Role-Based Access Control Introduced in CDQ AML Guard

From CDQ Wiki
Public:Release note/20250716
Jump to navigation Jump to search

Release date: 2025-07-16, related to idea in our Idea Portal: nan.

Release details

CDQ AML Guard now supports dedicated user roles to ensure secure and compliant access to sensitive compliance-related data and functionality.

What Changed

To better protect sensitive information and align with compliance best practices, we have introduced role-based access control in the CDQ AML Guard. This update is designed to ensure that users can only access the functions and data they are authorized to see or act upon.

With this release, access to the AML Guard inside CDQ Cloud Apps is now limited to users who have been explicitly assigned one of three new AML roles.

The Solution

Three roles are now available to support different responsibilities within the AML process:

New Roles in AML Guard:

   AML Guard Viewer
   – View-only access to all AML Guard information
   – Cannot make decisions or modify configurations
   AML Guard User
   – Can view data and take decisions (e.g., classify hits, close cases)
   – Cannot create or modify configurations
   AML Guard Manager
   – Full access: view data, take decisions, and manage all configurations

These roles allow customers to align access levels with internal responsibilities, ensuring only those with a legitimate need can access sensitive screening results and case data.

Why It Matters

Compliance processes frequently involve the handling of sensitive, business-critical information. With this change:

   We enforce the need-to-know-principle: only authorized users access sensitive compliance data
   You can control who can view, decide, or administer AML Guard configurations
   Organizations gain greater security, transparency, and control over their compliance operations
   This supports internal segregation of duties and meets audit and regulatory expectations

What You Need to Do

To ensure continued access to the AML Guard module, please:

   Review your user list in CDQ Cloud Apps
   Assign the appropriate role(s) to each user
   Ensure that users handling compliance cases or administering screening logic have the correct level of access

Users without one of the new AML roles will no longer be able to view or access the AML Guard features.

For assistance or guidance on role assignment, please contact your CDQ representative.