---
title: "Assigning Azure Permissions for Discovery and Visibility"
slug: "assigning-azure-permissions-discovery-visibility"
updated: 2026-06-02T05:48:55Z
published: 2026-06-02T05:48:55Z
---

> ## Documentation Index
> Fetch the complete documentation index at: https://docs.britive.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Assigning Azure Permissions for Discovery and Visibility

Within Azure, there are management groups and subscriptions. To read them, you need to assign Azure permissions to the tenant root group.

---

Perform the following steps to assign Azure permissions at the Tenant Root Group:

1. Login to Azure with administrator privileges.
2. Select **Management groups** from the **Home** page.
3. Click on **Tenant Root Group** from the list**.**
4. Click **Access control (IAM)** from the navigation menu.
5. Click on **Role assignments** tab.****
6. Click **Add -> Add role assignment.**
7. In the **Add role assignment**window,**s**elect **Role** as **Reader** and click **Next.**
8. To enable scanning of AI identities, add additional **Role** as **Foundry User**and click**Next.**
9. Click **+Select members**.
10. In the **Select members** window, select **Britive** and click **Select**.
11. Click **Review + assign**. The new role assignment is visible from the **Role assignments** tab.

For more information about assigning Azure roles, see [Assign Azure roles using the Azure portal](https://docs.microsoft.com/en-us/azure/role-based-access-control/role-assignments-portal?tabs=current).
