-
Book Overview & Buying
-
Table Of Contents
-
Feedback & Rating

Microsoft Identity and Access Administrator SC-300 Exam Guide
By :

While built-in roles such as Reader, Contributor, and Owner offer a basic level of access control, real-world scenarios often demand more granular permissions. For instance, you might need to grant a user the ability to start and stop virtual machines but not modify network security groups. In these cases, custom Azure roles become indispensable. This section dives into the intricacies of creating custom roles, empowering you to define precise permissions aligned with your organization’s specific needs.
Passing the SC-300 exam requires a comprehensive understanding of the two pillars of custom roles: permissions and scope.
Permissions define the actions that the users with the assigned role can perform on Azure resources. Permissions are categorized into two main groups, aligned with Azure Resource Manager (ARM) operations. ARM uses a declarative, JSON-based language for defining the infrastructure and configuration of your resources, as shown...