Creating custom roles
Custom roles in applications are user-defined access profiles that allow you to create specific permission sets beyond the default options. This flexibility ensures that users have exactly the rights needed for their jobs, reducing unnecessary access and improving security.
The tab displays all available roles along with their type and description. By default, every role includes the Observer role.
To create a new custom role
- Navigate to Access Management > Roles.
- Select Create role.
- Enter the role name and description.
- Select the permissions that you want the role to have.
- Click Review.
- In the Permissions for the Role popup, review the selections and click Create.
The newly added role will appear on the page. Click the role name to view details of the permissions associated with it.
You can assign the newly created role to any user or group by navigating to tab.
On the tab, you can perform the following operations:
View Usage: For any role, click to see the list of users assigned to the selected role and the multiperson authorization policies in which the role is designated as an approver.
Copy and Customize: Select an existing role and click to create a new role based on it.
Delete Role: For any role, click .
Note:
Roles can be deleted only if they are not assigned to any user. Only custom roles can be deleted. Base and extended roles cannot be deleted.