The standard approach from MS would be to use AD groups to nest the permissions. Example:
new user bob would be added to the accounting group
the accounting group is a member of the SSRS_Account and SSRS_DataWarehouse AD groups
the groups are assigned permissions to reports in SSRS
bob would inherit permssions to the accounting and datawarehouse reports