// Module 12 · Administration

Administration.

User management, configuration, audit logs, and system settings

Operational RBAC · Active Audit · On
// Overview

Overview

The Administration module is the control surface for the AmlShield platform — covering user management, configuration, audit logs, and system settings in one place.

Provision users and assign them roles, then grant or revoke permissions so each team member sees only what their job requires. Role-based access keeps onboarding, monitoring, and reporting separated by responsibility.

Every administrative action — a sign-in, a role change, a configuration update — is written to an append-only audit log with no edit or delete function in the application, giving compliance teams and regulators a complete record of who changed what and when.

// Capabilities

Key Features

Everything an administrator needs to run the platform — users, roles, configuration, and audit.

01

User Management

Provision, edit, and deactivate user accounts, then keep each one current as people join, move teams, or leave.

02

Roles & Permissions

Role-based access control with 90 granular permissions and per-user grants, so each person sees only what their responsibilities require.

03

Organisation Structure

Model branches, departments, and teams so users, scopes, and approvals line up with how the institution actually operates.

04

System Settings

Central configuration for platform behaviour, defaults, and module settings — applied consistently across the system.

05

Audit Logs

Append-only, time-stamped records of every administrative action, giving a complete who-changed-what trail for regulators.

06

Diagnostics & Health

System status and diagnostics surface configuration issues and operational health before they affect compliance work.

// Outcomes

Benefits

01
Least-Privilege Access
Role-based access and per-user permission grants ensure each person can reach only the functions their job requires.
02
Complete Accountability
An append-only audit log captures every administrative change, so you always know who changed what and when.
03
Centralised Configuration
One place to manage platform settings and module defaults keeps behaviour consistent across the whole system.
04
Faster Onboarding
Assign a role and a user inherits the right permissions immediately, so new team members are productive on day one.
05
Audit-Ready Compliance
Time-stamped records of access and configuration changes make regulatory reviews straightforward to support.
06
Operational Confidence
Diagnostics and system health surface issues early, keeping the platform stable for compliance operations.
// i/o surface

Integrations

How Administration connects with the platform around it — how access is provisioned in-app, what the module records, the permission-gated APIs it governs, and the scheduled jobs it oversees.

Inputs
  • In-app user provisioning
  • Role & permission assignments
  • Module configuration changes
  • Organisation structure
Outputs
  • Append-only audit records
  • Per-user permission grants
  • Configuration records
APIs
  • 17 permission-gated platform APIs
  • API access governed by these roles
  • Administration itself: in-app only
Scheduled Jobs
  • Daily risk rescoring
  • Scenario monitoring runs
  • Periodic rescreening
// measured outcomes

Performance Metrics

100%
Actions Audited
Administrative changes logged
90
Permissions
Granular permissions with per-user grants
2
Languages
Full English & Arabic interface
100%
Data On-Premises
Runs on your own infrastructure
Current platform capabilities
// Next step

Ready to take control of access and configuration?

See how Administration centralises users, roles, audit, and settings across your platform.

Request a Demo
// FAQ

Frequently Asked Questions

How does role-based access work?

Users are assigned roles, and roles carry sets of permissions. You can also grant or revoke individual permissions per user, so access always matches the responsibilities of the job.

What is captured in the audit log?

Administrative actions such as sign-ins, role changes, permission grants, and configuration updates are recorded with a user, a timestamp, and the change made, forming a complete who-changed-what trail.

Can the audit log be edited or deleted?

No. The audit log is append-only — the application has no function to edit or delete entries — so the record stays trustworthy for compliance teams and regulators.

How granular are the permissions?

The platform ships with 90 granular permissions across all modules. Roles bundle them, and administrators can grant or revoke individual permissions per user.

What system settings can administrators control?

Administrators manage platform configuration, module defaults, and system settings from one place, so behaviour stays consistent across the whole platform.

Can we see who holds a given permission?

Yes. Administrators can review each user's roles and per-user grants in-app, and every permission change is captured in the append-only audit log.

// Ready when you are

Ready to Transform Your AML Compliance?

Join leading financial institutions using AML SHIELD to combat financial crime