Skip to main content
JADE-ELS security combines authenticated user accounts, role-based permissions, scoped data access, record-state controls, and audit history. Users and administrators must still apply secure operating practices.

User responsibilities

  • Use only your assigned account.
  • Keep passwords private and unique.
  • Sign out on shared or public devices.
  • Verify recipients before sending reports or exported data.
  • Do not upload unnecessary personal or confidential files.
  • Report suspected unauthorized access, unusual activity, or accidental disclosure.

Administrator responsibilities

  • Apply least privilege and segregation of duties.
  • Limit privileged, approval, posting, export, and user-management roles.
  • Deactivate accounts promptly when staff leave.
  • Review access periodically and retain evidence.
  • Restrict HR, bank, tax, identity, and payroll-related data.
  • Review audit information and investigate unusual changes.

Sensitive data in the platform

Exports and attachments

Downloaded files no longer inherit JADE-ELS permissions. Store them only in approved locations, apply the correct access controls, and delete or archive them according to policy. Avoid including unrelated sensitive columns in exports.
If credentials or confidential data may be compromised, notify the designated administrator/security contact immediately. Do not wait for the next access review.
Last modified on August 13, 2026