View and Manage Roles
Roles are sets of permissions that determine access to different resources within your organization. Users with the IAM Admin role can use the Customer Portal to view and assign roles to grant access to projects, organizations, and product assets.
To access the Roles page:
-
Sign in to the Customer Portal.
-
From the Global Navigation menu, select Admin Center, and click Identity and Access Management.
-
Click Roles.

The Roles Page
The Roles page provides an overview of available roles for an organization or project. Use the Project Selector to switch between your different organizations and projects.

The Roles page displays the Role name, description, and the number of users in the project or organization that have that role.

Viewing Role Details
To view the details of a role, locate the role in the list. From the options menu, click View Role Details.

The View Role Details pane displays the role's actions and the description of each action.

Role Assignments
You can use the Roles page to manage role assignments. Role assignments can also be managed on a per user basis.
To view the users that have a specific role assigned, locate the role in the list on the Roles tab. From the options menu, click View Assigned Users.

The View Assigned Users pane displays the users assigned this role.

Assigning a Role
To assign roles to users:
-
Locate the role in the list on the Roles tab. From the options menu, click Assign User to Role.

-
Select a user from the drop-down list. Click Assign.

Click +Add Another User to add more than one user to the selected role.
Unassign a Role
To unassign a role from a user:
-
Locate the role in the list on the Roles tab. From the options menu, click Remove User from Role.

If you do not see Remove User from Role or the option is unavailable, that means that all users have inherited this role and you can't unassign this role.
-
Select the user(s) to remove from the role. You cannot remove a role if the role is inherited.

If your selection contains both users who have inherited roles and users with non-inherited roles, the system will display an error and disallow you from proceeding. You should check which users have inherited roles and un-select them.
Click Next.
-
Confirm your selection(s) and click Remove.

Managing Custom Roles
The Roles tab also provides management of Custom Roles, including creating, viewing, and assignment. More information is available on the Custom Roles page.