Authorization roles
An authorization role is a role that defines the user or user groups permission to access and/or work with authorization elements or objects defined in the application.
You can assign users or user groups to an authorization role that specifies permissions for any number of authorization elements. The most common permissions are Create, Read, Update, and Delete.
The permissions can vary, depending on the nature of the authorization role element. The authorization elements relate to the master data of the system.
You can set authorization roles for each type of master data to control individual users or user groups to work with that particular type of master data represented through authorization elements.
Go to Setup > Administration > Users & Security > Authorization Roles. Click New in the upper-left corner to create an authorization role.