Microsoft Azure Administrator Associate AZ-104 Practice Question
Your organization has multiple departments, and you want to delegate administrative permissions to department-level IT administrators so they can manage users and groups within their respective departments without accessing resources in other departments. Which feature in Azure Entra ID should you use to achieve this?
Administrative units in Azure Entra ID allow you to delegate permissions to regional or departmental administrators without granting them access to the entire directory. By using administrative units, you can scope administrative tasks to specific groups of users or other resources, enabling department-level admins to manage their own department's users and groups securely. Azure Entra ID groups are primarily used for assigning permissions to applications or resources, but they do not provide the scope restriction needed for administrative delegation. Azure subscriptions and resource groups are used for organizing and managing Azure resources, not for delegating Azure Entra ID administrative permissions.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are administrative units in Azure Entra ID?
Open an interactive chat with Bash
How do administrative units differ from Azure Entra ID groups?
Open an interactive chat with Bash
What is the role of Azure subscriptions and resource groups in managing administrative permissions?
Open an interactive chat with Bash
Microsoft Azure Administrator Associate AZ-104
Manage Azure identities and governance
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access