π‘ Still using the classic Drata experience? Refer to RBAC - Workspace Manager Role for the original UI.
The Workspace Manager role is designed for users who manage day-to-day compliance work within specific workspaces. Workspace Managers can oversee compliance activities only in the workspace(s) they are assigned to.
Prerequisites
Before you can assign Workspace Managers, the following requirements must be met:
Workspaces must be enabled in your Drata account
Workspaces is an add-on feature
Contact your Customer Success team to enable Workspaces
Only Admins can assign or remove Workspace Managers
Assign a Workspace Manager
Admins can assign Workspace Managers through the Workspaces settings.
Go to Settings β Workspaces
Select the workspace you want to manage
In the Managers section, select Edit
Add or remove Workspace Managers as needed
(Optional) Enable Read-only permission
Select Save
From this page, you can also update existing Workspace Managers, assign read-only permissions, or remove them as workspace managers.
Notes:
You can assign multiple Workspace Managers to the same workspace
A workspace does not require a Workspace Manager
Read-Only Workspace Managers
Workspace Managers can optionally be granted read-only access if they should view or download information without making changes.
The table below summarizes common Workspace Manager permissions. Actual access may vary depending on enabled features and configuration.
Permission | Standard | Read-only |
View workspace pages (Dashboard, Controls, Frameworks, Monitoring, Audits, and more) | β Yes | β Yes |
Download reports and evidence from Events, Evidence, and Audits | β Yes | β Yes |
Create and edit controls | β Yes | β No |
Edit frameworks and requirement scope (including custom frameworks) | β Yes | β No |
Run monitoring tests and manage notifications | β Yes | β No |
View events and download test evidence for their workspace(s) | β Yes | β Yes |
Upload or edit evidence | β Yes | β No |
Manage audits (assign auditors, send requests, create audits) | β Yes | β No |
Complete and assign risk assessments | β Yes | β No |
Manage risks | β Yes | β No |
Manage vendors | β Yes | β No |
Manage assets | β Yes | β No |
View and edit personnel records | β Yes | β No |
Create, edit, and manage policies | β Yes | β No |
View connections that are workspace aware and re-sync findings | β Yes | β No |
Create and manage tickets for controls and tests (if ticketing write access is enabled) | β Yes | β No |
Create and manage tasks in their assigned workspace(s) | β Yes | π Yes, View only |
Manage company-level workspace settings (create/delete workspaces, assign managers, configure frameworks) | β No | β No |

