Sitecore roles can be managed from the role manager which is accessible through the user manager
In the user manager click "Role Manager"
2. Click "New" from the top left corner
3. Enter the role name and click ok
4. Once the role is created you will need to control its permissions from the security editor. Locate the role in the list and select security editor
5. In the security editor you will see the different sections of the content tree and be able to grant/remove access to "read, write, rename, create, delete and administer" functions for that section of the tree
6. To add a permission tick the component you want to grant access under each of the required permission sections
7. To remove a permission 'x' the component you want to deny access to under each of the required permission sections
8. Once you have finalised the permission settings in the security editor click on "Access Viewer" where you can check that your permission settings have updated accordingly
Permissions in the security editor are inherited from the parent item e.g. if you grant read access to the A site tree this will automatically grant read access to all the sub-components of the A site tree unless you block access to a specific sub component e.g. Destinations
Permissions can also be controlled on a user level as well as role level. To edit a users' permissions click on their username in the user manager and open the security editor from there. This will show the users overall permissions from their combined roles