Roles and workspaces

Marcel

January 12, 2026

Why users and workspaces are essential

You rarely manage cyber risks and supply chain risks alone. Security, compliance, IT, management, and external parties such as auditors or consultants all play a role. RiskStudio is therefore designed as a collaboration platform, in which multiple users can work safely and in a controlled manner, each with their own role and responsibilities.

Two core functionalities make this possible:

  • Multiple users with role-based permissions
  • Multiple workspaces per user

Together they ensure flexibility without sacrificing control.

Role-based access: the right permissions for everyone

In RiskStudio, you can easily invite colleagues or external parties. For each user, you determine their role and which actions are permitted.

Examples of roles

  • Full access: for security or risk teams that actively perform analyses, add suppliers, and manage dependencies.
  • Limited access: for colleagues who are allowed to work within a defined scope. For example, a department manager who may (temporarily) add suppliers from their own department. These suppliers are automatically linked to their department and are only visible there. The scope of these rights is flexible and can easily be adjusted or revoked.
  • Read-only: ideal for auditors, accountants, or supervisors who want insight but are not allowed to change anything.

The advantages

This model of role-based access delivers immediately noticeable benefits. Because responsibilities are explicitly defined, the chance of errors decreases and everyone knows exactly what their role is. At the same time, governance is strengthened: changes are traceable and align with audit requirements, without extra administrative burdens. The flexible rights management makes it possible to easily adjust rights to changing roles or temporary situations, such as projects or reorganizations. This creates transparency and collaboration, without the risk of unwanted or unauthorized changes being made.

Multiple workspaces: one user, multiple contexts

In addition to roles, RiskStudio works with workspaces. A workspace is a defined environment with its own companies, suppliers, dependencies, and settings. A user can have access to multiple workspaces at the same time, each with different rights.

Ideal for MSPs and consultants

For MSPs and consultants, working with multiple workspaces is a crucial functionality. With one account, they can serve multiple clients, while each client environment remains strictly separated. Different rights can be assigned per workspace, for example, full administrator rights for one client and only read-only access for another. This allows service provision, analyses, and supervision to be efficiently combined, without the risk of data mixing or loss of confidentiality.

Also valuable internally

Workspaces also offer clear added value within larger organizations. They make it possible to manage risks and suppliers separately per business unit, without losing the overview. In addition, separate workspaces can be set up for specific crown jewels, where stricter monitoring or responsibilities apply. Finally, workspaces offer space for test or demo environments in addition to the production environment, so that new working methods or configurations can be safely tested.

What are the benefits per target group?

Security & risk teams

For security and risk teams, RiskStudio offers a central place to collaborate on supplier management and risk assessments. Tasks can be clearly divided, so that everyone knows what their responsibilities are. Moreover, teams retain full control over who is allowed to perform which actions, minimizing the risk of errors or unauthorized changes.

Management

For management, RiskStudio mainly means clear insight without the operational noise. Reports are reliable and always up-to-date, so decisions can be better substantiated. At the same time, the platform offers the certainty that governance and internal controls are guaranteed, so that risks remain clear and manageable.

Auditors & accountants

For auditors and accountants, RiskStudio offers direct access to current information, completely read-only. This means that they have access without extra manual work or risk of changes. Moreover, the platform reduces the need for separate reports and unnecessary e-mail traffic, making audits more efficient and clearer.

MSPs & consultants

For MSPs and consultants, RiskStudio makes scalable work possible: one platform to serve multiple clients at the same time, while each client environment remains professionally separated. This ensures more efficient management, less risk of data pollution, and a higher quality of service, so that both analyses and reports are consistent and reliable.

Collaborate without friction

Because roles and workspaces seamlessly connect, a way of working arises in which collaboration becomes self-evident. No shared accounts, no exports to spreadsheets, but one central source of truth.

This fits perfectly with the way supply chain risks are managed in practice: multidisciplinary, continuous, and with the involvement of internal and external stakeholders.

The relationship with RiskStudio

RiskStudio is built to simplify decision-making around cyber and supply chain risks. Multiple users, clear roles, and flexible workspaces ensure that everyone can contribute from their own perspective, without losing the overview. Whether you collaborate internally, facilitate auditors, or serve multiple clients as an MSP: RiskStudio supports this from the ground up.

Conclusion

Collaborating on cyber risks requires structure, trust, and flexibility. With role-based access and multiple workspaces, RiskStudio offers exactly that. The result: better collaboration, less risk, and faster, better-substantiated decisions.