Agentic Assistant role-based access control
Configure permissions to access Cortex Agentic Assistant features.
Instance and Account admins have full control over the permissions and access that users have to the Cortex Agentic Assistant. Cortex XSIAM uses role-based access control (RBAC) to manage access to the chat, as well as access to view, create, edit, delete, disable, and enable Agents and Actions in the Agentic Assistant Hub.
By default, Instance and Account admins have full view/edit permissions enabled. When editing or creating other roles, in the Cortex Agentic Assistant → Agents section, you can select the following:
View/Edit
When selected (and nothing else is checked in this section), the user role can only see actions and public agents in the Agentic Assistant Hub, but cannot interact with agents.
You can also select the following permissions:
Interact with agents: Users can:
Trigger Agents in the Cortex Agentic Assistant.
Access their own agents, public agents, and system agents.
Manage script development using the Automation Engineer agent.
Manage playbook development using the Automation Engineer agent (preview).
Manage actions: Users can view, create, update, and delete actions.
Manage agents: Users can view, create, update, and delete their own custom agents.
Agents admin: Users can:
View, create, update, and delete all actions and agents.
Enable or disable system actions and agents.
Attach system knowledge to custom agents and view all documents uploaded within the Knowledge Center (preview).
View
N/A
None
The user role does not see any agents and can’t use the chat. The Agentic Assistant Hub is not visible to the user. Cortex Agentic Assistant is only available for navigation and insights.
Last updated
Was this helpful?
