You can assign privileges to database users according to the user type.
See also About Database User Types.
|User Type||Method for granting privileges|
The system registers objects created by a directory user in the data dictionary, with the mapped permanent user as the owner and creator.
|Auto provisioned user||
The privileges given to the auto provisioned account are determined by the external role to which the directory user is assigned. If an auto provisioned directory user is assigned to an external role and is also granted a role in the database, the user is allowed to have the privileges of both roles. However, the user is externally authenticated, so only external roles are active for the session. A granted role must be explicitly enabled. If the directory principal is not assigned to a role, the user inherits privileges from EXTERNAL_AP (a system user).