Skip to main content
MSP staff manage Company user access in Settings > Users & Roles > Company Users. A user’s Permissions Group assigns the Company role that controls what they can do in the portal.
For MSP staff with permission to edit Company users. Company administrators request access changes from their IT provider; they do not manage their own users or permission roles through these settings.

Choose the kind of change

Team Roles are separate organizational roles. They are not the permissions group you select in the Company user editor.

Change one user

1

Find the Company user

Open Settings > Users & Roles, then select Company Users. Use the company scope and table filters to find the right person. Confirm the company and email as well as the name.
2

Open the editor

Select the user’s name, or use the row’s menu and edit action. The user’s details open in a dialog.
3

Select the permissions group

In Permissions, choose the intended Permissions Group. The list contains the roles available for Company users. Changing the selection does not save yet.
4

Save and verify

Select Save Changes and wait for the result. Confirm the user’s Permissions Group in the table. If other edited fields caused a save error, reopen the user and check what was saved before retrying.
The editor can also contain email, company, location, and custom fields. Review those separately if you intend to change them. A role assignment controls permissions; changing the person’s company is a different operation.

Update several users

  1. Filter the Company Users table to the intended company and users.
  2. Select the users’ checkboxes. Review the selected count and whether you selected specific rows or all matching results across pages.
  3. Open the selection’s actions and select Update Permissions.
  4. In Bulk Update Permissions, choose the Permissions Group to apply to every selected user.
  5. Select Save, wait for the result, and verify the affected users.
No permissions group clears the selected users’ role assignments. It does not mean “leave their current permissions unchanged.” The bulk dialog starts with this option, so choose the intended group before saving.
If the result reports that some changes were not permitted, check the users individually. A partial failure does not mean every user’s previous group was preserved.

Check the result

Confirm the saved group, then have the Company user reopen the relevant portal area. If their session still shows old access, ask them to sign out and back in and try again. A permissions group is only part of feature availability. The relevant company, enabled module, integration, record visibility, and action-specific requirements still apply. Granting a role does not create missing provider data or enable an integration.

Frequently asked questions

Company user administration is performed by the MSP. The Company administrator should request the change from their IT provider.
Assigning a different existing group to one user changes that user’s assignment. Editing the group’s permission definition affects the users assigned to that role.
Create or duplicate an appropriate role, change its permissions, and assign it to that person. Check the role definition before assigning it.
No. Use Save Changes for one user or Save in the bulk dialog. Cancel closes the dialog without submitting the selection.
Saving it clears the role assignment. It does not preserve the old group or delete the user record. Verify the resulting access rather than treating it as a general account-deactivation action.
The Company user editor offers Company-assignable roles. An MSP staff role is a different role type. Ask an MSP administrator to review or create the appropriate Company role if needed.
Company permission roles control the Company portal experience. They do not turn a Company user into MSP staff or grant tenant-wide settings access.
The table supports selection across matching results. Check the selection count and scope before applying a bulk change; filtering the table alone does not apply a role.
Do not assume that. Single-user edits can save several kinds of changes, and bulk updates can affect some users before reporting a problem. Reopen the affected records and verify their groups before retrying.