I suppose you could give them a SmartConsole login with a read-only permissions profile, but I would be concerned about user privacy by letting them look at logs/reports. You can create a custom permissions profile that would only give them access to the Gateways & Servers and Security Policies tabs read-only. This would let them see the status and utilization of gateways as well as look at security policies to determine if a certain type of traffic is allowed. There isn't really a need to grant access to the Manage & Settings tab either in my opinion.
Attend my 60-minute "Be your Own TAC: Part Deux" Presentation
Exclusively at CPX 2025 Las Vegas Tuesday Feb 25th @ 1:00pm