Setting up 'Roles' (Due Diligence Roles)

Follow

Gan_Zendesk_banner.png

 

This article covers the following topics:

 

Roles description

Your role on the compliance platform defines the extent of your viewing/editing rights. Depending on which department you belong to in your organization, you can have one or several roles. When you log in, your default role might not be the one with the highest permissions.

Roles always appear in the top right-hand corner - either hiding behind your name or expanded, depending on the way your platform has been configured.

Screenshot 2025-05-20 at 3.22.58 PM.png

What is the difference between roles?

Employee View

 

All employees having access to the Platform will benefit from the Employee View. This view aims at showing employees only what they need to see and modules on which they will need to perform actions:

 

  • Welcome page
  • Policy library
  • Campaigns (only if assigned)
  • Any other module that is relevant to the Employees of the organization in question, which can include:
    • Due Diligence
    • Gifts and Hospitalities 
    • Conflicts of Interests
    • Whistleblowing

Other roles

The most senior role is Compliance Manager, who is considered the system's owner for day-to-day management of the platform, including the ability to perform administrative tasks and have full visibility. The designated user with the permissions of a Compliance Manager can appoint other Compliance Managers as well as the other roles described below.

The availability of roles can be customized per instance and some can even be set as the default role, but the scope of the roles are predefined with the actions and visibility they need. There are certain roles that solely relate to the Due Diligence process; these are described below.

 

Due Diligence Roles

Be aware that the following is a comprehensive list of all the available roles for Gan's Due Diligence module; not all of these roles may be available on your platform.

Please contact GAN Support or your Customer Success Manager if you wish to add or remove the available roles for your platform.

Label   Description

 

Due Diligence View Only

 

 

The view only role allows users to see all third parties with the inability to perform actions as an effective read-only role. This is applicable to information-based roles that do not need to perform evaluations or participate in the due diligence process but would like or need to stay informed.

 

 

Employee

 

 

 

Employee is the most basic role that a user can have inside the GAN platform that is able to take an action. Should you allow Employees to have access to due diligence, they can be given the ability to create third parties.

The employee view by default is limited to only the third parties that the user has created; however, you are able to configure the Employee to see all third parties should it be needed. The Employee role sees a limited view of the third party.

 

 

Enhanced Employee

 

 

 

An Enhanced Employee can see all Third Parties as well as create third parties. They are able to see the entire Third Party detail which includes:

  • Take and/or Send Questionnaire
  • Evaluate Questionnaire and Send Back for Revisions
  • Add a Manual Screening (if enabled on your platform)
  • Upload Reports & Documents
  • View Public Reports
  • View Documents
  • View the Activity Log
  • Can manually order a ControlRisks Report (if enabled on your platform)

 

 

Due Diligence Approver

 

 

 

A Due Diligence Approver is able to see only the third parties whether that user is referenced ie, they created the third party (persons or company), they are assigned as an Approver via the workflow, manually assigned as an approver, or were assigned a mitigation task if using Approved with Mitigations. They can see the entire details of the third party which includes:

  • Take and/or Send Questionnaire
  • Evaluate Questionnaire and Send Back for Revisions
  • Add a Manual Screening (if enabled on your platform)
  • Upload Reports & Documents
  • View Public Reports
  • View Documents
  • View the Activity Log
  • Can manually order a ControlRisks Report (if enabled on your platform)
  • Approve a Third Party

 

 

Due Diligence Enhanced Approver

 

 

 

DD Enhanced Approvers are similar to the DD-Approver role but the user is able to see all third parties. The third parties where the user is NOT referenced is a limited read-only view, similar to that of the DD-View Only and Employee roles.

 

 

Due Diligence Third Party Manager

 

 

 

A Due Diligence Third Party Manager is able to view all third parties as well as create third parties, but only has access to the Third Party Relationship Table inside Due Diligence. They have the same privileges as a compliance manager role when it comes to managing third parties inside due diligence.

  • Take and/or Send Questionnaire
  • Evaluate Questionnaire and Send Back for Revisions
  • Add a Manual Screening (if enabled on your platform)
  • Upload Reports & Documents
  • View Public Reports
  • View Documents
  • View the Activity Log
  • Can manually order a ControlRisks Report (if enabled on your platform)
  • Approve a Third Party
  • Ad Hoc Management of Approvers on a Third Party
  • Update Third Party Owner

 

 

Due Diligence Compliance Manager

 

 

 

Due Diligence Compliance Manager role is one of the most powerful roles in the Due Diligence application. The user is able to see all third parties, create third parties as well as carry out all Manager Actions.

  • Take and/or Send Questionnaire
  • Evaluate Questionnaire and Send Back for Revisions
  • Add a Manual Screening (if enabled on your platform)
  • Upload Reports & Documents
  • View Public Reports
  • View Documents
  • View the Activity Log
  • Can manually order a ControlRisks Report (if enabled on your platform)
  • Approve a Third Party
  • Ad Hoc Management of Approvers on a Third Party
  • Update Third Party Owner
  • Can View/Modify Categories
  • Can Create/Edit Draft Questionnaires

 

 

Compliance Manager

 

 

 

The Compliance Manager role is the most powerful role in the GAN platform. It encompasses the capabilities of the dd-cm role, but the role itself extends beyond just Due Diligence.

  • Take and/or Send Questionnaire
  • Evaluate Questionnaire and Send Back for Revisions
  • Add a Manual Screening (if enabled on your platform)
  • Upload Reports & Documents
  • View Public Reports
  • View Documents
  • View the Activity Log
  • Can manually order a ControlRisks Report (if enabled on your platform)
  • Approve a Third Party
  • Ad Hoc Management of Approvers on a Third Party
  • Update Third Party Owner
  • Can View/Modify Categories
  • Can Create/Edit Draft Questionnaires
  • View/Edit modules beyond Due Diligence including access to user management

 

Was this article helpful?
0 out of 0 found this helpful