Azure Compute built-in role

Azure Batch Data Contributor

Manages Batch applications, application packages, pools, jobs, and job schedules while reading but not modifying the Batch account itself. Pool and application operations are control-plane Actions, while jobs and schedules are Batch service DataActions.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: 6aaa78f1-f7de-44ca-8722-c64a23943cae

Control-plane actions (11)

Data-plane actions (2)

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Assign at the Batch account for one workload boundary; broader assignments are inherited by every Batch account below the selected resource group, subscription, or management group. The role crosses control and data planes and can manage the compute environment in which tasks execute.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Assign Azure Batch Data Contributor to a workload administrator that owns applications, pools, jobs, and schedules in an existing Batch account. Use Job Submitter for job-only duties and Account Contributor only when account or key administration is also required.

Related roles (2)

Editorial sources (8)

Official Microsoft Learn documentation →