Custom Azure RBAC Roles


Role Based Access Control is& Azure’s method for setting permissions on resources to control who can manage and administer them. Each type of Azure resource has a number of permissions that can be set on it, and these permissions can be grouped into roles that can be applied to users or groups of users to grant rights to manage resources. Out of the box, Azure comes with a large number of pre-defined roles for common workloads. Firstly, there are 3 high-level roles:

  • Owner: Owners have all rights on the resource including the ability to change& security settings (including membership of RBAC roles)
  • Contributor: As owner, but without the right to change security settings
  • Reader: Read-only rights to& resources

We then have a large number of resource-specific roles: