---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Secrets management roles

# Secrets management roles {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Secrets management adds these roles.

## Secrets administrator \[sn_secrets.admin\] {#ariaid-title2}

Assign non-admin secrets roles to other users. Secrets administrators have the same privileges as secrets manager and viewer.

### Contains Roles {#sec-man-roles-1__section-feature-role-contains-roles}

List of roles contained within the role.

None.

### Groups {#sec-man-roles-1__section-feature-role-groups}

List of groups this role is assigned to by default.

None.

### Special considerations {#sec-man-roles-1__section-feature-role-considerations}

Wichtig:  
Avoid granting an admin role when more specialized roles are available.

* A user must have both the admin and security_admin roles to be assigned the sn_secret.admin role.
* Avoid granting an admin role when more targeted roles are available.
{#sec-man-roles-1__ul_vp3_jyn_cyb}

## Secrets manager \[sn_secrets.secret_manager\] {#ariaid-title3}

Grant this role to users who must be able to perform any of the following functions.
* View secret and secret group records
* View access history, and other usage activity info
* Create secret groups and filters
* Create secret providers
* Move secrets across secret groups
* Change secret group and secret provider settings
{#sec-man-roles-2__ul_fkw_myn_cyb}

### Contains Roles {#sec-man-roles-2__section-feature-role-contains-roles}

List of roles contained within the role.

None.

### Groups {#sec-man-roles-2__section-feature-role-groups}

List of groups this role is assigned to by default.

None.

### Special considerations {#sec-man-roles-2__section-feature-role-considerations}

Wichtig:  
Secrets managers can't see secrets in plain text.

## Secrets viewer \[sn_secrets.viewer\] {#ariaid-title4}

Grant this role to users who must be able to view secret and secret group records.

### Contains Roles {#sec-man-roles-3__section-feature-role-contains-roles}

List of roles contained within the role.

None.

### Groups {#sec-man-roles-3__section-feature-role-groups}

List of groups this role is assigned to by default.

None.

### Special considerations {#sec-man-roles-3__section-feature-role-considerations}

None.

