No problem Paul, it's an easy one to miss as our security team has done many reviews of the MII product and has required stricter enforcement of file creation security. There is a UME action for the creation of files which you can assign to various roles if you don't want to use the standard MII roles or you can add your role to the Transaction -> Security -> Write Roles list to give permissions to the transaction to create the files.
Sam