Roles installed with Policy and Compliance Management

GRC: Policy and Compliance Management adds the following roles.
Role title [name] Description Contains roles
Compliance Reader

[sn_compliance.reader]

Contains the reader role in sn_grc scopes. In addition to the inherited permissions, the compliance reader can be assigned profile types, profiles, indicators templates, indicators and issues.
  • sn_grc.reader
Compliance User

[sn_compliance.user]

Contains the reader and user roles in sn_grc scopes, and the reader role in the Policy and Compliance Management application. In addition to the inherited permissions, the compliance user can be assigned controls, and has read-only access to the Risk Management application and modules.
  • sn_grc.reader
  • sn_grc.user
  • sn_compliance.reader
Compliance Manager

[sn_compliance.manager]

Contains the reader, user, and manager roles in sn_grc scopes, and the reader and user roles in thePolicy and Compliance Management application. In addition to the inherited permissions, the compliance manager can create authority documents, citations, policies, policy statements, and controls.
  • sn_grc.reader
  • sn_grc.user
  • sn_grc.manager
  • sn_compliance.reader
  • sn_compliance.user
Compliance Administrator

[sn_compliance.admin]

Contains the reader, user, manager, and admin roles in sn_grc scopes, and the reader, user, and manager roles in thePolicy and Compliance Management application. In addition to the inherited permissions, the compliance admin can delete authority documents, citations, policies, policy statements, and controls.
  • sn_grc.reader
  • sn_grc.user
  • sn_grc.manager
  • sn_grc.admin
  • sn_compliance.reader
  • sn_compliance.user
  • sn_compliance.manager
Compliance Developer

[sn_compliance.developer]

Contains the reader, user, manager, admin, and developer roles in sn_grc scopes, and the reader, user, manager, and admin roles in thePolicy and Compliance Management application. In addition to the inherited permissions, the compliance developer can create article templates and edit scripts.
  • sn_grc.reader
  • sn_grc.user
  • sn_grc.manager
  • sn_grc.admin
  • sn_grc.developer
  • sn_compliance.reader
  • sn_compliance.user
  • sn_compliance.manager
  • sn_compliance.admin
Attestation Creator

sn_compliance.attestation_creator

Role used for creating GRC attestation metric type