--- title: "Users & Roles" canonical: "https://ai-docs.certero.com/space/CXCM/108298357/Users%20%26%20Roles" format: markdown --- # Inviting New Users  Space Managers can add new user logons to CerteroX from **Settings **> **User Management **> **Actions **> **Invite**. Enter the new user’s email address and assign the required roles over and above the mandatory **Member **role. Note that **Manager **and **Engineer **roles are assigned per-pool. Once invited, new users will receive an invitation email containing a link to CerteroX, where they can set their password, log on, and start using the system. Users can change their password by logging off CerteroX and using the **Forgot password **link on the logon page. # Roles As above, roles are assigned to users during the invitation process. There are four roles: **Member** - All users have this role. The role provides visibility of all data but conveys no permissions to modify any settings. **Space Manager** - Org Managers have permission to manage all settings and configuration. **(Pool) Manager** - Pool Managers have permission to manage the limits and resource constraints for pools to which they are assigned; and they can create, manage and delete sub-pools of their assigned pools. Pool Managers cannot, however, manage pool [assignment rules](https://certero.atlassian.net/wiki/spaces/CXCM/pages/108298740). **(Pool) Engineer - **Pool Engineers cannot manage any configuration and have access to fewer email notification types than Pool Managers. > ℹ️ As per [Email Notifications](https://certero.atlassian.net/wiki/pages/createpage.action?spaceKey=CD&title=Email%20Notifications), roles grant access to different subsets of email notifications. > ℹ️ A user’s roles can only be changed by re-inviting the user.