Skip to main content
Getting your team into VISO TRUST early means better coverage, clearer ownership, and fewer gaps in your risk program. This page covers how to invite users, assign roles, and set up default notification behavior.

Inviting a User

1

Go to Settings → Users

In the left sidebar, select Settings, then select Users.
2

Click Add User

Enter the user’s name and email address, check Invite to VISO TRUST, and select their role: Admin, Program Manager, Contributor, or Viewer.Not sure which role to assign? See Role-Based Access.
3

Send the invitation

The user receives an email with a link to set up their account. If they don’t receive it, ask them to check their spam folder or contact support@visotrust.com.
If your organization uses SSO, users will be redirected to your identity provider when they log in. SSO must be configured by an Admin before users can authenticate this way. See SSO / Okta Configuration.

Assigning Business Owners and Assessment Leads

Once a user is in the platform, you can designate them as the Business Owner or Assessment Lead of specific relationships. These are not roles — they are per-relationship designations that grant a Contributor edit access on that relationship. See Role-Based Access for how each designation affects permissions. To assign a Business Owner or Assessment Lead:
  1. Open the relationship from the Relationships page
  2. Open the Relationship configuration dialog using the gear icon
  3. Select a user from the Business Owner or Assessment lead field
You can also set these designations when creating a new relationship, or assign them across many relationships at once from the Relationships list page using the Assign assessment lead and Assign business owner bulk actions. Each relationship can have a different person in each designation — the two are fully independent.

Default Subscribers

A Default Subscriber is a user who is automatically subscribed to every relationship in the platform — existing and future. This is useful for centralized risk or compliance teams who need full visibility across the vendor portfolio. To enable Default Subscriber for a user:
1

Go to Settings → Users

Find the user you want to configure.
2

Open user settings

Click the three-dot menu next to the user and select Edit.
3

Enable Default Subscriber

Check the Default Subscriber box and select Save.
Once enabled, that user is immediately subscribed to all existing relationships and any new ones going forward.
A Default Subscriber cannot be removed from an individual relationship without first disabling the Default Subscriber setting on their user profile.
You can have multiple Default Subscribers. Good candidates include:
  • Centralized risk or compliance teams
  • Security operations centers (SOCs)
  • Audit and governance teams

Managing Subscribers on Individual Relationships

Outside of Default Subscribers, you can manually add or remove subscribers on any relationship. Open the relationship, open the Relationship configuration dialog using the gear icon, and manage the Subscribers list there. To update subscribers on many relationships at once, select them on the Relationships list page and use the Manage subscribers bulk action to add or remove users across the selection. Subscribers receive notifications for:
  • Assessment status changes
  • Risk advisories and breach alerts
  • Remediation requests
  • Lifecycle events (expiring documentation, upcoming recertifications)
Think of Subscribers like “watchers” on a ticket — they stay informed without being responsible for the relationship. Use them to give stakeholders visibility without granting edit access.