# Role Based Access Control (RBAC)

Role Based access control (RBAC) streamlines permissions to various resources within the Nightfall console. There are two key components of RBAC within Nightfall - roles and permissions.&#x20;

A role is a collection of pre-defined permissions that can be assigned to user accounts within Nightfall. Default roles cannot be edited. A role can be assigned to more than one user account whereas an user account can only have one role. Permissions refer to the specific create, read, update, and delete actions you can take on resources such as policies, events, apps, etc within Nightfall.&#x20;

## Accessing the Users and Roles Page

To access the Users and Roles page:

1. Click **Settings** from the left menu.

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2F2E2zOSDSluKO4Wl39g74%2Fimage.png?alt=media&#x26;token=34ab270a-16ba-4b4b-bd3e-9dd7e3450592" alt="" width="563"><figcaption></figcaption></figure>

2. Click the **Users & roles** tab.

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2FiggliYblfDlwDeI0rV5D%2Fimageedit_3_8817554033.jpg?alt=media&#x26;token=5b588a18-3b48-4caa-a8e1-ef066e81ca7c" alt="" width="563"><figcaption></figcaption></figure>

You can view the list of Users and the roles assigned to each user.&#x20;

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2F0PZCDqOr7dx16FJNBCLI%2Fimageedit_5_3121863924.jpg?alt=media&#x26;token=d312b308-a4d6-4eb3-87cf-795aaba654f1" alt=""><figcaption></figcaption></figure>

Click the **Roles** tab to access the Roles page.

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2FGyM8X14rd6zIe8vxg4nP%2Fimageedit_7_3808396402.jpg?alt=media&#x26;token=8ac0815b-1495-4517-852f-c0eb86dd9fbd" alt=""><figcaption></figcaption></figure>

The Roles page displays the Role name, Permissions assigned to a role and the number of users to whom the role is assigned, as shown in the following image.

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2FopuzqXoFZKPb08Ya2fPl%2Fimage.png?alt=media&#x26;token=0111def8-d550-40dd-b6f3-ad7fd7eebe80" alt=""><figcaption></figcaption></figure>

You can click the **View permission details** button to expand the complete list of permissions associated with a Role.

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2FePXidrzcDkNh3TutyxGe%2Fimage.png?alt=media&#x26;token=538c9d17-6a51-4627-88aa-d0d33ba55d70" alt=""><figcaption></figcaption></figure>

{% hint style="warning" %}
Currently, you can assign only a maximum of one role to a user. Also, you cannot create custom Roles and must use the out of the box Roles provided by Nightfall.
{% endhint %}

## Roles and Permissions

Nightfall provides you with five Roles. Each of the five Roles is associated with multiple permissions. The following table lists each role and the permissions associated with the Role.&#x20;

| Role                        | Permissions                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| --------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Security Analyst            | <ol><li><a href="security_analyst#exfiltration-posture-management-events">Exfiltration Events</a> </li><li><a href="security_analyst#preview-the-dlp-violations-content">Content Preview</a></li><li><a href="security_analyst#view-dashboard-and-create-reports">Dashboard</a></li><li><a href="security_analyst#view-detectors">Detectors</a></li><li><a href="security_analyst#take-actions-on-dlp-violations">DLP Violations</a></li><li><a href="security_analyst#view-dashboard-and-create-reports">Reporting</a></li><li>Encryption Events</li></ol>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| Policy Manager              | <ol><li><a href="policy_manager#integrations">App Alert Management</a></li><li><a href="policy_manager#detectors">Detectors</a></li><li><a href="policy_manager#policies">DLP Policies</a></li><li><a href="policy_manager#detection-rules">Detection Rules</a></li><li><a href="policy_manager#integrations">App Management</a></li><li><a href="policy_manager#policies">Exfiltration/Posture Policies</a></li><li>Encryption Polices</li></ol>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| Security Events Manager     | <ol><li><a href="security_events_manager#exfiltration-posture-management-and-encryption-events">Exfiltration Events</a></li><li><a href="security_events_manager#preview-the-dlp-violations-content">Content Preview</a></li><li><a href="security_events_manager#view-dashboard-and-create-reports">Dashboard</a></li><li><a href="security_events_manager#view-detectors">Detectors</a></li><li><a href="security_events_manager#take-actions-on-dlp-violations">DLP Violations</a></li><li><a href="security_events_manager#view-dashboard-and-create-reports">Reporting</a></li><li>Encryption Events</li></ol>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        |
| Security Operations Manager | <ol><li><a href="security_operations_manager#exfiltration-posture-management-and-encryption-events">Exfiltration Events</a></li><li><a href="security_operations_manager#preview-the-dlp-violations-content">Content Preview</a></li><li><a href="security_operations_manager#detection-rules">Detection Rules</a></li><li><a href="security_operations_manager#view-dashboard-and-create-reports">Dashboard</a></li><li><a href="security_operations_manager#exfiltration-posture-management-and-encryption-events">Encryption events</a></li><li><a href="security_operations_manager#detectors">Detectors</a></li><li><a href="security_operations_manager#policies">DLP Policies</a></li><li><a href="security_operations_manager#take-actions-on-dlp-violations">DLP Violations</a></li><li><a href="security_operations_manager#app-management-and-app-alert-management">App Alert Management</a></li><li><a href="security_operations_manager#view-dashboard-and-create-reports">Reporting</a></li><li>Encryption policies</li><li><a href="security_operations_manager#app-management-and-app-alert-management">App Management</a></li><li><a href="security_operations_manager#policies">Exfiltration/Posture Policies</a></li></ol>                                                                                                                                                                                                                                                                                                                                                              |
| System Administrator        | <ol><li><a href="system_administrator#billing">Billing</a></li><li><a href="security_operations_manager#exfiltration-posture-management-and-encryption-events">Exfiltration Events</a></li><li><a href="security_operations_manager#preview-the-dlp-violations-content">Content Preview</a></li><li><a href="security_operations_manager#detection-rules">Detection Rules</a></li><li><a href="system_administrator#user-management">User Management</a></li><li><a href="security_operations_manager#view-dashboard-and-create-reports">Dashboard</a></li><li><a href="security_operations_manager#exfiltration-posture-management-and-encryption-events">Encryption events</a></li><li><a href="security_operations_manager#detectors">Detectors</a></li><li><a href="security_operations_manager#policies">DLP Policies</a></li><li><a href="system_administrator#alert-management">Alert Service</a></li><li><a href="security_operations_manager#take-actions-on-dlp-violations">DLP Violations</a></li><li><a href="security_operations_manager#app-management-and-app-alert-management">App Alert Management</a></li><li><a href="system_administrator#directory-sync">Directory Sync</a></li><li><a href="security_operations_manager#view-dashboard-and-create-reports">Reporting</a></li><li>Encryption Policies</li><li><a href="security_operations_manager#app-management-and-app-alert-management">App Management</a></li><li><a href="security_operations_manager#policies">Exfiltration/Posture Policies</a></li><li><a href="system_administrator#firewall-for-ai">API Keys</a></li></ol> |

You can learn more about each of the role from the following links.

[security\_analyst](https://help.nightfall.ai/nightfall_settings/role_based_access_control/security_analyst "mention")

[policy\_manager](https://help.nightfall.ai/nightfall_settings/role_based_access_control/policy_manager "mention")

[security\_events\_manager](https://help.nightfall.ai/nightfall_settings/role_based_access_control/security_events_manager "mention")

[security\_operations\_manager](https://help.nightfall.ai/nightfall_settings/role_based_access_control/security_operations_manager "mention")

[system\_administrator](https://help.nightfall.ai/nightfall_settings/role_based_access_control/system_administrator "mention")
