Exposure Management permissions - Configure Exposure Management permissions to prioritize and remediate security exposures across your organization. - Administrator Guide - Cortex XSIAM - Cortex - Security Operations

Cortex XSIAM 3.x Documentation

Product
Cortex XSIAM
Creation date
2025-07-15
Last date published
2026-06-04
Category
Administrator Guide
Abstract

Configure Exposure Management permissions to prioritize and remediate security exposures across your organization.

Exposure Management permissions provide a risk-based approach to prioritizing and remediating security exposures across your organization. Exposure Management ties together vulnerability data, attack-surface context, and security-control posture to provide actionable risk prioritization.

Notice

Requires the Exposure Management license. To enable Exposure Management, contact Customer Support.

The permissions control access to Security Controls (tracking the effectiveness of compensating controls against vulnerabilities) and Effectiveness Rules (configurable rules defining how control effectiveness is measured)

For more information, see Exposure Management.

Permission

Description

Roles Example

None

No access to Exposure Management features; Security Controls hidden.

View

Read-only access to Exposure Management, such as Security Controls, effectiveness data, and exposure dashboards.

  • SOC Tier 1, 2, and 3 Analysts: Needs visibility into exposures and vulnerabilities for initial triage; should not modify rules or policies.

  • Threat Hunter: Needs read access for threat research and correlation; typically does not modify rules or policies.

View/Edit

Full access to manage Exposure Management, including Security Controls.

Security Engineer: Configures exposure remediation workflows.