How-to guides

Manage Role-based Access

Manage Role-based Access

Updated 2026-08-17


Manage Role-based Access

The following steps can be used to manage Role-based access for both Tenant Administrators and Tenant Users.

Assign role-based access rights to Tenant Users

  1. Hover on the Administration icon on the left navigation bar of the home screen.
  2. Select Tenant from the options displayed under the Administration icon.
  3. Click on the tenant name from the tenant list.
  4. On the tenant view screen, navigate to the Users section and click on the tenant user
  5. You can either select Bulk Assign and assign the same role for all the scopes OR customize access rights by individually selecting specific role for each scope as shown in the video below.
  6. The following Roles can be assigned to users
Roles Permission/Access Rights
Tenant Administrator Users with Tenant Administrator access rights will be able to do the following: View Utilization PICO Administration Manage Tenants Manage Data Sources
Security Engineer Users with Security Engineer access rights will be able to do the following: View Collection Status/ Manually override and rollback an extractor.View/ Define Custom Enrichment Bucket.Upload Custom Event Stores.View/ Create Custom Extractors.View Geo EnrichmentConfigure IntegrationsManage Signal Suppression RulesManage Slow QueriesManage TokenMachine LearningManage DashboardsRun Interactive QueriesManage CasesManage SignalsManage WorkbooksManage ReportsView Mitre AttackManage StreamsAnalyze EBA
Security Analyst Users with Security Analyst access rights will be able to do the following:View Landing PageCreate Dashboards/ Add Widgets to DashboardRun Interactive QueriesManage/ Create/ View Cases/ Kill Chain ViewView Signals/ Connected GraphsAdd/edit/delete self-created Workbooks, Schedule/ Add parameters to WorkbookView/Create/Schedule Reports, Invoke/Revoke ReportsView Mitre AttackAnalyze EBA
Viewer Users with Viewer access rights will be able to do the following:View Dashboards
  1. Click Save to confirm the action.

Assign User Access Scope Wise

Bulk Assign User Access

Revoke Access rights of a Tenant User

  1. Hover on the Administration icon on the left navigation bar of the home screen.
  2. Select Tenant from the options displayed under the Administration icon.
  3. Click on the tenant name from the tenant list displayed on the screen.
  4. Navigate to the users section, and click on the name of the specific Tenant User to revoke role-based access.
  5. You can either use Bulk Assign and select No Access for all scopes or customize access rights by individually selecting No Access for each scope as shown in the video below.
  6. Click Save to confirm the action.

Related

Was this page helpful?

We use cookies to provide essential site functionality and, with your consent, to analyze site usage and enhance your experience. View our Privacy Policy