Azure Integration built-in role

Integration Service Environment Developer

A retained control-plane role that allowed developers to read and join an Integration Service Environment while creating or updating workflows, integration accounts, and API connections associated with it. ISE retired on August 31, 2024, so this is legacy migration and cleanup access only.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: c7aa55d3-1abb-444a-a5ca-5e51e485d6ec

Control-plane actions (4)

Data-plane actions (0)

None — this role grants no data-plane (data access) actions.

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Do not create a new assignment. For an existing assignment, identify its originating scope and remove it after the migrated workflows, integration accounts, and connections are validated; parent assignments remain inherited until removed at the parent.

Common use cases (2)

Prerequisites (2)

Best practices (3)

Security considerations (3)

Assignment guidance

Do not assign Integration Service Environment Developer. Replace any required development access with a current Logic Apps role on the migrated resource, then remove the legacy assignment at its originating scope.

Related roles (2)

Editorial sources (7)

Official Microsoft Learn documentation →