Understanding User Roles

This document will explain the User Roles and permissions which can be mapped for users. Creating various users with only certain roles and permissions allow you to have a more robust control over who does what with the product. For a detailed understanding about the various user roles and the associated scope offered by the product, refer to the doc on role difference.

To create a new user, navigate to Admin -> General Settings -> User Administration ->Add User

To create a new role, navigate to Admin -> General Settings -> User Administration -> Add Role

User RoleConfigurationsPatch ManagementSoftware DeploymentInventoryToolsRemote Desktop SharingReportMDM Control ModulesOS ImagingOS Deployment
Administrator

Full Control

Full Control

Full Control

Full Control

Full Control

Full Control

Full Control

Full Control

Full Control

Full Control

AuditorNo AccessNo AccessNo AccessNo AccessNo AccessNo AccessRead AccessRead Access to ReportsNo AccessNo Access
GuestRead AccessRead AccessRead AccessRead AccessRead AccessRead AccessRead AccessRead AccessRead AccessRead Access
IT Asset ManagerNo AccessNo AccessNo Access

Full Control

No AccessNo AccessNo Access

Full Control over Inventory

No AccessNo Access
OS DeployerNo AccessNo AccessNo AccessNo AccessNo AccessNo AccessNo AccessNo Access

Full Control

Full Control

Patch ManagerNo Access

Full Control

No AccessNo AccessNo AccessNo AccessNo AccessNo AccessNo AccessNo Access
Remote Desktop ViewerNo AccessNo AccessNo AccessNo Access

Full Control

No AccessNo AccessNo AccessNo Access 
Technician

Full Control

No Access

Full Control

No Access

Full Control

No AccessNo Access

Full Control except Device Enrollment

No AccessNo Access

 

MDM ControlCreate Profile ManagementCreate App ManagementCreate InventoryCreate ReportEnrollmentContent ManagementOS Update ManagementRemote Control
Mobile Device Manager

Full Control

Full Control

Full Control

Full Control

Full Control

Full Control

Full Control

Full Control

The following are the roles within the Endpoint Security.

RoleDescription
Application Control ManagerThis role provides the user with full control over application control and application control reports.
Bitlocker ManagerThis role provides the user with full control of BitLocker management and reports.
Browser Security ManagerThis role provides the user with full control of Browser Security functions.
Device Control ManagerThis role provides the user with full control of Device Control functions and reports.
Security ManagerThis role provides the user with full control of Security Manager functions such as BitLocker Management, Patch Management, Application Control and Vulnerability Management amongst others.

Apart from these, you can also create roles based on your requirement.

Trusted by