What Does the Asset Admin Role Grant?
This article explains what the Asset Admin role can do in Edgescan.
Version Number: v1.0.1
Published Date: 23 Sept 2026
____________________________________________________________________________
Overview
Asset Admin provides elevated access to manage assets and related resources within the organization, without granting full organization-level administration.
Best suited for users responsible for maintaining and managing the organization's assets and associated activity.
What Asset Admin Can Do
- Assets: Full control to create, edit, view, discard vulnerabilities, edit risk ratings, edit credentials, manage assessments, manage pause schedules, manage retests, cancel scans, and manage licence auto-renewal. Cannot delete assets.
- Location specifiers: Can create and view.
- Scan configuration: Create, edit, and view, plus manage authentication, session verification, and token mappings. Cannot delete a scan configuration.
- Pause schedules, shared credentials, browser recordings, EASM investigations: Full control (create, edit, delete, view).
- Licences: Can view, edit, and upgrade.
- Organization: Limited to licence oversight and viewing the organization record — no ability to edit organization settings.
- Insights: View only.
What Asset Admin Cannot Do
This role has no access to user management, role or permission administration, policy documents, notification opt-ins, or organization-level settings and, unlike Org Admin, cannot delete assets or delete scan configurations.