--- title: "Assigning Azure Permissions for Discovery and Visibility" slug: "assigning-azure-permissions-discovery-visibility" updated: 2026-06-02T05:48:55Z published: 2026-06-02T05:48:55Z canonical: "docs.britive.com/assigning-azure-permissions-discovery-visibility" --- > ## Documentation Index > Fetch the complete documentation index at: https://docs.britive.com/llms.txt > Use this file to discover all available pages before exploring further. # Assigning Azure Permissions for Discovery and Visibility Within Azure, there are management groups and subscriptions. To read them, you need to assign Azure permissions to the tenant root group. --- Perform the following steps to assign Azure permissions at the Tenant Root Group: 1. Login to Azure with administrator privileges. 2. Select **Management groups** from the **Home** page. 3. Click on **Tenant Root Group** from the list**.** 4. Click **Access control (IAM)** from the navigation menu. 5. Click on **Role assignments** tab. 6. Click **Add -> Add role assignment.** 7. In the **Add role assignment** window, **s**elect **Role** as **Reader** and click **Next.** 8. To enable scanning of AI identities, add additional **Role** as **Foundry User** and click **Next.** 9. Click **+Select members**. 10. In the **Select members** window, select **Britive** and click **Select**. 11. Click **Review + assign**. The new role assignment is visible from the **Role assignments** tab. For more information about assigning Azure roles, see [Assign Azure roles using the Azure portal](https://docs.microsoft.com/en-us/azure/role-based-access-control/role-assignments-portal?tabs=current).