Why Security and Access Control Matters
A CRM stores your most valuable business asset—customer data. Unauthorized access, data leaks, or breaches can have devastating consequences:
Financial Loss: Data breaches cost millions in fines and recovery
Reputation Damage: Loss of customer trust
Legal Liability: Violations of data protection laws like GDPR
Competitive Disadvantage: Sensitive business information exposed
Sangam CRM addresses these risks through comprehensive security features including roles, teams, advanced restrictions, and data masking .
Key Security Features in Sangam CRM
1. Roles: Module and Field-Level Access Control
Roles are the first line of defense in Sangam CRM's security architecture. They control what users can see and do within the system at the module and field level .
Key Capabilities:
Module Access: Determine which modules (Leads, Opportunities, Tickets, etc.) a user can access
Action Permissions: Control specific actions users can perform:
Access: Enable/disable module access
List: View records in list views, pop-ups, and subpanels
View: See record details
Edit: Modify records
Create: Add new records
Delete: Remove records
Export: Download data
Import: Upload data
Mass Update: Bulk update records
Go to Admin Panel → User Management → Role Management
Click the plus icon to create a new role
Name the role descriptively (e.g., "Executive - Self Access" or "Manager - Full Access")
For each module, configure permissions:
List: Set to "Assigned To" for self-access
Create: Set to "All" for record creation
Export/Import: Set to "None" for security
Access Type: Set to "Normal"
Assign the role to specific users
2. Teams: Record-Level Visibility Control
While roles control module access, teams determine which specific records a user can see within those modules .
Key Concepts:
Default Team: When a user is created, a private team is automatically created
Team Assignment: Records can be assigned to specific teams
Visibility: Users can only see records belonging to teams they are assigned to
A user is created with a Default Team setting (initially "All")
After saving, go to Edit User and change Default Team to the user's private team
Users can only see and interact with records assigned to their team
Advanced Use Case :
If you want a user to only see opportunities related to a specific manufacturer (e.g., "ENJAY"):
Create an "ENJAY" team
When an opportunity is created with ENJAY as the manufacturer, add the ENJAY team to that record
Add the ENJAY team to the user's profile
The user will only see opportunities with the ENJAY team
3. Advanced Security Restrictions
Sangam CRM offers additional security features beyond basic roles and teams .
Key Features:
Data Masking: Mask emails and phone numbers for additional security
User-Specific Restrictions: Control access based on roles and responsibilities
Secure Cloud Hosting: Enterprise-grade data center hosting
Completely Secured: The mobile CRM app is "completely secured with all the modern security features"
4. Field Display Permissions
Advanced field-level security ensures sensitive information is protected .
Key Capabilities:
Sensitive Field Configuration: Mask sensitive fields like IP addresses and user information
Role-Based Visibility: Only selected roles can view original data; others see masked information
Flexible Masking Rules: Configure masking using regex patterns
Go to Manage → Field Display Permissions
Add a masking rule
Define the data type and field(s) to mask
Write a regular expression (or use the template library)
Preview the masking effect
Select roles for which the data should be masked
The system displays masked data as
***for unauthorized roles
5. Mobile Security
The Sangam Mobile CRM app extends security to mobile devices :
Mobile Security Features:
Modern Security Features: "Completely secured with all the modern security features"
Data Not Collected: The developer indicates that no data is collected from the app
Secure Access: All mobile access is authenticated and authorized
Best Practices for Security Implementation
Principle of Least Privilege: Grant users only the permissions they need
Regular Reviews: Periodically review roles and access rights
Use Teams for Granular Control: Leverage teams for record-level visibility
Enable Data Masking: Protect sensitive information with field masking
Monitor User Activity: Use audit trails to track suspicious behavior
Update Regularly: Keep all systems and integrations updated
Train Your Team: Ensure users understand security protocols
Real-World Security Applications
For IT Companies
Scenario: Different clients require different access levels.
Solution:
Create client-specific teams
Assign team members to their respective clients
Configure roles to restrict access to only relevant modules
For Chartered Accountants
Scenario: Sensitive financial data must be protected.
Solution:
Enable data masking for sensitive fields (PAN Card, GST Certificate, Aadhar Card)
Use roles to restrict access to financial modules
Implement team-based visibility for client records
For Manufacturing
Scenario: Confidential product information needs restricted access.
Solution:
Create product-specific teams
Use roles to control module access
Enable data masking for sensitive product details
The Role of Teams in Data Security
The team concept is particularly powerful for granular record control :
How Teams Work:
User Creation: Each user gets a private team automatically
Default Team Setting: Initially set to "All" but should be changed to the user's private team
Record Assignment: Records can be assigned to specific teams
Visibility Rule: Users can only see records belonging to teams they are assigned to
Create a Role: Name it descriptively (e.g., "Executive - Self Access")
Set Permissions: For each module, set List to "Assigned To", View to appropriate level, Create to "All", Export to "None"
Assign the Role: Assign the role to the user
Set Default Team: Change the user's Default Team to their private team
Why Choose JMD eSolutions for Your CRM Security Needs?
At JMD eSolutions (www.jmdes.in) , we specialize in helping businesses implement robust security for their Sangam CRM:
Security Audit: We assess your current security posture
Role Configuration: We help set up roles and teams correctly
Data Masking Setup: We configure sensitive field masking
Compliance Support: We ensure your CRM meets regulatory requirements
Training & Support: We train your team on security best practices
0 Comments