MANAGE ROLES System Privilege

Required to create new roles and act as the default administrator of roles.

While the MANAGE ROLES system privilege allows a user to create a new user-defined role, it does not allow him or her to delete the role. For this, a user requires administrative rights on the role.

Users who are granted the MANAGE ROLES system privilege serve as default global role administrators on a user-defined role.

If no role administrator is specified during the role creation process, the MANAGE ROLES system privilege (SYS_MANAGE_ROLES_ROLE) is automatically granted to the role with the ADMIN ONLY OPTION clause, which allows the global role administrator to administer the role. If at least one role administrator is specified during the creation process, the MANAGE ROLES system privilege is not granted to the role, and global role administrators cannot manage the role.

MANAGE ROLES is the only system privilege that can be granted the ability to administer user-defined roles.

Note: You can also grant role administration directly to users either while creating a role or, or after. When role administration is granted directly to a user, the user does not require the MANAGE ROLES system privilege to administer the role.
Related reference
List All System Privileges