Delegate access within a tenant

Nika 21 Reputation points
2022-11-09T12:06:05.803+00:00

Our organisation have all the resources in the same tenant. Can we split the permission "country" based?
So for Germany Local IT Department, they will get access everything that has to do with "their IT" etc?

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,629 questions
0 comments No comments
{count} votes

Accepted answer
  1. Alan Kinane 16,811 Reputation points MVP
    2022-11-09T12:20:43.343+00:00

    Hi Nika,

    The most common way to do this would be to organise your resources into different resource groups or Azure subscriptions and then you can scope your RBAC role assignments to the Resource Groups, Subscriptions or Management Groups. For example, you could have an Azure subscription (or management group if using multiple subscriptions) dedicated to each Country.

    https://learn.microsoft.com/en-us/azure/role-based-access-control/role-assignments-portal#step-1-identify-the-needed-scope

    0 comments No comments

0 additional answers

Sort by: Most helpful