The roles needed to run these commands are list below:
Then you could create a new role group adding these roles and the members you want manage, EAC > Permissions > admin roles
Note that: A role group member is a mailbox, universal security group (USG), or other role group that can be added as a member of a role group.
And make sure the options are checked in the role assignment policy you used, EAC > Permissions > user roles, for example:
If an Answer is helpful, please click "Accept Answer" and upvote it.
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.