Assigned User Roles

We assign initial user roles and permissions for applications on our Cloud Security Platform like AV, WAS, WAF, MDS, CM, etc. based on each user's assigned role within the VM/VMDR application.

VM role and platform role.

VM Manager is assigned no platform role, but has full scope and all permissions.

VM Unit Manager is assigned the UNIT MANAGER platform role and these default permissions:

  • Reporting Permissions: Create Report, Edit Report, Delete Report, and Distribute Report
  • User Permissions: Edit User.
  • Tagging Permissions: Create User Tag, Edit User Tag, and Delete User Tag.
  • Dashboard Permissions: Create, Edit, Delete your own dashboards, Edit Dashboard, Delete Dashboard, Print/Download dashboard.

The Unit manager gets all the permissions based on scope and business unit assigned.

VM Scanner is assigned the SCANNER platform role and these default permissions:

  • Reporting Permissions: Create Report, Edit Report, and Delete Report.
  • Tagging Permissions: Create User Tag, Edit User Tag, and Delete User Tag.
  • Dashboard Permission: Only Create, Edit, and Delete your own dashboards permission.

VM Reader is assigned the READER platform role and these default permissions:

Depending on when a customer has subscribed with Qualys, a user with reader role may or may not have user permissions (Create User Tag, Edit User Tag, Delete User Tag) assigned to him by default. For more information, see Assign/Remove Tagging Permissions.

  • Reporting Permissions: Create Report, Edit Report, and Delete Report.
  • Tagging Permissions: Create User Tag, Edit User Tag, and Delete User Tag.
  • Dashboard Permissions: Permission to read dashboards.

VM Contact is assigned the CONTACT platform role and no permissions.

Learn more

User permissions by object

User permissions by role