs, for example, risk to control, control to control test definition

  • Assignments of roles

Prerequisite

You have system administrator privileges in ARIS Risk and Compliance.

Procedure. Procedure
  1. Click ARIS Risk and Compliance Administration Administration. The General menu item is displayed initially.

  2. Under System management, click Basic settings.

  3. Click Master data management.

  4. Under Roles, specify where roles can be managed.

  5. Under Master data objects, specify which origin master data objects must have in order to be editable in ARIS Risk and Compliance.

  6. To disable editing of certain object types in ARIS Risk and Compliance instead, enable Individual selection of object types. The object types relevant for external source maintenance are displayed with their affected roles and components. We recommend to model master data objects in an ARIS modeling environment and then transfer them to ARIS Risk and Compliance. Therefore, enable Objects with origin in ARIS Risk and Compliance and disable Objects with origin in ARIS Repository to prevent master data objects to be edited in ARIS Risk and Compliance. It is possible to specify the master data objects in ARIS Risk and Compliance, however, since data from ARIS Risk and Compliance cannot be transferred to ARIS Repository, the data in ARIS Repository and ARIS Risk and Compliance would become asynchronous.

  7. Click No in the row of the relevant object to deny editing of master data or Yes to allow it. By default, editing is enabled.

  8. Click Save.

Your settings for maintaining roles and master data objects are saved.