Skip to main content

Manage guest administrators (New experience)

Invite a guest administrator to manage compliance on your behalf, or remove access when it’s no longer needed.

Updated this week

💡 Still using the classic Drata experience? Refer to Manage Guest Administrators for the original UI.

When to use guest administrators

Invite a guest administrator if you work with a:

  • Managed Security Service Provider (MSSP)

  • Virtual CISO (vCISO)

  • Centralized security/compliance team supporting your workspace

Prerequisites

  • Only users with the Admin role can invite or remove guest administrators.

  • Guest administrators have full access to the Drata application, equivalent to an Admin.

  • For security reasons, you can invite guest administrators only from approved email domains.

  • Personal email addresses aren’t supported for guest administrator invitations.

  • To approve a new email domain, contact the Drata Customer Success Team.

When access becomes active

After you send an invitation, the guest administrator may not have access immediately. Invitations are processed during a scheduled data sync, and access can take up to 1 hour after the invite is accepted.

Invite a guest administrator

  1. Go to Settings → Organization → Role administration page.

  2. Select the Guest tab, then select the Invite guest button.

    displays role admin page with invite guest button being selected

  3. Enter the guest administrator’s work email address.

  4. Select Invite.

  5. Confirm the invitation when prompted.

What happens next

  • The guest administrator receives an email invitation.

  • They must accept the invitation to complete setup.

  • Until they accept, their status appears as Pending.

Access may take up to 1 hour after acceptance due to scheduled syncing.


Remove a guest administrator

  1. Go to Settings → Organization → Role administration.

  2. Select the Guest tab.

  3. Locate the guest administrator in the table.

  4. Select the ellipsis (⋯), then select Remove access.

  5. Confirm removal when prompted.

Result: The guest administrator is removed and no longer has access to your organization.

Did this answer your question?