
Answer-first summary for fast verification
Answer: Assign Group1 the User Access Administrator role at the root management group level.
The correct answer is B. Assigning Group1 the User Access Administrator role for the root management group ensures that they can manage role assignments for all existing and future subscriptions while adhering to the principle of least privilege. This role allows Group1 to grant other users access to Azure resources without granting them full administrative permissions, thereby minimizing security risks and administrative effort. New subscriptions will automatically inherit this role assignment as they are added to the root management group.
Author: LeetQuiz Editorial Team
Ultimate access to all questions.
With 15 Azure subscriptions and a plan to add more, ensure Group1 in Azure AD can manage role assignments across all subscriptions with minimal administrative effort, adhering to the principle of least privilege.
A
Grant Group1 Owner role at the root management group level.
B
Assign Group1 the User Access Administrator role at the root management group level.
C
Form a new management group, granting Group1 User Access Administrator role.
D
Form a new management group, granting Group1 the Owner role.
No comments yet.