Only users with the Owner or Admin role can edit settings. Members and Viewers see the same information but cannot make changes. MSP partner users who manage a client workspace can also edit settings without holding a direct membership role.
Deployment profile
Your deployment profile controls what gets loaded into your control library and which controls are required versus recommended. SecurAtlas ships five profile types:| Profile type | Purpose |
|---|---|
| Baseline | Seeds all 64 controls. The default starting point for every workspace. |
| Industry | Adds industry-specific controls on top of the baseline. |
| Compliance | Prioritizes controls that satisfy specific regulatory requirements. |
| Cloud | Emphasizes cloud infrastructure and configuration controls. |
| Custom | A profile tailored by your MSP partner or SecurAtlas team. |
Organization profile and financial inputs
- Organization profile
- Financial inputs
Your organization profile stores the descriptive attributes that SecurAtlas uses for framework recommendations and financial modelling context.To update your organization profile:
The revenue range and employee range fields use bands rather than exact figures. If you have entered exact values in the Financial & Risk Inputs section, those override the range values for ALE calculations.
- Go to Settings in the left navigation.
- Scroll to Organization Profile.
- Edit any of the following fields and click Save.
| Field | What it controls |
|---|---|
| Name | The display name for your workspace. |
| Industry | Used to select industry-specific risk benchmarks and framework recommendations. |
| Employee range | A broad headcount band used in ALE calculations when an exact count is not entered in Financial Inputs. |
| Annual revenue range | A broad revenue band used in ALE calculations when an exact figure is not entered in Financial Inputs. Options range from Under 50M+. |
| Cloud provider | Identifies your primary cloud platform. Used to surface relevant cloud controls and integration recommendations. |
Compliance frameworks
The Compliance Frameworks section lets you select which frameworks apply to your organization. SecurAtlas supports:- ISO 27001
- SOC 2
- NIST CSF
- HIPAA
- PCI DSS
- CIS Controls
Risk pipeline
The Risk Pipeline section lets you manually trigger a full recalculation of your risk score and financial exposure. SecurAtlas recalculates your score automatically when you change a control’s status or upload evidence. Use the Recalculate button in this section when:- You have made multiple bulk changes and want to force an immediate update.
- You have updated your financial inputs and want to see the revised ALE immediately.
- Your score appears stale after a large batch of evidence uploads.
Evidence expiry
Evidence expiry controls how long a piece of uploaded evidence remains valid before SecurAtlas marks it as expired. The default is 365 days. When evidence expires, it no longer contributes to the confidence score for its control. Controls with expired evidence may see their score contribution reduced until new evidence is uploaded. To change the evidence expiry setting:- Go to Settings in the left navigation.
- Scroll to Evidence Expiry.
- Enter the number of days you want evidence to remain valid.
- Click Save.
Next steps
Manage team members
Invite teammates, assign roles, and manage workspace access.
Grant auditor access
Share read-only workspace access with external auditors.