Description
Perform a periodic review of the Tenant Creator role assignment to ensure that the assignments are accurate and appropriate.
Rationale
Unnecessary assignments increase the risk of privilege escalation and unauthorized access.
Impact
Verify that the Tenant Creator role is no longer required by any assignments before removal to avoid disruption of critical functions.
Audit
From Azure Portal
- Go to
Microsoft Entra ID. - Under
Manage, clickRoles and administrators. - In the search bar, type
Tenant Creator. - Click the role.
- Review the assignments and ensure that they are appropriate.
Default Value
The Tenant Creator role is not assigned by default.