Settings FAQ
Commonly Asked Questions regarding CyberHQ Settings
The Settings module is where you configure CyberHQ to match how your organisation works, from risk and capability frameworks to users, workspaces, connectors, and your profile. This article answers the questions that come up most often across those areas and points you to the detailed article for each. If your question is specific to one area, the linked articles cover it in full.
Who can change settings?
Access to settings is governed by role-based access control, so what you can view and change depends on the role you have been assigned in that workspace. Administrators manage workspace-wide configuration such as users, frameworks, and connectors, while other roles may have more limited access. If a settings area is missing for you, you most likely do not have the required role, and an administrator can adjust this.
Where do I change my workspace's name, logo, or theme?
These are part of your workspace profile, managed from Settings > Profile. See Managing your Profile and Setting up Your Workspace Profile for the full steps.
What's the difference between a workspace and my profile?
A workspace is an independent sub-unit of your organisation, such as a business unit, subsidiary, or region, with its own security frameworks, capability assessments, and reporting. Your profile refers either to your workspace's identifying details (workspace profile) or to your individual account settings (personal profile). Put simply, a workspace is an environment, while a profile is identity information about that environment or about you.
How do I add or remove users?
Users are managed from Settings > Users, where administrators can add individual users, bulk-upload them, assign them to workspaces with roles, and archive accounts to revoke access. See How to invite and archive users for details.
How do I enable Multi-Factor Authentication?
Open your user profile via your name in the top right-hand corner and toggle the MFA switch at the bottom of the page. Note that MFA is only available for single sign-on accounts. See Managing your Profile for more.
Why can't I see the Connectors page?
Connector configuration lives under Settings > Connectors and is typically reserved for administrators, since it controls how external data flows into your workspace. If you cannot see it, check your role with an administrator. For what this area does, see Managing your Connector Settings.
Where do I configure my risk matrix or capability frameworks?
Risk configuration, including the risk matrix, impact types, and risk event types, is under Settings > Risk. Framework selection, control targets, and attestation rules are under Settings > Capabilities. See Risk Settings Overview and Capability Settings Overview respectively.
What is the Trust Portal?
The Trust Portal is the area of Settings used to manage how your organisation shares its security posture externally. Managing access to it is covered in Managing your Trust Portal.
If your question isn't covered here, the individual Settings articles go into full detail, and you can reach out through the support options in your knowledge base.