May 2023

RBAC in Custom Reporting 

Aware has introduced Role-Based Access Controls in Spotlight’s Custom Reporting to allow for strong permissions and data visibility by adding the ability to provision users’ access to Custom Reporting based on specific Data Access Sets (DAS).

Spotlight’s Role Permissions:

  • Manage Spotlight Data: This permission acts as an on/off toggle for sub-modules; Dashboard, Platform, & Groups. 
    **Note:This is currently NOT controlled by a Data Access Set. All Spotlight users will have access to the Spotlight Dashboard, 
  • Manage Custom Reports: This allows creating, deleting, and re-running of reports. 
  • View Custom Reports: This allows viewing pre existing reports with the associated Data Access Set. 
    **Note: Both of these permissions are controlled by a Data Access Set. 

Screen Shot 2023-05-03 at 12.21.08 PM

  • Spotlight Admin: This will function the same as all other Admin roles where it gives all permissions and full data visibility within Spotlight. This is managed at the Role page and is indicated with a purple icon. 

Learn how to create a Custom Report with RBAC

Viewing Roles 

Users can view the roles associated with a user from their profile by Navigating to System Settings > User Management. 

image_720

Aware Monitoring is Becoming Signal

We recently made the decision to rebrand the Monitoring application to Signal, as this name better represents the many use cases made possible with this application. You can expect to see the updated language within the Aware platform. 

Why the change?

The name ‘Signal’ better represents the many use cases made possible with the application, including:

  • Understanding the Employee Experience
  • Regulatory or Acceptable Use Compliance Adherence
  • Identifying Risky or Toxic Behavior
  • Gaining Real-Time Feedback on Initiatives or Processes

File Name and Extension Trigger Condition 

The File Names and Extensions condition is now available for all current and future Signal customers. It provides users with the ability to detect when a file is shared that contains a specific string of characters. Files can contain sensitive information like PII, personnel data, organizational financial information, or proprietary designs or code that should not be shared or leaked outside of an organization as doing so could pose a number of privacy, security and regulatory-related risks.

Users can create lists of file names and extensions in a similar experience to how they would create keyword or pattern lists in Signal today. To get started, users should select files and/or images as a part of their content types within the rule builder. Then they will be able to select the File Names and Extensions trigger condition. Users can enter multiple values at a time, and can combine extensions and file names in the same list if they choose to.

Search and Discover Export Configurations 

New and improved export configuration options within Search & Discover are available, this includes:

  • The ability to export files and images for all content not just marked content - Please note this could result in very large exports that will be split into multiple 5GB zips
  • The ability to request files and images for parent messages only as opposed to defaulting to all files and images for search results and its associated context messages. 

  • Custom configurability for number of messages to be included within the context surrounding a search result. 

Context API Endpoints in Beta - Signal Events and Audit Log Events

These are part of our App Endpoints that allow customers to extend the value of our existing apps (i.e. Events from) Signal and help automate workflows internally. The beta endpoints are available to customers who are interested in leveraging our API and are below certain content volume thresholds on a case by case basis.

This brings are current beta offering to a total of three endpoints:
  • :new: Signal - allows customers to pull Signal events from their Aware environment into their existing tools (e.g, into Splunk/SIEMs, analytics platform) allowing Aware to fit into existing workflows
  • :new:  Audit Log Events - allows customers to pull Audit Log events from their Aware environment into their existing tools (e.g, into Splunk/SIEMs) so security and compliance can be flexibly maintained regarding access to the highly sensitive data we manage for our customers
  • Data Holds by User - customers who leverage a third party legal hold solution or manage a custom workflow for other types of holds can create holds within Aware via API endpoint preventing them from having to manage holds in more than one place

Please reach out to your CSM if you are interested in this new functionality.