Configure custom security policy - Precisely Data Integrity Suite

Data Integrity Suite

Product
Spatial_Analytics
Data_Integration
Data_Enrichment
Data_Governance
Precisely_Data_Integrity_Suite
geo_addressing_1
Data_Observability
Data_Quality
dis_core_foundation
Services
Spatial Analytics
Data Integration
Data Enrichment
Data Governance
Geo Addressing
Data Observability
Data Quality
Core Foundation
ft:title
Data Integrity Suite
ft:locale
en-US
PublicationType
pt_product_guide
copyrightfirst
2000
copyrightlast
2026

Custom security policies are the security policies created in the application by an end user. Custom security policies can be created if you would want to create a Security policy from the scratch by selecting the assets,user groups and the associated roles.

To create a custom security policy:
  1. Go to Configuration > Security.
  2. Select Policies.
  3. On the Policies page, select Create Security Policy.
  4. In the policy details step, enter the policy name and any other required information. The Description field is optional.
  5. In the assignment pane, select Assign Roles, then choose an appropriate role from the dropdown.
  6. Select the users or user groups to associate with the policy.
  7. Use the arrows to move selected users or groups to the Selected Groups and Users pane.
  8. In the selected items table, select a user or group to view its assigned roles, groups, and users.
  9. Verify the entries in the table. Groups display a group tag, while individual users display without a tag.
  10. Select Assign to add the selected users and user groups to the policy.
  11. Define the asset targeting settings. You can apply the policy to All assets or target Assets by condition.
  12. Select Preview to review the assets targeted by the policy.
  13. Select the Propagate to all descendants checkbox to apply the security policy to all assets and their child assets. For example, if the policy is applied to the host datasource, it is also inherited by the underlying database and schema.
  14. Select Create to save the policy.

Conditions to select assets in security policies

The condition targeting feature defines how a security policy applies to assets. You can choose All Assets to apply the policy broadly, or select Assets by condition to target assets using specific criteria.
  • The condition builder updates each row based on earlier selections, making it easier to create precise targeting rules and add multiple condition groups when needed.
  • The system populates each additional condition row incrementally based on the conditions users define in earlier rows. This helps users maintain context as they build more precise targeting logic.
  • You can review the policy in the preview step before they create it.
The values displayed in the initial filter are:
  • Asset class: A core category that groups similar assets in Precisely Data Integrity Suite. It helps organize assets for easier management, search, and governance.
  • Asset type: A template that defines how assets are categorized and managed in Precisely Data Integrity Suite. It determines what information is captured, how it is organized, and which rules apply.
  • Domain: A logical grouping of related data assets that represents a business capability. It helps organize business and technical assets into a manageable structure.
  • Owner Group: A group of users collectively responsible for managing data domains and related assets.
  • Owner User: An owner user refers to users assigned workspace owner permissions.
Tip: In a security policy, all conditions within the same group must match the defined filter. Conditions across multiple groups are evaluated using OR logic, so any matching group satisfies the policy.

Edit security policy

To modify a security policy by changing assets, roles, assigned users, or user groups:

  1. Click Configuration > Security from the main navigation menu.
  2. Navigate to the Policies tab.
  3. Use the Search to locate the security policy or click the ellipsis next to their name and select Edit.
  4. Once the Edit Policy dialog opens, modify the assigned roles, users, user groups or the targeted assets.
    1. Click Assign Roles to add new roles to the policy.
    2. To edit the assigned roles and the associated user groups, click the ellipsis next to the associated role and select Edit.
    3. In the Edit Role Assignment window, modify the assigned roles.
    4. Click Save to apply the changes to the roles.
    5. Within the Target assets section, you can change the condition to select the target assets or modify the defined conditions.
      Note: Changing the criteria to select target assets resets all previously defined conditions.
  5. On the Edit security policy page, click Save to apply the changes to the policy.

Duplicate security policy

To duplicate an existing security policy:

  1. Click Configuration > Security from the main navigation menu.
  2. Navigate to the Policies tab.
  3. Use the Search to locate the security policy or click the ellipsis menu next to their name and select Duplicate.
  4. On the Create Security Policy page, modify the details as required and click Create.

Delete security policy

To delete a security policy:

  1. Click Configuration > Security from the main navigation menu.
  2. Navigate to the Policies tab.
  3. Use the Search to locate the user group or click the ellipsis next to their name and select Delete.
  4. The Delete Security Policy dialog opens with the name of the security policy you would like to delete as well as a message indicating that deleting the security policy removes all of the assets.
  5. Click Delete.

Enable security policy

To enable a security policy:

  1. Click Configuration > Security from the main navigation menu.
  2. Navigate to the Policies tab.
  3. Use the Search to locate the security policy or click the ellipsis next to their name and select Enable.
  4. The Enable Security Policy dialog opens with the name of the security policy you would like to enable as well as a message indicating that disabling this security policy causes users and user groups to perform actions on the assets.
  5. Click Enable.

Disable security policy

To disable a security policy:

  1. Click Configuration > Security from the main navigation menu.
  2. Navigate to the Policies tab.
  3. Use the Search to locate the security policy or click the ellipsis next to their name and select Disable.
  4. The Disable Security Policy dialog opens with the name of the security policy you would like to disable as well as a message indicating that disabling this security policy causes users and user groups to no longer be able to perform actions on the assets.
  5. Click Disable.