---
sourceDocument: Australia IT Service Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/it-service-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia IT Service Management

ft:clusterId :

    - itsm

bundleId :

    - itsm

workflow :

    - Technology


---

# Components installed with ITSM Roles - Change Management

# Components installed with ITSM Roles - Change Management {#ariaid-title1}

Release version: Australia  
Updated March 12, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read  
Several user roles are installed with the activation of the ITSM Roles --- Change Management plugin (com.snc.itsm.roles.change_management). Security ACLs to support the security model for Change Management and related functionality are also installed.
When you install the ITSM Roles --- Change Management plugin (com.snc.itsm.roles.change_management), the plugin updates the Security Access Control Lists (ACLs), integrating revised scripts, and other files to overhaul the security model for these
applications.  
Note:  
The Application Files table lists the components that are installed with this application. For instructions on how to access this table, see [Find components installed with an
application](https://www.servicenow.com/docs/access?context=find-components&version=australia&pubname=australia-platform-administration&ft:locale=en-US).

## Roles installed {#installed-with-cm-itsm-roles__section_wly_yyh_wdb}

{#installed-with-cm-itsm-roles__table_u1t_gb1_wdb__entry__3}

| Role title \[name\] | Description | Contains roles |
|-|-|-|
| Change admin \[sn_change_admin\] | Provides configuration and authorization access for system properties in the Change Management application. Provides a granular, application-specific write access replacing the global admin role. | * sn_change_write * sn_change_cab.cab_manager * change_manager {#installed-with-cm-itsm-roles__ul_fws_b42_yhc} |
|   |   |   |
| Change read \[sn_change_read\] | Read access to the Change Management application and related records. Note: A user with the sn_change_read role can view all change requests as well as the CAB workbench. | * sn_cmdb_user * dependency_views * view_changer * cmdb_read * app_service_user * cmdb_query_builder_read {#installed-with-cm-itsm-roles__ul_dwf_455_shb} |
| Change write \[sn_change_write\] | Write access to the Change Management application and related records. | * sn_change_read * template_editor * cmdb_query_builder {#installed-with-cm-itsm-roles__ul_vvs_s2s_nhb} |
| Incident read \[sn_incident_read\] | Read access to the Incident Management application and related records. Note: An ESS user (user with no role) can view only those incidents that they create or someone else creates on their behalf. A user with the sn_incident_read role can view all incidents as well as the major incident workbench. | * dependency_views * agent_workspace_user * view_changer * cmdb_read * cmdb_query_builder_read {#installed-with-cm-itsm-roles__ul_o2j_rh1_zsb} |
| Incident write \[sn_incident_write\] | Write access to the Incident Management application and related records. | * sn_incident_read * template_editor {#installed-with-cm-itsm-roles__ul_y5r_l1f_v1c} |
| Problem read \[sn_problem_read\] | Read access to the Problem Management application and related records. | NA |
| Problem write \[sn_problem_write\] | Write access to the Problem Management application and related records. | * sn_problem_read * template_editor |
| sn_request_read | Read access to the Request (sc_request) or Requested Item (sc_req_item) only for a user who is also an approver of the request or requested item. Note: As there are future updates expected for the sn_request_read role, do not assign it to users without the business_stakeholder role. | NA |
| sn_request_write | Write access to the Request (sc_request) or Requested Item (sc_req_item). | * task_editor * dependency_views * agent_workspace_user * view_changer * cmdb_read * cmdb_query_builder_read * sn_request_read |
| sn_request_comment_write | Write access to the comments for the Requested Item (sc_req_item). Note: The sn_request_comment_write role alone does not give access to comments write, you will need write access for the table. | NA |
| \[sn_service_desk_agent\] | Enables gathering, and verifying information, as well as delivering quick resolutions for tier 1 service desk agents. This user role is available when the ITSM Roles plugin (com.snc.itsm.roles) is installed. | * sn_incident_write * sn_problem_write * sn_change_write * sn_request_write * tracked_file_reader {#installed-with-cm-itsm-roles__ul_utk_nwr_ydc} With the installation of the ITSM Gen AI (com.sn.itsm.gen.ai) plugin, the following roles are also available: * knowledge_user * now_assist_panel_user {#installed-with-cm-itsm-roles__ul_ymk_fxr_ydc} |
[ ]

{#installed-with-cm-itsm-roles__table_u1t_gb1_wdb}

