Who reviews access
Reviewers with the Approve Assigned Reviews permission use the Review Queue to certify the access items assigned to them. Campaign managers can also open the queue to monitor decisions.
Open a campaign from the Access Reviews list, then select the Review Queue tab.

The Review Queue lists each access item with the context needed to make a decision.
Understanding the columns
Each row is one user's access to one application, with supporting context to inform your decision:
Column | Description |
|---|---|
Employee | The user whose access is being reviewed, with their email. |
Application | The application the access applies to. |
Role | The role or entitlement the user holds in that application. |
Access Paths | How the access was granted (for example, direct assignment or via a group). |
Relevant Groups | Groups that contribute to the user's access. |
Last Login | When the user last signed in to the application. |
Login Count (30D / 90D) | Sign-in activity over the last 30 and 90 days — useful for spotting dormant access. |
MFA | Whether multi-factor authentication is enabled for the access. |
Status | The current decision: Pending, Approved, or Denied. |
Making decisions
For each item, choose Approve if the access is still appropriate, or Deny if it should be revoked. When you deny an item you are prompted to record a justification, which is preserved in the audit trail and carried into remediation. Justification text fields enforce a maximum character limit. Audit Trail rows also have a maximum display height to prevent unusually long entries from disrupting the interface.
Bulk decisions
To act on many items at once, select the checkboxes for the rows you want, then use Bulk Approve or Bulk Deny. Use the column filters to focus the queue (for example, on a single application or on pending items) before making bulk decisions.