User Permissions - Actions

I am not sure if I categorized this question correctly, but here goes…

I am trying to make a pure Release Manager role with security to prevent them from modifying the code.

Is it possible to make a user that can administer an organization/repo but has the following restrictions/abilities?

  1. Can not commit to any branches
  2. Can create / edit / run Actions.

Also is it possible to restrict a particular user from creating / editing/run Actions?