Best practices to set up firm security
You can use the security features in Practice CS to restrict staff member from accessing areas of the application. You may want to do this if you have staff members who perform specific functions and don’t need access to every screen.
This article covers how to turn on security, how to manage security groups, and the recommended security settings.
How does it work?
You can turn on security for the entire firm. When you enable firm security:
- The staff ID you enter inPractice CS SetupthenStaffbecomes a sign-in to the application.
- You'll need to set up and adjust your security groups.
- Every staff member needs to be added to a security group.
What security groups should I have?
Set up security groups that give each staff member access to the areas of Practice CS that they need to do their job.
If you haven't already, start by identifying your categories of staff or categories of work that your staff perform. For example, your staff may perform the following types of work:
- Timekeepers:Staff who only enters time into Practice CS.
- Billers:Staff who produces invoices.
- Administrators:Staff who performs administrative tasks like adding or editing clients, staff, activities, engagements, or projects.
- Partners/Owners:Staff who makes billing decisions and monitor staff work and performance.
Suggested security groups:
- Timekeeper
- Biller
- Invoice approval
- A/R Entry
- Firm Partner
- Front desk
- Office Administrator & HR
- Project manager
- Staff manager
The access you assign to each group is up to you. If you want to read more about what kinds of access options you have, you can review:
- More about security privileges: Explains the concepts of security groups, privileges, and how the menus work.
- Complete list of recommended security settings: A list of all the security options and recommendations for which options to turn on.
How do I start?
Step 1: Turn on security
As soon as you turn on security, staff will have sign-ins and passwords to Practice CS and you'll need to immediately add staff to security groups.
- Go toSetup,Firm, then thePreferencestab.
- Under Security Options, selectEnable Firm Security.
- SelectEnter.
- SelectYesto the message.
- Go toFilethenOpen Firm.
- In the Staff ID field, enterADMIN.
- Leave thePasswordfield blank.
- SelectOK.
- Set up a new password for the ADMIN sign-in.
- SelectOK.
Step 2: Create security groups
Security groups are where you add and remove access to areas of Practice CS.
- Go toSetupthenSecurity Groups.
- SelectAdd.
- Enter a name for the security group in theDescriptionfield.
- Select the checkboxes next to the areas you want the group to have access to.
- SelectEnterto save.
You can't set security privileges for individual staff members, but you could create a group and add only 1 member to it. Practice CS comes with an Administrator group. Staff members in the Administrator security group have full access to every function in Practice CS. The Administrator group can't be changed or deleted and at least 1 staff member needs to be assigned to it. Practice CS initially assigns ADMIN to the Administrator security group when security is turned on.
Step 3: Add staff to security groups
When you add a staff member to a security group, they automatically get all the privileges of that group.
- SelectSetupthenStaff.
- Select a staff member and selectEdit.
- Go to the Security tab.
- Select the checkbox next to the security group you want to add the staff member to.
- SelectEnterto save the changes.
Step 4: Create staff passwords
During the security setup, you have been signed in with the ADMIN staff ID. You'll need to give each staff their Practice CS staff ID and ask them to create a password.
- Sign in with the ADMIN staff ID and password that was set up inStep 1: Turn on security. You may already be signed in as the ADMIN.
- Go toSetupthenStaff.
- For each staff in the list, check the ID field on the Main tab. Give each staff person their ID.
Ask each staff member to follow these steps:
- Open Practice CS. If it's already open, close and re-open.
- If the CS Professional Suite sign-in screen appears, enter the Thomson Reuters ID as usual.
- Enter the Staff ID given to you. This is the ID fromSetupthenStaffin the program.
- Leave the password blank.
- SelectOK
- You should be prompted to enter a new password. Follow the prompt.
- SelectOK.
- You will be taken into the program and your new security access will be in effect.