last sync: 2025-Apr-29 17:09:03 Etc/UTC

Azure Information Protection Administrator - 7495fdc4-34c4-4d15-a289-98788ce399fd
Entra Id Role definition

Display name Azure Information Protection Administrator
Id 7495fdc4-34c4-4d15-a289-98788ce399fd
Description Can manage all aspects of the Azure Information Protection product.
Detailed description Users with this role have user rights only on the Azure Information Protection service. They are not granted user rights on Identity Protection Center, Privileged Identity Management, Monitor Office 365 Service Health, or Office 365 Security & Compliance Center. They can configure labels for the Azure Information Protection policy, manage protection templates, and activate protection.
Categories securityAndCompliance
isPrivileged False
EntraOps Tier Level ManagementPlane
#Resource Actions unique 61
#Resource Actions Operations unique 61
#Resource Actions privileged 0
#Resource Actions direct 7
Resource Actions inherited True
#Resource Actions inherited 54
Resource Actions inherited from Directory Readers (88d8e3e3-8f55-4a1e-953a-9b9898b8876b)
#Resource Actions overlap direct&inherited 0
Resource Actions overlap direct&inherited
#Resource Actions inherited to 0 other Entra Id Roles
Resource Actions inherited to n/a
#Resource Actions conditioned 0
#Resource Actions unconditioned 61
#NameSpaces 7
NameSpaces microsoft.azure.informationProtection: 1
microsoft.azure.serviceHealth: 1
microsoft.azure.supportTickets: 1
microsoft.directory: 55
microsoft.office365.serviceHealth: 1
microsoft.office365.supportTickets: 1
microsoft.office365.webPortal: 1
Actions allTasks: 5
read: 56
Operations actionVerbs GET: 56
n/a: 5
Resource Actions where Consent Policy applies 0
Resource Actions / Consent Policy n/a
JSON enriched
JSON raw (v1.0 endpoint)
GET /roleManagement/directory/roleDefinitions/{id}
JSON raw (beta endpoint)
GET /roleManagement/directory/roleDefinitions/{id}