SharePoint (2003 thru Online): New Roles and administrators - O365 vs Azure Active Directory

Tuesday, January 21, 2020

New Roles and administrators - O365 vs Azure Active Directory



Roles in O365Roles in Azure Active DirectoryRoles Description
Groups AdminGroups administratorMembers of this role can create and manage groups, create and manage group settings like naming and expiration policies, and view groups activity and audit reports. It is important to understand that assigning a user to this role gives them the ability to manage all the groups in the tenants across various workloads like Teams, SharePoint, and Yammer in addition to Outlook. Also, the user will be able to manage the various group settings across various admin portals like Microsoft Admin Center and the Azure Portal, as well as workload specific ones like Teams and SharePoint admin centers.
Office apps adminOffice apps administratorUsers in this role can manage Office 365 apps cloud settings. This includes managing cloud policies, self-service download management and the ability to view Office apps related report. This role additionally grants the ability to manage support tickets, and monitor service health within the main admin center. Users assigned to this role can also manage communication of new features in Office apps.
Power Platform adminPower platform administratorUsers in this role can create and manage all aspects of environments, PowerApps, Microsoft Flows, and Data Loss Prevent policies. Additionally, users with this role have the ability to manage support tickets and monitor service health.

Groups admin Permissions

Manage all
Read and configure ‎Azure Service Health‎
Create and manage Azure support tickets
Read and configure Service Health
Create and manage ‎Office 365‎ service requests

Create
Create groups in ‎Azure Active Directory‎

Delete
Delete groups in ‎Azure Active Directory‎

Modify
Assign product licenses to groups for group-based licensing in ‎Azure Active Directory‎
Reprocess license assignments for group-based licensing in ‎Azure Active Directory‎
Restore groups in ‎Azure Active Directory‎
Update basic properties on groups in ‎Azure Active Directory‎
Update members of a group in ‎Azure Active Directory‎
Update owners of a group in ‎Azure Active Directory‎
Update settings of groups in ‎Azure Active Directory‎

Read
Read hidden members of a group (groups.hiddenMembers property) in ‎Azure Active Directory‎
Read ‎Office 365‎ usage reports

Read basic properties on all resources in ‎Microsoft 365‎ admin center
__________________________________________________
Office apps admin Permissions
Manage all
   Read and configure ‎Azure Service Health‎
   Create and manage Azure support tickets
   Read and configure Service Health
   Create and manage ‎Office 365‎ service requests
   Manage all aspects of end-user communication settings
Read
   Read messages in Message Center
   Read ‎Office 365‎ usage reports
   Read basic properties on all resources in ‎Microsoft 365‎ admin center
___________________________________________________
Power Platform admin Permissions
Manage all
   Read and configure ‎Azure Service Health‎
   Create and manage Azure support tickets
   Manage all aspects of ‎Dynamics 365‎
   Manage all aspects of ‎Flow‎
   Read and configure Service Health
   Create and manage ‎Office 365‎ service requests
   Manage all aspects of ‎PowerApps‎
Read
   Read ‎Office 365‎ usage reports
   Read basic properties on all resources in ‎Microsoft 365‎ admin center


For other roles info, click below links

Global reader (Azure role)
Roles and administrators - O365 vs Azure Active Directory

No comments:

Post a Comment