Business Process Security

Security that follows your process status

Move beyond static role-based access. Define which actions are allowed at each process state — who can approve, edit, post, or release — with complete auditability in Dynamics 365 Business Central.

Book a demo

Built for Microsoft 365, Business Central, Power Automate, and Azure.

Video playback unlocks after submitting your details.

Why Process-Based Security?

Process-based security ensures that access and actions are tightly aligned with the current stage of a business process.
Unlike traditional role-based access, it dynamically adapts to the process flow, providing state-aware and action-specific controls.

State-aware controls Permissions evolve automatically as processes transition through stages like Draft, Review, and Approval.
Action-level policies Define granular permissions for actions like "Edit price" or "Post" based on the process stage.
Deterministic SoD Guarantees segregation of duties by preventing the same user from preparing and approving a transaction.

Key capabilities

Enforce who can do what at each process state — consistently and auditable.

State-aware access

Map permissions to document status rather than static roles.

Segregation of Duties (SoD)

Policy rules block risky combinations across states.

Approval gates

Require multi-step approvals for critical transitions.

Field & data masking

Hide or lock sensitive fields based on current status.

Just-in-time access

Temporary, reason-based elevation for specific actions.

Audit & evidence

Immutable logs of state changes, approvers, exceptions, and evidence.

How it works

Connect to Business Central, declare your states & transitions, then bind actions and policies.

1. Model process states

Define allowed transitions and pre-conditions per document type.

2. Bind actions to states

Allow or deny “Edit, Release, Post, Cancel…” depending on the current state.

3. Enforce SoD & approvals

Configure SoD rules and single/multi-step approvals with thresholds.

4. Monitor & evidence

Dashboards, alerts, and downloadable evidence packs for audits.

State machine overview

Typical use cases

Procurement

  • Prevent price edits after “Released”
  • Enforce supplier approval gates
  • SoD tussen aanvrager en goedkeurer

Logistics

  • Guard “Pick/Pack/Post” by state
  • Hold/Release with thresholds
  • Exception justifications

Finance

  • Enforce period closing steps
  • Prevent GL edits after approval
  • SoD for posting & reconciliation

Sales

  • Credit check before “Release”
  • Lock discounts after approval
  • Multi-level approvals by amount

Seamless integrations

Native with Business Central; extend via Power Automate and Azure (Entra ID/Key Vault/Monitor).

Dynamics 365 Business Central

State hooks & action policies around standard documents and APIs.

Power Automate

Trigger approvals and escalations as part of your transitions.

Azure & Entra ID

Use Entra ID groups for approvers; store secrets in Key Vault; observability in Monitor.

Ready to secure by process state?

Let us configure a pilot on your Business Central sandbox.

Book a demo