Skip to main content

Roles

A role is an access profile that defines what a user can do in the system. Each role has a set of permissions per section (read, edit, delete).

Purpose

Limit access per user, separate responsibilities (for example, cases only, configuration only), and align system usage with security policies.

Configuration

FieldDescription
NameRole name (required)
DescriptionDescriptive text for the role (required)
TypeRole type that defines the default set of permissions (required)
IdentifierUnique role identifier (for LDAP/SAML mapping)

Role types

TypeDescription
SecurityFull access to security and audit configuration
SupervisorManagement of jobs, scripts, and operational configuration
AuthorCreation and editing of scripts and rules
AnalystManagement of cases and findings
OwnerRead access and management of own resources
GuestLimited read-only access

Relationship with other modules

  • Assigned to Users (each user has one role per account)
  • Controls access to Cases, Requests, Scripts, Jobs, Rules, and all Configuration sections
  • Access logs can only be viewed by users with permission on that section