---
sourceDocument: Australia ServiceNow AI Platform Administration
sourceDocumentLink: https://www.servicenow.com/docs/r/platform-administration

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia ServiceNow AI Platform Administration

ft:clusterId :

    - platadm

bundleId :

    - platadm

workflow :

    - Platform


---

# Assign user role

# Assign a role to a user {#ariaid-title1}

Release version: Australia  
Updated March 12, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read  
A user inherits roles from all groups to which they belong. You can also assign roles directly to a user. Whenever a user is assigned a new role, it only takes effect after logging in with a new session.

## Before you begin

Role required: user_admin or admin

When possible, simplify user administration by assigning roles to
groups. Create groups that contain all the roles necessary for specific personas, and then assign users to those groups.

## About this task

To grant the admin role to a user, you must also have the admin role. To grant the security_admin role to a user, you must also have the security_admin role. You must elevate to the security_admin role before granting the
security_admin role to other users. See [Elevate to a privileged role](https://www.servicenow.com/docs/access?context=t_ElevateToAPrivilegedRole&version=australia&pubname=australia-platform-security&ft:locale=en-US).

You can't delete roles that are assigned to the group from the user record. You must remove the user from the group record.  
Warning:  
If your organization hasn't manually allocated user-based subscriptions before,subscription assignments are based on user roles and the kind of access each role permits. Creating, customizing, and assigning roles can have subscription usage impact. For more information about how roles are evaluated for subscription assignment, see [Automatic subscription assignment](https://www.servicenow.com/docs/4W3bCjxidSbUFfOp3uAsOg "If your organization has never manually allocated user-based subscriptions before, entitlements are automatically assigned based on user roles and ACL access. Reviewing how roles are evaluated for automatic subscription assignment can help you make decisions about which roles users should have.").

## Procedure

1. Navigate to AllUser AdministrationUsers and then open a user record.
2. In the Roles related list, select Edit.
3. In the Collection list, select the desired roles, and then select Add.  
   The Collection list displays only roles for applications and plugins that are installed on your instance. If a role does not appear, the corresponding application may not be installed.  
   Note:  
   The System administrator (admin) role provides access to all system features, functions, and data, regardless of security constraints. Avoid assigning this role to users when more targeted roles are
   available.
4. Select Save.

## What to do next

Note:  
If the user is logged in when you update their roles and they're unable to access records enabled by the new role, they may need to log out and back in again.

*[\>]: and then


