Here is a list of the least privledged role required by the task you are doing.
You can choose the role you need based on this:
https://learn.microsoft.com/en-us/azure/active-directory/roles/delegate-by-task
List of all Azure AD roles:
https://learn.microsoft.com/en-us/azure/active-directory/roles/permissions-reference