Hi @Andreas · Thanks for your query.
You should consider assigning the group with Read permission at the Subscription level, so that all Resources/Resource Groups in that subscription are visible to the members of the group and then grant contributor permission to the group at Resource/Resource Group level so that the group members can only update/change specific Resources/Resource Groups only.
-----------------------------------------------------------------------------------------------------------
Please "Accept the answer" if the information helped you. This will help us and others in the community as well.