Identity

Permission ManagerNew

Provides visibility and governance over SharePoint permissions and user access rights — helping you detect over-privileged accounts, shared links, and access sprawl across your Microsoft environment.

Permission Manager

SharePoint and identity access governance

What it does

Key capabilities

Permission Mapping

Visualises who has access to what across SharePoint sites, libraries, and folders in your organisation.

Over-Privilege Detection

Flags users and groups with excessive permissions that violate the principle of least privilege.

Shared Link Audit

Identifies externally shared links and anonymous access points that could expose sensitive content.

Access Reviews

Supports periodic access review workflows, prompting data owners to certify or revoke access.

Change History

Tracks permission changes over time to support incident investigation and compliance evidence collection.

Compliance Alignment

Supports GDPR data minimisation principles and ISO 27001 access control requirements.

Highlights

Why Permission Manager?

  • Full SharePoint permission visibility
  • Over-privilege and least-privilege gap detection
  • External sharing and anonymous link audit
  • Periodic access review workflow support
  • GDPR and ISO 27001 compliance alignment
Included in OneView

Permission Manager is part of the Hakware OneView platform. All findings, events, and data from this module flow into your central dashboard alongside every other security signal in your environment.

24/7 Support Available
Phone: +27 060 984 1210
FAQs

Frequently asked questions

Permission Manager connects to your Microsoft 365 tenant via the Microsoft Graph API and enumerates permission assignments at the site collection, library, folder, and item levels. It builds a complete access map showing which users, groups, and guest accounts can access which content, including permissions inherited through group membership.

Permission Manager flags users with site collection administrator rights who do not need them, external guests with access to sensitive libraries, groups with broad Full Control assignments, and SharePoint apps with delegated permissions exceeding their documented function. Each finding includes the specific permission and the recommended least-privilege remediation.

The module inventories all active sharing links — company-wide sharing links, external sharing links, and anonymous access links — across your SharePoint estate. Links that expose sensitive content to external parties or anonymous users are flagged for review, with options to initiate revocation through the platform.

GDPR Article 5(1)(c) requires that personal data is processed only by parties with a legitimate need. Permission Manager's periodic access review workflow and over-privilege detection directly support the principle of least privilege for data access — providing documented evidence that access to personal data is controlled and reviewed.

See Permission Manager in action

Request a personalised demo and we'll show you exactly how Permission Manager works within your environment.