Assign permssions to responses when you need to limit the types of responses users can create.
To create a response rule, users need permissions for the Threat Event Log, System Tree, Server Tasks, and Detected Systems features.
For details about product features, usage, and best practices, click ? or Help.
Select Menu → User Management → Permission Sets, then create a permission set or select an existing one.
Next to Automatic Response, click Edit.
Select an Automatic Response permission:
No permissions
View Responses; view Response results in the Server Task Log
Create, edit, view, and cancel Responses; view Response results in the Server Task Log
Click Save.
If you created a permission set, select Menu → User Management → Users.
Select a user to assign the new permission set to, then click Edit.
Next to Permission sets, select the checkbox for the permission set with the Automatic Response permissions you want, then click Save.