Add New Users - User Guide - 1.0 - Cortex XPANSE - Cortex - Security Operations

Cortex Xpanse Assess User Guide

Creation date
Last date published
User Guide

Add Cortex Xpanse users.

Cortex Xpanse enables you to add and manage users yourself through the Assess web application. You must have Manage Users permission on your own user account in order to add new users.

If you use a 3rd-party single-sign on (SSO) application (for example, Okta) along with Cortex Xpanse, you will have to set up new users in the SSO application before they will be able to log in to Cortex Xpanse Assess.

  1. In Cortex Xpanse Assess click the Settings icon (settings-icon.png) and then select User Management.

  2. In the User Management window, click Create user.

    The Create User window opens.

  3. Enter the email address for the new user.

  4. Set the permissions for the user.

    • Manage users—Permits a user to add users, delete users, and change user permissions.

    • Edit policy management settings—Permits a user to edit the policy settings on the Policies tab.

    • Create client credentials—Permits a user to create and revoke their own client credentials. See Expander APIs for more information.Expander APIs

    • Admin client credentials—Permits a user to view and revoke client credentials for all users in their group.

  5. Click Create User.

    An email will be sent to the user requesting that they log in and reset their password. The new user will appear in the user list with the status Pending Password Reset until the password is reset.

    If you use 3rd-party SSO, the new user will not receive an email, but they will appear in the user list with the status Pending SSO First Login until they log into Expander with their SSO credentials.

  6. If you want to resend the password reset email to a new user in the Pending Password Reset state, click the ellipses (ellipsis.png) associated with the user in the user list and select Resend Email.

    Once the user has reset their password or logged in using their 3rd-party SSO, their email will appear in the user list with the status Active.