2. Security is one of the
most important
parameters in the today’s
world especially
Pharmaceutical
companies who deal
with highly confidential
data.
3. Business Case
The Client needed a reliable Document
Management System which would
safeguard all its documents with the
highest security and should be cost
effective.
Every document should be approved
with a Digital signature by the
concerned authorities defined for the
document to move ahead in the
hierarchy and it should be tracked as
well.
To safeguard the documents’
confidentiality, Client requested Admin
control over role-based user
permissions for the users and
restricting some to perform certain
actions like print and download.
Create organized folder structures for
the various department to access and
retrieve documents easily.
4. Challenges
Even though SharePoint is web based collaborative environment, the client requested the
System to be restrictive as the data needed to be very highly secured.
that maintaining security of the application while integrating external app with SharePoint
DocuSign app was used for Digital Signature but Information Right Management (IRM) Library
Library was implemented for higher security; however, DocuSign being an external app was
conflicting with IRM and was open to security breach.
5. Resolution
1. As the system needed to be restrictive, our experts developed an
approach where the data was highly secured.
2. To keep it simple for Admin, we created 3 groups with different
permissions. Through Admin Dashboard, Users could be added or
removed from respective groups.
3. To increase the security IRM was implemented where user had to
sign in again to view highly confidential documents.
4. To analyze usage and track accountability, admin can monitor who
accessed the documents and modifications made if any.
5. To avoid Information Right Management library conflicting with the
flow of DocuSign app, we created a solution where print and
download access of the documents will be assigned to the requested
1% of the top management team. So basically Digital Signature
feature was assigned to all the users whereas print and download
access was given to specified admin users.