Security Group
A Security Group helps you organise users into groups, such as by department, team, job role, or any other structure that suits your organisation. It can also be used to apply policies and filter dashboard data.
Security Groups can be created manually or imported from Active Directory. A user can belong to one or more Security Groups.
In GuardWare PROTECT, Security Groups control access to protected files. When you protect a file using GuardWare PROTECT, only users in the selected Security Groups can access it. Users who are not members of those groups are automatically restricted. New users who install the PROTECT Agent and sign in successfully are automatically added to the default All Users Security Group.
In GuardWare INSIGHT, Security Groups help you filter and view data for specific sets of users, making it easier to monitor activities and focus on the areas most relevant to users' role. Instead of repeatedly choosing the same individual users, you can select a Security Group to view data for the users you are interested in.
Add a Security Group
Log in to the GuardWare Management Console and navigate to Security Groups.
You need to set up an Azure Key Vault to create security groups. If Azure Key Vault has not been configured, the Security Groups page displays a Create Key Vault option. Select it to start the setup process. See Set Up Azure Key Vault for instructions.
Click +New Security Group. You’ll see an option to create a security group manually or from AD.
To create manually:
Select Manually.

Security Group Name: Enter a descriptive name for the group that reflects its purpose.
Description: Enter a summary of the group’s role or scope. This helps other administrators understand the intended use.
Encryption Mode: Select how files can be decrypted:
Online: Decryption is allowed only when the user is connected to the network.
Offline: Decryption is allowed even when the user is not connected to the network.
Security Group Type: Select how membership is managed:
Private: Only members and administrators can see the group; it’s hidden from non-members.
Public: Visible to all users, and anyone can see the group.
Click Save.
To import from AD:
Select From the AD.

Search for the required AD group. Matching Security Groups appear in the SECURITY GROUPS list.
Select the AD group. The selected group appears in the Selected Security Group panel on the right.
Click Save. The group will appear in the Security Group List. You can view the list either by the Group name or by users.
Assign Users to a Security Group
Navigate to Security Groups.
To assign INSIGHT users:
Search for the security group and click Assign Users > Assign INSIGHT Users in the ACTIONS column.

Search and select the users to add, and click Assign Users.
To assign PROTECT users:
Search for the security group and click Assign Users > Assign PROTECT Users in the ACTIONS column. You’ll see the list of all users, including AD and external users.

Search and select the users to add, and click Assign Users.
Edit a Security Group
Navigate to Security Groups and search for the security group to edit.
In the ACTIONS column, click the Edit icon.

Update the required details and click Save.
Delete a Security Group
Deleting a security group immediately removes all assigned users from the group and revokes any permissions granted through it.
For example, when a project is completed and all related files should no longer be accessible, deleting the project’s security group instantly removes access for all members.
To delete a Security Group:
Navigate to Security Groups and search for the security group you want to delete.
In the ACTIONS column, click Delete.

Click Delete in the confirmation alert.
Last updated