Azure AD Role Scoring
At the time of writing this post, Azure AD contains 91 built-in administrative roles. These roles have varying degrees of power within Azure AD. The team at Senserva has built a scoring system for grading these roles so that our analytics platform can grade each user's power level within your organization. This can be helpful for highlighting security vulnerabilities within your administration team (such as misconfigured Multi-Factor Authentication).
Users can have multiple roles within an Azure AD tenant. Users are scored such that the role power level associated with their highest power assigned role will be the one that is displayed. Below is a table containing the different tiers of power levels that we have classified.
And below are the individual power levels that we have assigned to each of the Azure AD roles for grading user power levels.
And below are the individual power levels that we have assigned to each of the Azure AD roles for grading user power levels.