Roles & Permissions
Helios uses role-based access control for the portal. Every team member you invite is assigned one role that governs what they can see and do.
Portal roles
Section titled “Portal roles”| Role | Can do | Typical user |
|---|---|---|
| Owner | Everything, including billing and org deletion. The first admin created for an org. | Security lead / account owner |
| Admin | Manage users & roles, connect integrations, edit org settings and policies, review threats. | IT / security admins |
| Analyst | Review and action threats, view the user directory and quarantine. Cannot manage users or org settings. | SOC analysts |
| Viewer | Read-only access to dashboards, threats, and reports. | Auditors, stakeholders |
Invite a team member
Section titled “Invite a team member”- Go to Settings → Users.
- Click Invite User, enter their email address, and choose a role (Admin, Analyst, or Viewer).
- Click Send Invite. They receive an email to set a password and sign in.
Change or revoke access
Section titled “Change or revoke access”- Change a role: Settings → Users → select the user → pick a new role. (Admin only.)
- Remove a user: use the remove action on their row. This deactivates the account and revokes portal access immediately. You cannot remove your own account.
Vendor (Himaya) access
Section titled “Vendor (Himaya) access”A separate super_admin level exists for Himaya operations staff and is authenticated with a distinct admin API key — it is not assignable from your org’s Settings and never has standing access to your mailbox content beyond what the platform requires to function.