What roles are assigned to an Azure AD group?
+
Azure AD group-based role assignments ensure that all members within a group inherit the assigned role. Consequently, Microsoft 365 admins should actively monitor these assignments to verify whether they have granted permissions to appropriate users.
By following the below steps, you can check the role assigned to the groups.
- Login into Azure Active Directory Portal.
- Navigate to Groups»Select any specific group»Click on Assigned Roles.
It shows all the assigned roles of the Microsoft 365 groups and access rights. Therefore, the members of those groups are also assigned or inherited with those roles. You can check the Members tab on the same page to verify all members of a group, roles and their access levels.
When checking the members list, it includes external user group memberships if any external user is part of the group.
Stay in control, monitor Azure AD role assignments, and manage authorization wisely.
Using AdminDroid, you can easily export the list of group-based role assignments for the Microsoft 365 groups. To achieve that, you can refer User Added as Admin report with the ‘Role Added to – contains - Group’ filter.
Tip: Once you've set your filters, save them as a customized view! No need to re-apply filters every time. Also, effortlessly export Office 365 group members report to CSV whenever you need it.