Authority in practice

Delegance use cases

Apply scoped delegation where work must move without turning every operator into a permanent administrator.

01

Delegated application administration

An application owner delegates a limited function—such as account support or configuration—without granting full platform administration. Scope, duration and accountable owner remain visible.

02

Business-managed access

Business owners approve entitlements they understand better than central IT. Guardrails translate business decisions into target-platform access while IT retains technical control.

03

Temporary elevated access

Authority is activated for a task or period, monitored while active, and removed automatically or through an explicit lifecycle event.

04

External-party delegation

Partners, contractors and service providers receive bounded authority without being treated as unrestricted internal administrators. Organisation, purpose and expiry remain part of the decision.

05

High-risk administration

Identity recovery, credential issuance, privilege assignment, user administration and access changes can require stronger approvals, separation of duties and evidence.

06

Organisational representation

Connect a person’s access to evidence that they represent an organisation and are authorised to perform the specific action.

Apply the model

Make authority explicit.

Start with the business action, accountable owner, current entitlement and platform control surface.

Talk to MAITS →