Each user will have at least two roles per user_id and project_id combination. These two roles can be further defined as a Data Protection role and a Hive Management role.
The data protection role establishes the detail of data the user can see while the hive management role defines the level of functionality the user has in a project. The following tables summarize the roles in a hierarchical order of least to most access.
Data Protection Roles
Role |
Access Description |
---|---|
DATA_OBFSC |
OBFSC = Obfuscated
|
DATA_AGG |
AGG = Aggregated
|
DATA_LDS |
LDS = Limited Data Set
|
DATA_DEID |
DEID = De-identified Data
|
DATA_PROT |
PROT = Protected
|
Hive Management Roles
Role |
Access Description |
---|---|
USER |
Can create queries and access them if he / she is the owner of the query. |
MANAGER |
Can create queries as well as access queries created by different users within the project. |
Note
Additional roles can be added to the PM_PROJECT_USER_ROLES table but there will not be any recognized hierarchy to those roles.