Keepit Platform

Keepit user roles and permissions

Keepit offers eight predefined roles that can be assigned to users who need access to a Keepit account. A role is a set of permissions that defines what a user can do in the platform.

Users can perform the actions of their roles only on connectors they have access to.

Here's a table of available user roles and what permissions are available for each one: 

Master Admin Backup Admin Compliance Admin Full Support Standard Support Limited Support Audit SSO Admin
Backup Configuration
Create connectors ✅ ✅ ❌ ❌ ❌ ❌ ❌ ❌
Configure connectors ✅ ✅ ❌ ❌ ❌ ❌ ❌ ❌
Delete connectors ✅ ✅ ❌ ❌ ❌ ❌ ❌ ❌
Reauthenticate connectors ✅ ✅ ❌ ❌ ❌ ❌ ❌ ❌
Monitoring
View Data Protection Dashboard ✅ ✅ ✅ ✅ ✅ ❌ ❌ ❌
View Data Monitoring Dashboard ✅ ❌ ❌ ❌ ❌ ❌ ❌ ❌
View Anomaly Detection Dashboard ✅ ❌ ❌ ❌ ❌ ❌ ❌ ❌
View Usage Dashboard ✅ ❌ ❌ ❌ ❌ ❌ ❌ ❌
View Job Monitor ✅ ✅ ✅ ✅ ✅ ❌ ❌ ❌
Data Management & Sharing
Browse connectors ✅ ✅ ✅ ✅ ✅ ✅ ❌ ❌
Preview and download files ✅ ✅ ✅ ✅ ❌ ❌ ❌ ❌
View secure shares ✅ ✅ ✅ ✅ ❌ ❌ ❌ ❌
Create secure shares ✅ ✅ ✅ ✅ ❌ ❌ ❌ ❌
Data Recovery
Restore in place: Skip ✅ ✅ ✅ ✅ ✅ ✅ ❌ ❌
Restore in place: Overwrite ✅ ✅ ✅ ✅ ✅ ❌ ❌ ❌
Restore in place: Rename ✅ ✅ ✅ ✅ ✅ ✅ ❌ ❌
Restore to folder ✅ ✅ ✅ ✅ ✅ ✅ ❌ ❌
Restore to different location ✅ ✅ ✅ ❌ ❌ ❌ ❌ ❌
Initiate item restore ✅ ✅ ✅ ✅ ✅ ❌ ❌ ❌
Compliance
View RTBF page ✅ ❌ ✅ ❌ ❌ ❌ ❌ ❌
Assign RTBF labels ✅ ❌ ✅ ❌ ❌ ❌ ❌ ❌
Generate backup coverage reports ✅ ✅ ❌ ❌ ❌ ❌ ❌ ❌
Auditing
View Audit log ✅ ❌ ✅ ❌ ❌ ❌ ✅ ❌
User & Token Management
Create, edit, delete users ✅ ❌ ❌ ❌ ❌ ❌ ❌ ❌
Manage access to connectors ✅ ✅ ❌ ❌ ❌ ❌ ❌ ❌
Support Tickets
Manage all account tickets ✅ ❌ ❌ ✅ ❌ ❌ ❌ ❌
Account Security
View SSO configurations ✅ ❌ ❌ ❌ ❌ ❌ ❌ ✅
Manage SSO configurations ✅ ❌ ❌ ❌ ❌ ❌ ❌ ✅
Enable and configure MFA ✅ ❌ ❌ ❌ ❌ ❌ ❌ ❌
Create SIEM integrations ✅ ❌ ❌ ❌ ❌ ❌ ❌ ❌
Advanced Management
Advanced management ✅ ❌ ❌ ❌ ❌ ❌ ❌ ❌

Keepit user roles and permissions

Backup Configuration

  • Create connectors
    User can create new connectors
  • Configure connectors
    User can configure connectors
  • Delete connectors
    User can delete connectors
  • Reauthenticate connectors
    User can reauthenticate connectors

Monitoring

  • View Data Protection Dashboard
    User can access the Data Protection Dashboard
  • View Data Monitoring Dashboard
    User can access the Data Monitoring Dashboard
  • View Anomaly Detection Dashboard
    User can access the Anomaly Detection Dashboard
  • View Usage Dashboard
    User can view seat usage
  • View Job Monitor
    User can access the Job Monitor page

Data Management & Sharing

  • Browse connectors
    User can access Connectors page and browse through folders
  • Preview and download files
    User can preview and download files, including as ZIP and PST files
  • View secure shares
    User an access the secure shares page
  • Create secure shares
    User can share files or folders as secure shares

Data Recovery

  • Restore in place: skip
    User can use the Restore Wizard to restore or import items in place using the "Skip duplicate items" method
  • Restore in place: overwrite
    User can use the Restore Wizard to restore or import items in place using the "Overwrite existing items" method
  • Restore in place: rename
    User can use the Restore Wizard to restore or import items in place using the "Rename duplicate items" method
  • Restore to folder
    User can use the Restore Wizard to restore items to a new folder
  • Restore to different location
    User can use the Restore Wizard to import items to a different user
    User can import a deleted user
    User can restore a SharePoint site to a different tenant
    User can restore a Salesforce organization to a different location
    User can restore Salesforce files using advanced restore
  • Initiate item restore
    User can restore individual files and folders

Compliance

  • View RTBF page
    User can access RTBF page
  • Assign RTBF labels
    User can assign and remove RTBF labels
  • Generate backup coverage reports
    User can generate and download backup coverage reports

Auditing

  • View Audit Log
    User can view the audit logs

User & Token Management

  • Create, edit, delete users
    User can create, edit, and delete users
  • Manage access to connectors
    User can grant and restrict access to connectors to other users

Support 

  • Manage all account tickets
    User can view and manage all tickets created by the account's users

Account Security

  • View SSO configurations
    User can access the SSO page and view SSO configurations
  • Manage SSO configurations
    User can create, edit, and delete SSO configurations
  • Enable and configure MFA
    User can enable MFA for all users on an account
  • Create SIEM integrations
    User can create SIEM integrations

Advanced Management

  • Advanced management
    User can create and update secure share policies
    User can skip captcha verification during user creation
  • User can create Master Admin token if ACL is not provided
  • User can view all token information, even of more privileged ones
    User can send activation email to a user
    User can manage access requests (list pending, accept, decline requests)
    User can access all connectors regardless of RBAC settings