Identity and access management
Vault Radar access is governed through HashiCorp Cloud Platform (HCP) identity and access management. Operators assign organization-level roles to teams — see People and process for the recommended role per stakeholder — and then use resource-based access control to grant least-privileged access to specific data sources.
Resource-based access control
Vault Radar administrators can grant developer access to specific resources for least-privileged access at the group level.

Create groups at the HCP organization level, and then assign them to one or more data sources or repositories with Resource Contributor or Viewer roles. While the Resource Viewer role can only view information about a risk, a Resource Contributor can view and modify the state of a risk, possibly applying remediation to it.

For more on HCP roles and access management, see the HCP access management documentation.