A database role is essentially a database object that groups together one or more privileges or database authorities. Roles can be granted to users, groups, PUBLIC, trusted context, or other roles.
To be compliant with PCI requirement "Protect Stored Data", the J.K.Avro superstore decides to implement DB2 security feature: roles.