In standard implementation Roles are managed by Manager role manually.
It is possible to configure on-premise TaskControl to connect to MS AD LDAP and receive information about user Role from MS AD by searching user Security Groups.
Security Groups such as e.g. TaskControl-Manager, TaskControl-Executor and TaskControl-Guest can be created or managed by company Identity Management workflows.