Custom Roles to Edit Endpoint security policy

IntuneUser 181 Reputation points
2022-05-21T06:17:35.87+00:00

I would like to know about custom roles which would allow me to create/delete/edit Endpoint Security policies from Intune.

I have duplicated Endpoint Security Manager role and assigned it to a user group.
When I access Intune console using the user's account I cannot edit previously created AV policies.
When I click on Edit Configuration Settings, I find the below screen:
204140-image.png

Also I cannot find any "Add" option on the screen.

Microsoft Security | Intune | Configuration
Microsoft Security | Intune | Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Lu Dai-MSFT 28,526 Reputation points
    2022-05-23T01:41:26.64+00:00

    @IntuneUser Thanks for posting in our Q&A.

    For this issue, we appreciate your help to check if the "create","assign", "update" is set to "Yes" under Device configurations in Endpoint Security Manager role.
    204435-image.png

    Based on my check, the default settings are set to "No". When these setting are set to "Yes", please check if you can see "add" option in Settings catalog page.

    If there is anything update, feel free to let us know.


    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.