A Microsoft Purview role group that governs portal permissions and handles settings throughout the solutions. Role Management is one of the roles it contains.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Organization Management in context, with comparison tables and the common traps.
Terms in this definition
- Microsoft Purview
Family of Microsoft products for data governance, security and compliance. Its Data Map stores only metadata, such as lineage, schema and classification, never the data itself.
- Role group
A bundle of Microsoft Purview roles. Any user or security group you add gets every permission in the bundle; you manage them from Settings > Roles and scopes.
- AGDLP
Nesting pattern: users go into global groups, which go into domain local groups, which receive the permissions. AGUDLP adds universal groups for forests with several domains.
- Role Management
A Purview role for viewing, creating and editing role groups and who belongs to them. Organization Management and Purview Administrators include it by default.
- CONTAINS
Searches columns with a full-text index for words, phrases, prefixes, inflected forms or synonyms; you use it as a predicate in
WHERE.
Related terms
- Priority Cleanup Admin
Role in Purview that grants setting up priority cleanup policies, managing them, and giving first-stage approval. Organization Management has it by default; Compliance Administrator lacks it.
- Search and Purge
Purview permission for deleting mail that a search turned up. Organization Management and Data Investigator include it by default.
- Sensitivity Label Administrator
Grants full control of sensitivity labels in Purview: view, create, edit and delete. Security Administrator, Organization Management and Compliance Data Administrator role groups all include it.
- Sensitivity Label Reader
Purview role giving view-only access to sensitivity label settings and usage. It belongs to the Security Reader, Global Reader and Organization Management role groups.