Forum Discussion

hongwoo_jin's avatar
hongwoo_jin
Brass Contributor
Jul 21, 2021

About roles of Security Administrator, Compliance Administrator, Mailflow Administrator

Hi, 

Anyone who knows with those administrator roles can see customer's own personal informaiton data with company confidential information data??

Customer concerned about assignning those roles to specific users when considering the Personal Information Protection Act and EAR regulations. 

 

Thx

4 Replies

  • The answer is yes. They all allow a certain level of insight into the data, maybe not directly data stored in a mailbox etc, but may still show high level information that can still contain PII. The role from your list that gives the broadest access to data is the Compliance Administrator. For example, the Compliance Administrator can do content searches, which can be done across various workloads and could return eg. emails, chats, OneDrive data, etc.

    Many companies of course state in their policies that company tools should only be used for company purposes, but at the same time local law might state that eg. a mailbox is considered "private" even if it's a business mailbox.
    • hongwoo_jin's avatar
      hongwoo_jin
      Brass Contributor
      Thx. Pvanberlo 's your reply
      But you mean all administrator roles which I mentioned before , Security Administrator, Compliance Administrator, Mailflow Administrator are showing high level information that can still contain PII.
      Or only Compliance administrator do it?

      Thx

Resources