Intune – New administration role available

A new administration role for Intune has been made available – Endpoint Security Manager.

This new role is an extension of the the Security Administrator role, to allow you

The associated permissions with this new Endpoint Security Manager are:

  1. Read, Create, Update, Delete, and Assign Device Compliance Policies
  2. Read, Delete, and Update Managed devices
  3. Read, Create, Update, Delete, and Assign Security baselines
  4. Read and Update Security tasks

You can start using this new role by assigning to the groups/users you need using either the Azure portal by then going to the Intune service (https://portal.azure.com/) or the Endpoint/Device Manager portal (https://devicemanagement.microsoft.com/) and then going to RolesAll Roles configuration blade

image_thumb[2]  image_thumb[3]

image_thumb[4]

Intune – Additional permissions for the Endpoint Security Manager role

As you know, you can delegate permissions to allow certain administrative or management tasks using RBAC (Role Based Access Control) on...

Read More

Intune – You can now define update locations for Windows Defender

As you know you can control some settings of Windows Defender through Intune/Endpoint Configuration Manager.

Read More

Azure AD / Office 365 – 3 new administration roles available

In the way to limit the need and use of the global administrator role, 3 new administration roles have been made available:

Read More