Service roles for Threat Detector (TD)
With Threat Detector (TD) service roles, you can manage user access to the KSPM resources and their settings, as well as to the data on detected threats.
threat-detector.worker
The threat-detector.worker enables viewing logs registered in the customer's infrastructure using Yandex Audit Trails.
The role is issued to the service account to perform Threat Detector-driven security management and extends to an organization, cloud, or folder. This service account should be specified when creating the workspace.
threat-detector.auditor
The threat-detector.auditor role enables viewing info on Threat Detector security management rules and access permissions granted for Threat Detector.
threat-detector.viewer
The threat-detector.viewer role enables viewing info on Threat Detector security management rules and access permissions granted for Threat Detector.
This role includes the threat-detector.auditor permissions.
threat-detector.editor
The threat-detector.editor role enables viewing info on access permissions granted for Threat Detector and its security management rules, as well as creating exceptions from such rules.
This role includes the threat-detector.viewer permissions.
threat-detector.admin
The threat-detector.admin role enables viewing info on Threat Detector security management rules, creating exceptions from such rules, as well as viewing info on access permissions granted for Threat Detector and modifying them.
This role includes the threat-detector.editor permissions.