Updated at: 2022-12-09 03:49:50
There are two modes of management in Management Console, namely Super Admin Mode and Separation of Duties Mode.
Under Super Admin Mode, the roles in Management Console are as follows:

Super Admin can manage the organization, documents, and document domains, and supervise operations, system maintenance, and security control. Additionally, Super Admin can also audit all the logs of the organization and users. Super Admin, managed directly by the system initial user, cannot be disabled, modified, or deleted. Super Admin can access both AnyShare Management Console and Deployment Console.

Organization Admin manages user, document, custom user group, as well as all the Organization Admins and Approvers within its management scope. Organization Admin can only access Management Console.

Organization Auditor is in charge of log auditing within its scope and manages other Organization auditors within its scope. There can be multiple Organization Auditors in one affiliation, and each Organization Auditor can audit logs from multiple departments or organizations. Organization Auditor can only access Management Console, and cannot audit its logs.

Sharing Approver manages the document approvals within its scope. There can be multiple Sharing Approvers in one document or Document Library. Meanwhile, one Sharing Approver can manage multiple documents, Document Libraries from different users, affiliations, and organizations.

Under Separations of Duties Mode, the roles in Management Console are as follows:
System Admin can manage the organization, document, and document domains, and supervise operations, system maintenance, and security control. Additionally, Super Admin can also audit all the logs of the organization and users. System Admin, managed directly by the system initial user, cannot be disabled, modified, or deleted. Super Admin can access both AnyShare Management Console and Deployment Console. There can be only one System Admin under Separation of Duties mode.

Security Admin manages all security policies and audits all the logs of all the other user groups except System Admin. Security Admin is directly managed by System Admin, and cannot be disabled, edited, or deleted. Security Admin can only access Management Console and there can be only one System Admin under Separation of Duties mode.

Audit Admin, managed directly by the initial user, can audit the logs of System Admin and Security Admin. Audit Admin cannot be disabled, edited, or deleted. Audit Admin can only access Management Console and there can be only one System Admin under Separation of Duties mode.