Restrict access to certain major security incidents
Manage access to sensitive major security incidents by restricting view and modify permissions to authorized users and groups.
Before you begin
Role required: sn_msi.workspace_manager
Users with the admin role can also view the major security incident regardless of the allowed members or groups list. The admin role includes the sn_msi.restriction_access_admin role, which bypasses the
enforce restriction check. This behavior applies in both Workspace and classic UI.
About this task
Use restrictions to control which users and groups can view or modify specific major security incidents. After enforcement, only authorized members, workspace managers, and users with the admin role can access the restricted incidents.