---
sourceDocument: Xanadu ServiceNow AI Platform Administration
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/xanadu/platform-administration

 Release :

    - xanadu

ft:locale :

    - en-US

ft:publication_title :

    - Xanadu ServiceNow AI Platform Administration

ft:clusterId :

    - platadm

bundleId :

    - platadm

workflow :

    - Platform


---

# Assign AI Search roles

# Assign roles to AI Search administrators and users {#ariaid-title1}

* Release version: Xanadu
* 
* Updated July 28, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read

Grant users the ais_admin, ais_external_content, ais_high_security_admin, and search_application_admin roles so they can configure and manage settings and content for AI Search and search applications.

## Before you begin

Role required: admin

## About this task

Users with the following roles can access and configure settings and content for the AI Search application.  
{#assign-ais-admin-role__table_n3c_3l3_wnb__entry__2}{#assign-ais-admin-role__ais-admin-role-id-ph}{#assign-ais-admin-role__ais-hs-admin-role-id-ph}{#assign-ais-admin-role__search-app-admin-role-id-ph}{#assign-ais-admin-role__ais-ext-cont-role-id-ph}

| Role | Description |
|-|-|
| AI Search administrator \[ais_admin\] | Manages configuration settings for the AI Search application, including the following: * Creates, reads, updates, and deletes indexed sources * Creates, reads, updates, and deletes search sources * Creates and deletes mappings between search sources and search profiles * Creates, reads, updates, and deletes search profiles * Creates, reads, updates, and deletes synonym and stop word dictionaries * Creates and deletes mappings between dictionaries and search profiles * Reads and updates typo handling auto-correction dictionaries linked to search profiles * Creates, reads, updates, and deletes Genius Result configurations * Creates and deletes mappings between Genius Result configurations and search profiles * Creates, reads, updates, and deletes result improvement rules * Creates and deletes mappings between result improvement rules and search profiles {#assign-ais-admin-role__ais-admin-role-ul} |
| AI Search high security administrator \[ais_high_security_admin\] | Accesses High Security settings for AI Search, including the following: * Bypasses all search filters from search sources and content security in the Search Preview UI, viewing all search query results available in the AI Search index * Reads external content user mapping import history records {#assign-ais-admin-role__ais-hs-admin-role-ul} This is an elevated privilege role. Elevated privilege roles aren't assigned to users or groups, and must be used by elevation. For more information on elevated privilege roles, see [Elevated privilege roles](https://www.servicenow.com/docs/access?context=c_ElevatedPrivilege&version=xanadu&pubname=xanadu-platform-security&ft:locale=en-US). To learn about elevation, see [Elevate to a privileged role](https://www.servicenow.com/docs/access?context=t_ElevateToAPrivilegedRole&version=xanadu&pubname=xanadu-platform-security&ft:locale=en-US).{#assign-ais-admin-role__ais-hs-admin-role-notes-p1} The Instance Security Center Users with High Privilege Roles user metric displays the count of users assigned this role. For more details, see [User metrics](https://www.servicenow.com/docs/access?context=instance-sec-center-user-metrics&version=xanadu&pubname=xanadu-platform-security&ft:locale=en-US).{#assign-ais-admin-role__ais-hs-admin-role-notes-ph} |
| Search application administrator \[search_application_admin\] | Creates, reads, updates, and deletes search application configurations for Zing and AI Search.{#assign-ais-admin-role__search-app-admin-role-desc-p} This role includes the ais_admin and personalize_dictionary roles. |
| AI Search external content API user \[ais_external_content\] | Accesses endpoints for AI Search external content APIs, including the following: * Feeds external documents for AI Search to index as search results, or deletes records for external documents from the index, using the [External Content Ingestion API](https://www.servicenow.com/docs/access?context=external-content-ingestion-api&version=xanadu&pubname=xanadu-api-reference&ft:locale=en-US). * Imports user mappings for external content security using the [AI Search External User Mapping API](https://www.servicenow.com/docs/access?context=ext-user-mapping-api&version=xanadu&pubname=xanadu-api-reference&ft:locale=en-US). {#assign-ais-admin-role__ais-ext-cont-role-ul} Assign this role to non-interactive users and integration users who require access to external content API endpoints. For more information on non-interactive users, see [Non-interactive sessions](https://servicenow-prod.fluidtopics.net/GIjuyPo2Twqsh5U5cPjgaA#c_NonInteractiveSessions "The Non-Interactive Sessions plugin creates a distinction between interactive and non-interactive users."). For details on integration users, see [Mark service accounts as internal integration users](https://www.servicenow.com/docs/access?context=t_MarkSvcAcctsAsInternalIntegUsers&version=xanadu&pubname=xanadu-api-reference&ft:locale=en-US).{#assign-ais-admin-role__ais-ext-cont-role-notes-p1} Users with the admin role don't need this role to access external content API endpoints.{#assign-ais-admin-role__ais-ext-cont-role-notes-p2} |
[ ]

{#assign-ais-admin-role__table_n3c_3l3_wnb}

Assign these roles to users and groups to enable them as search administrators or external content API users for AI Search.

## Procedure

* [Assign a role to a user](https://servicenow-prod.fluidtopics.net/aaRGaW6x3~oeYrT_57E9DA "A user inherits roles from all groups to which they belong. You can also assign roles directly to a user. Whenever a user is assigned a new role, it only takes effect after logging in with a new session.")
* [Assign a role to a group](https://servicenow-prod.fluidtopics.net/xco~MSM1MDe2zalGCQpFsQ "You can assign a role to a group to grant access to applications and modules to group members.")
{#assign-ais-admin-role__steps-unordered_ijv_c5z_vnb}

