Skip to content

Roles & Permissions

NEURO uses role-based access control (RBAC) to manage what users can see and do within the platform.

┌─────────────────────────────────────────────────────────────┐
│ Admin │
│ Full platform access + user management + settings │
├─────────────────────────────────────────────────────────────┤
│ Analyst │
│ Create/edit projects, findings, reports │
├─────────────────────────────────────────────────────────────┤
│ Reviewer │
│ View and comment on all content │
├─────────────────────────────────────────────────────────────┤
│ Viewer │
│ Read-only access to assigned projects │
└─────────────────────────────────────────────────────────────┘
ActionAdminAnalystReviewerViewer
View all projects----
View assigned projects----
Create projects----
Edit projects----
Delete projects----
Archive projects----
ActionAdminAnalystReviewerViewer
View findings----
Create findings----
Edit findings----
Delete findings----
Import findings----
Comment on findings----
ActionAdminAnalystReviewerViewer
View reports----
Generate reports----
Download reports----
Manage templates----
ActionAdminAnalystReviewerViewer
View clients----
Create clients----
Edit clients----
Delete clients----
Manage portal users----
ActionAdminAnalystReviewerViewer
Manage users----
Tenant settings----
View audit logs----
Manage integrations----
Manage API keys----

Best for: Team leads, managers, account owners

Administrators have full access to all platform features plus the ability to:

  • Manage all users and their roles
  • Configure tenant-wide settings
  • Access audit logs
  • Manage integrations and API access
  • Configure security policies

Best for: Security consultants, penetration testers

Analysts can perform all assessment-related work:

  • Create and manage projects
  • Document findings with full editing
  • Generate and configure reports
  • Import scan data
  • Manage client relationships
  • Collaborate via chat

Best for: QA personnel, senior reviewers, managers without edit needs

Reviewers can oversee work without modifying content:

  • View all projects and findings
  • Add comments and feedback
  • Download reports
  • Participate in discussions
  • Cannot modify findings or reports

Best for: Stakeholders, executives, external observers

Viewers have limited, read-only access:

  • View only assigned projects
  • Read findings without editing
  • Download available reports
  • Cannot comment or participate

Beyond platform roles, users have project-specific roles:

  • Primary owner of the project
  • Can delete the project
  • Manages team assignments
  • Default notification recipient
  • Full edit access to project content
  • Can add findings and assets
  • Can generate reports
  • View and comment only
  • Cannot edit project content
  • Receives review notifications

Assigned during user creation:

  1. SettingsUsers
  2. Click Edit on user
  3. Select role from dropdown
  4. Save changes

Assigned per project:

  1. Open project
  2. Go to SettingsTeam
  3. Add user and select role
  4. Save

Assign the minimum role needed:

  • Start with Viewer
  • Upgrade as responsibilities grow
  • Regular role reviews
User TypeRecommended Role
New team memberAnalyst (after training)
Senior consultantAnalyst
Team managerAdmin
QA reviewerReviewer
Executive stakeholderViewer
External auditorViewer

Users can have different project roles:

  • Analyst on Project A
  • Reviewer on Project B
  • Not assigned to Project C

For NEURO support personnel:

  • Access across all tenants
  • Used for support only
  • Full audit logging

Separate permission set:

  1. Check user’s platform role
  2. Verify project assignment
  3. Confirm project-level role
  4. Contact admin if needed
  • Viewer role only sees assigned projects
  • Check project team membership
  • Verify account is active
  • Reviewer/Viewer roles are read-only
  • Check platform role
  • Verify project role allows editing

Next: Learn about Security Settings