Skip to main content

System Roles and Permissions

The following table lists the roles and associated permissions used to manage Code Insight at the system level. The initial Code Insight System Administrator (and any subsequent System Administrators) manages user accounts and assigns system-level roles to any of these users as needed. For more information, see Managing Users in the “Configuring Code Insight” chapter.

One user can be assigned multiple roles.

Responsibility: Administer Code Insight

PermissionsNotesRole: System AdminRole: Policy ManagerRole: Project CreatorRole: Library Manager
Manage user accounts and permissions, create other system administrators, create policy managers, and allow all/or specified users to create projectsXXX
Schedule or force Electronic Updates/Library RefreshesXXX
Configure an email server workflow notificationsXXX
Configure LDAP usersXXX
Configure Application Lifecycle (ALM) instances to manage inventory review tasksXXX
Configure Scan Servers and scan profilesXXX
Define global project defaultsXXX
Determine the CVSS version used for security vulnerability reportingXXX
Create and manage custom fields for inventory and projectsXXX
View Code Insight logsXXX
Suppress security vulnerabilitiesXXX

Responsibility: Manage polices for automating inventory review processes

PermissionsNotesRole: System AdminRole: Policy ManagerRole: Project CreatorRole: Library Manager
Manage policiesXXX
Force automatic review of inventory across all projectsXXX

Responsibility: Create projects

PermissionsNotesRole: System AdminRole: Policy ManagerRole: Project CreatorRole: Library Manager
Create public and private projectsThe user who creates a project automatically becomes the Project Contact for that project. (See Project Roles and Permissions for additional Project Contacts permissions.)XXX
Manage project folders (in Projects pane)XXX

Responsibility: Manage custom components and custom licenses

PermissionsNotesRole: System AdminRole: Policy ManagerRole: Project CreatorRole: Library Manager
Manage custom components and custom licenses by creating, editing, and deleting them as required.XXX

Responsibility: Manage custom detection rules

PermissionsNotesRole: System AdminRole: Policy ManagerRole: Project CreatorRole: Library Manager
Manage custom detection rules by creating, editing and deleting them as required.XXX