How-to guides
Manage Role-based Access
Manage Role-based Access
Updated 2026-08-17
Manage Role-based Access
The following steps can be used to manage Role-based access for both Tenant Administrators and Tenant Users.
Assign role-based access rights to Tenant Users
- Hover on the Administration icon on the left navigation bar of the home screen.
- Select Tenant from the options displayed under the Administration icon.
- Click on the tenant name from the tenant list.
- On the tenant view screen, navigate to the Users section and click on the tenant user
- You can either select Bulk Assign and assign the same role for all the scopes OR customize access rights by individually selecting specific role for each scope as shown in the video below.
- The following Roles can be assigned to users
| Roles | Permission/Access Rights |
|---|---|
| Tenant Administrator | Users with Tenant Administrator access rights will be able to do the following: View Utilization PICO Administration Manage Tenants Manage Data Sources |
| Security Engineer | Users with Security Engineer access rights will be able to do the following: View Collection Status/ Manually override and rollback an extractor.View/ Define Custom Enrichment Bucket.Upload Custom Event Stores.View/ Create Custom Extractors.View Geo EnrichmentConfigure IntegrationsManage Signal Suppression RulesManage Slow QueriesManage TokenMachine LearningManage DashboardsRun Interactive QueriesManage CasesManage SignalsManage WorkbooksManage ReportsView Mitre AttackManage StreamsAnalyze EBA |
| Security Analyst | Users with Security Analyst access rights will be able to do the following:View Landing PageCreate Dashboards/ Add Widgets to DashboardRun Interactive QueriesManage/ Create/ View Cases/ Kill Chain ViewView Signals/ Connected GraphsAdd/edit/delete self-created Workbooks, Schedule/ Add parameters to WorkbookView/Create/Schedule Reports, Invoke/Revoke ReportsView Mitre AttackAnalyze EBA |
| Viewer | Users with Viewer access rights will be able to do the following:View Dashboards |
- Click Save to confirm the action.
Assign User Access Scope Wise
Bulk Assign User Access
Revoke Access rights of a Tenant User
- Hover on the Administration icon on the left navigation bar of the home screen.
- Select Tenant from the options displayed under the Administration icon.
- Click on the tenant name from the tenant list displayed on the screen.
- Navigate to the users section, and click on the name of the specific Tenant User to revoke role-based access.
- You can either use Bulk Assign and select No Access for all scopes or customize access rights by individually selecting No Access for each scope as shown in the video below.
- Click Save to confirm the action.
Related
Was this page helpful?