# Security Events Manager Role

The Security Events Manager role allows users to view Dashboard, generate reports from Dashboards, view DLP violations, view exfiltration and posture management events, and view detectors.&#x20;

The Nightfall app view for a user with this role is as shown in the following image.&#x20;

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2FY4NTIa28B51QYCCVZmlR%2Fimage.png?alt=media&#x26;token=e7970c4e-eb98-4dd0-bd87-1611707f078d" alt=""><figcaption></figcaption></figure>

## Permissions Associated with Security Events Manager Role

A user with Security Events Manager Role has the following permissions.

### View Dashboard and Create Reports

With the **Dashboard** and **Reportin**g permissions, users to view data on the Dashboard, apply filters to the dashboard data, and also generate reports from the Dashboard data.&#x20;

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2FYbQC8ZCSvuqklzAvL66J%2Fimage.png?alt=media&#x26;token=da9d4d5d-0ac1-4cad-9d56-e1aa9c1069e0" alt=""><figcaption></figcaption></figure>

### Take Actions on DLP Violations

With the **DLP Violations** permission, users can take appropriate actions on the DLP violations. They can also share the violation data and export it as a CSV file.&#x20;

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2FGHeFAKbJJaNgVkhn8PT1%2Fimage.png?alt=media&#x26;token=68580e12-aa00-4ddf-980b-7fdd6efdab6e" alt=""><figcaption></figcaption></figure>

### View the DLP Violations Content

With the **Content Preview** permission, users can preview the content of the DLP Violations page. The sensitive data is not redacted for this role.

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2F0TbBS9a3kLQYVYG2xaDO%2Fimage.png?alt=media&#x26;token=2d9966e4-9211-45ce-8ad1-f79a6f576fc3" alt="" width="375"><figcaption></figcaption></figure>

{% hint style="info" %}

1. The main point of difference between the Security analyst role and the Security events manager role is that users with the Security analyst role can view redacted content of DLP violations page.However, content is not redacted for the Security Events manager role. &#x20;
2. The common feature between a user with Security analyst role and a user with Security events manager role is that the download button on the Events detail view page is active for both. However, they cannot downlaod files containing sensitive data.&#x20;
   {% endhint %}

### Exfiltration/Posture Management and Encryption Events

With the **Exfiltration** permission, users can filter event data, share event data, view historic events data, and  take actions on Posture management, Exfiltration, and encryption events.&#x20;

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2FYXW3yvjZifiVgozRqleN%2Fimage.png?alt=media&#x26;token=e533e78b-17c3-4adb-80c0-26989d151877" alt=""><figcaption></figcaption></figure>

### View Detectors

With the **Detectors** permission, users can view all the detectors, view detectors that belong to a specific category, filter the list of detectors, search a detector, and copy the UUID of a detector.&#x20;

<figure><img src="https://2214688951-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-Mg3wgFIu8T7XAT1u-f_%2Fuploads%2FJivJ838eaqZKuGJ7Hda2%2Fimage.png?alt=media&#x26;token=1095abb0-15be-47fc-94de-2e2e3bb293fb" alt=""><figcaption></figcaption></figure>
