QuestionQ62

Secure identity and access

You manage an Azure Active Directory (Azure AD) tenant named contoso.com that includes a user named User1.

You are planning to publish several applications within this tenant.

You need to make sure that User1 is able to grant admin consent for these published applications.

Which two user roles could you assign to User1 to accomplish this? (Each correct answer presents a complete solution.)

Choose two
Explanation

Admin consent for published applications can be granted by users assigned certain built-in Azure AD roles that include the permission to manage app permission grants for the entire organization. Both the Cloud Application Administrator and Application Administrator roles include this capability, allowing an assigned user to grant tenant-wide admin consent to registered/published applications, whereas Security Administrator, User Administrator, and Application Developer roles do not include this permission.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!