Manage access to report templates - Learn more about managing access to report templates in Cortex Cloud. - Administrator Guide - Cortex CLOUD

Cortex Cloud Posture Management Documentation

Product
Cortex Cloud Application Security > Cortex CLOUD
License
Cloud Posture Management
Creation date
2025-01-22
Last date published
2026-06-10
Category
Administrator Guide
Abstract

Learn more about managing access to report templates in Cortex Cloud.

Review the following:

The Report Templates page serves as the central repository where you can view, create, and modify report templates for your reports. By using object-level access, you can ensure that custom (user-defined) report templates, such as those used for specialized department metrics or sensitive internal audits, are only accessible to authorized users and user groups. Your access is determined by your role permissions combined with report template ownership; you can only interact with report templates where you are the Owner, report templates explicitly shared with you (or your user group), or report templates marked as Public.

Prerequisite

  • Configure tenant-level settings: An administrator must first establish the sharing framework under SettingsConfigurationsAccess ManagementObjects.

    The configuration of these settings defines the authorized sharing workflows for all custom objects, including report templates:

    • Enable "Owners can Share objects they created": Grants owners the ability to share report templates with specific users, user groups, and API keys. This enables the Share option in the right-click menu for any report template listed on the Report Templates page.

    • Disable "Owners can Share objects they created": Restricts owners to managing only General access (Public vs. Restricted). In this case, the Share option is removed from the report template menu on the Report Templates page and is replaced with the Manage Access option.

    For more information on configuring tenant-level settings, see Manage access to objects.

  • Define Scope-Based Access Control (SBAC): While per-object access controls the visibility of the report template itself, the underlying data in generated reports remains governed by SBAC. The scope of a generated report is based on the scope of the user who last saved the report template. Ensure the report template creator or last editor has the appropriate data permissions to provide intended results for all report recipients. For more information on defining SBAC, see Manage user scope.