Benefits of adding a collaborator user


There are several types of users in the Google Security Operations SOAR platform and the collaborator user is a hybrid between a basic user and a view-only user.

As such, a collaborator user can be given various Permissions to selected modules within the platform. This enables either an MSSP or an Enterprise company to easily collaborate, run joint investigations, and chat about cases in real-time with their customers or end users.

For more information on how to create a collaborator user, refer to Create a Collaborator user.

The collaboration user can be given view only or edit access by the SOC manager to the following places in the Platform:

  • Dashboards
  • Search
  • Cases: A collaborator can have access to a Case and see an Alert View specifically designed for their role. For more information on defining customized Alert views, click Define Customized Alert Views from the Playbook Designer.
  • Entity Explorer
  • Reports
  • Command Center
  • SLA
  • Workdesk: You can assign a Manual action (or an entire Playbook block) in the Playbook to a collaborator user as well as writing a targeted message to them in the Playbook action. The collaborator will see this message waiting for them in both the Pending Actions widget in the Playbook customized overview and in their Workdesk.
    For more information on how to assign an action to a collaborator, see Assign Actions and Playbook Blocks.
  • Workdesk: My Requests: In addition, the collaborator user has access to a tab called My Requests. Here, the user can choose to ask for a specific request from a selection of pre-defined Requests.
    For information on how to define requests for collaborator users, click Define requests for users (Admin).
    For information on choosing a specific request as a Collaborator user, click Filling out a Request.