Documentation navigation +

Advanced configuration

Roles and permissions

Plan BMS access around job responsibilities and module workflows.

Separate licensing from authorization

A full-user license permits platform access. Roles and permissions determine which screens and actions are available. Treat both as required layers.

Build responsibility-based roles

Start with responsibilities such as payroll review, project delivery or invoice processing. Grant the smallest useful set of permissions, then test the complete workflow.

Include reporting access deliberately

Operational access does not always imply report access. Review reporting permissions separately, especially for workforce and financial information.