# Manage access for a service account

> Choose a set of permissions for each service account

You can manage service account access at two levels: the organization and the project. At each level, you assign RBAC roles that are grouped into role sets, for example, Asset Manager or Automation.

> **Note:**
>
> Only organization owners can manage access for service accounts.
>
> Service accounts can't have a user type. User types apply only to users.

## Manage organization-level roles

To assign or update organization-level roles for a service account, complete these steps:

1. In Unity Dashboard, go to **Administration** > **Service Accounts**.
2. Select the service account.
3. Select **Manage organization roles**.
4. Select the roles that you want to assign, for example, an Asset Manager manager and an Automation role.
5. To remove all roles for a specific service, expand the list of roles, and then select **Clear selection**.
6. Select **Save**.

## Manage project-level roles

To assign or update project-level roles for a service account, complete these steps:

1. In Unity Dashboard, go to **Administration** pane > **Service Accounts**.
2. Select the service account.
3. Select **Manage project roles**.
4. Select the project and select **Next**.
5. Select the roles that you want to assign, for example, an Asset Manager manager and an Automation role.
6. To remove all roles for a specific service, expand the list of roles, and then select **Clear selection**.
7. Select **Save**.

## Delete a role assignment

You can also remove an individual role assignment directly from the service account properties page:

1. In Unity Dashboard, go to **Administration** > **Service Accounts**.
2. Select the service account.
3. In the **Organization roles** or **Project roles** section, next to the role you want to remove, select **Delete**.
