User roles overview

Last updated on Aug 3, 2026

Learn what user roles are in the Adobe Admin Console and how they help you grant the right access, delegate tasks, and manage users.

User roles define what users and user groups can access and do in their assigned Adobe apps. System and product admins assign roles to control access based on each user's responsibilities. User roles help you to:

  • Grant the right level of access without over-permission.
  • Delegate tasks safely without sharing full admin rights.
  • Simplify user management through role-based user groups.

Types of user roles

The Admin Console offers two categories of user roles: predefined roles and custom roles. Each serves distinct management needs.

Predefined roles: Built-in roles designed to address common access scenarios across your organization. Most roles are fixed, while some allow specific permissions to be turned on or off. Use predefined roles to quickly assign standard access. For example, admins can provide baseline access with the Member role or allow access to Firefly or partner models with the Firefly and Partner model user roles. 

Custom roles: Roles you create yourself to meet specific access requirements that predefined roles don't address. System admins select the exact capabilities each custom role includes, providing granular control for unique organizational workflows.

Use custom roles when your teams need more precise permissions than predefined roles offer, such as:

  • Grant access to specific partner models rather than all partner models
  • Restrict access to selected Adobe Express capabilities
  • Provide access to specific Adobe Express add-ons
  • Apply tightly scoped permissions for teams with specialized workflows