Ability to add new Roles or edit existing Roles
It would be useful to be able to add custom Roles under Role Management, or be able to amend the existing roles (such as Super Admin, Admin, Help Desk or Read-only).
Especially on Help Desk role that can modify (add remove) computer from a group but can also DELETE a group and it is not possible to send an alert if someone delete a group of computer and all endpoint loose their assigned policies.
If I take out the complete permission on endpoint (for example) they cannot make any "damage" but also cannot add/remove computers from groups.
I think the Cloud Central platform need more granularity on settings permissions.
L Epp commented
Agree with Neil Ascough -- My Help Desk should not have the ability to view anything that would be considered policy violations. Functionality/Status of client, sure. Sensitive logs, please no.
John Fry commented
Sophos release Cloud Optix to help with the DevSecOps, and we don't even have a simple feature to create custom roles!
It's nigh-on Y2020 and we're still waiting!
Robin Coombe commented
I would also like the ability for our various global IT Admins to Add and Remove computers from the Encryption Policies -- but NOT to have the permission to Change Settings or Delete the Policies.
Same comment as below -- I'm astounded these granular levels of Administrative Control (Role Based Administration) is not a default feature.
Neil Ascough commented
I'm staggered that this isn't a feature - why would you want helpdesk to be able to view sensitive logs and reports?