People & Access
People & Access is the administrative console for managing human identities, platform roles, and workspace access boundaries. It is where the principles in the governance framework become daily operational management, keeping admins in full view of who can build, execute, and govern AI.
Centralized member management
Section titled “Centralized member management”The console is a single, real-time directory of everyone with access to your Rival Enterprise workspace.
- Complete identity visibility — active members, pending invitations, invited roles, and department assignments in one place.
- Streamlined onboarding — issue individual invitations or run bulk onboarding with roles pre-assigned, so new members are compliant from day one.
- Access verification — answer the audit question “who holds active platform credentials, and what can they touch?” immediately.
Role assignment and least privilege
Section titled “Role assignment and least privilege”Permissions are assigned and changed directly in the member directory as responsibilities evolve.
- Dynamic role adjustments — elevate a team member to Enterprise Admin, reassign roles, or update department membership in a few clicks.
- Enforcing least privilege — give each member only the permissions, catalogs, and connector access their job requires.
- Instant permission sync — role updates take effect immediately, adjusting the user’s navigation, build capabilities, and approval authority with no configuration files to edit. See Navigation by role.
Continuous lifecycle management
Section titled “Continuous lifecycle management”User management is an ongoing security discipline, not a one-time setup step.
- Joiners — provision new users through SSO/SCIM sync or direct invitation, with minimal default roles.
- Movers — update team assignments, connector grants, and platform roles as employees transfer or are promoted.
- Leavers — deprovision departing staff immediately, terminating active sessions and API tokens while retaining historical execution logs for compliance audits.
See User lifecycle for the automated provisioning path.
Management summary
Section titled “Management summary”| Management focus | Primary action | Security value |
|---|---|---|
| Directory oversight | Monitor active, pending, and deactivated accounts | Maintains a clean, fully audited user directory |
| Role provisioning | Assign Admin or Team Member roles | Enforces least-privilege access across all tools |
| Lifecycle updates | Adjust permissions on transfer or offboarding | Eliminates orphaned accounts and privilege creep |
A worked example: promoting a department lead
Section titled “A worked example: promoting a department lead”Consider a team member promoted to engineering team lead.
- Role elevation — an Enterprise Admin opens People & Access, finds the employee, and updates their role to include approval authority for the engineering team.
- Instant interface adaptation — on their next page refresh, the employee’s Command Center expands to show team analytics, incoming publishing requests, and the departmental approval queue.
- No configuration drift — access updates without IT touching backend settings, editing code, or adjusting local policy files.
Next steps
Section titled “Next steps” Capability matrix Review the granular capability definitions per role.
Navigation by role See how the interface adapts to each role.
User lifecycle Automate provisioning through your identity provider.