Create, assign, and manage roles

Roles control the operations that a user can perform in their Identity as a Service account. A role defines a list of System entities and the permissions for those entities.

There are five system-defined roles, which cannot be changed. Administrators can also create custom roles. Changes to a role take effect the next time the user logs in. System-defined Identity as a Service roles and roles assigned to user accounts that are synchronized with Active Directory cannot be changed.

System-defined roles include:

       Auditor

       Super Administrator

       Help Desk Administrator

       SCIM Provisioning

       SIEM Add-on

       AD Connector

Working with roles

Create a custom role

Clone a role

Edit a custom role

Delete a custom role

System entities

Click here to view the list of Identity as a Service system entities.