Authorized Users
Settings → Users: invite people to your account by email, choose their role, and remove access when needed.
The User Management section of Settings → Users lists everyone with access to your account. Only Admins can add or remove users.
Your users appear under Customer Authorized Users. The account owner row always shows the Admin role and cannot be removed.
Users provisioned through SCIM show an authentication method of SCIM Provisioned and a status of Active or Deactivated. SCIM provisioning is set up on Settings → SCIM.
Add a user

- Open Settings → Users.
- Click Add User.
- Enter the Email Address.
- If roles are enabled for your account, choose a Role: Admin, Analyst, or Read Only. The dialog shows what the invite grants, for example This will grant them Analyst access to your account.
- Click Add.
If roles are not enabled for your account, the dialog says This will grant them full access to your account.
Invited users are subscribed to risk emails by default. They can change this under Settings → Notifications. They set a password and MFA the first time they sign in. Users who sign in with single sign-on are created at their first SSO sign-in instead. See Settings → Organization → Single Sign-On.
Change or remove a user
If roles are enabled, an Admin can change a user's role in the Role column. The account owner's role cannot be changed.
To remove a user, use the Actions column on their row.