Configure the issue responder role
The issue responder role allows users to investigate and fix security issues within their assigned sources. It's designed for source owners and admins (for example, a Salesforce admin) who need to remediate vulnerabilities in their systems without accessing other sources.
The issue responder role grants read and write access to issues within their assigned sources:
- View issues
- Dismiss issues
- Use event hooks or Okta Workflows to remediate issues
Assigning the issue responder role to a group provides group members with controlled access to remediate issues in the ISPM console while maintaining your org's security governance.
Before you begin
- Ensure that ISPM is integrated with Okta for your org.
- You must have the super admin role mapped to a group in ISPM to configure the issue responder role.
- You must be a super admin or org admin in Okta to create groups.
- The group that you're assigning the issue responder role must be assigned to the ISPM SSO app.
Assign the issue responder role to a group in ISPM
-
In the ISPM console, go to .
-
Click Assign group roles.
-
Enter a group name.
-
From the Roles dropdown menu, select Issue responder.
-
Select one or more sources from the Visible sources dropdown menu that users can view and dismiss issues for.
-
Click Assign role. If users are a member of a group with super admin roles and a group with other roles, they get the super admin role.
Create a group in Okta
- In the Okta Admin Console, go to .
- Click Add Group.
- In the Name field, enter the same group name that you used for mapping the role. If these group names don't match, users can't access the ISPM console.
- Optional. Enter a description for the group in the Description field.
- Click Save.
Assign the group to the Okta ISPM - SSO OIDC app
- In the Okta Admin Console, go to .
- In the Search field, enter
Okta ISPM - SSO OIDC. - Click the app name and select the Assignments tab.
- Click Assign, and then select Assign to Groups.
- Locate the group that you created and click Assign.
- Complete the fields in the Assign Okta ISPM - SSO OIDC to Groups dialog if it appears.
- Click Save and go back.
- Click Done.
Related topics