Azure AI + machine learning built-in role

Healthcare Agent Admin

Provides full Healthcare Agent management-portal access to bot resources, scenarios, configuration, instance keys and secrets, and user access. The imported role has no control-plane Actions; its authority is expressed entirely through Healthcare Agent DataActions.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: f1082fec-a70f-419f-9230-885d2550fb38

Control-plane actions (0)

None — this role grants no control-plane management actions.

Data-plane actions (19)

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Assign on the individual Healthcare Agent service resource. A parent-scope assignment is inherited by every Healthcare Agent instance below that scope and grants portal administration across them.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Assign Healthcare Agent Admin on the individual instance only to portal security and service owners. Use Admin to enable Microsoft Entra access management and assign Editor or Reader to other users through Azure IAM.

Related roles (2)

Editorial sources (5)

Official Microsoft Learn documentation →