Azure Management and governance built-in role

SRE Agent Standard User

Lets a user chat with Azure SRE Agent, start threads, run diagnostics, upload knowledge documents, and request actions, but not approve actions, delete resources, modify connectors or response plans, manage resource scope, or change agent settings. Agent execution still depends on its managed identity or an Administrator-approved on-behalf-of flow.

Role-definition permissions are imported from Microsoft Learn. Practical scope, use cases, prerequisites, best practices, security considerations, assignment guidance, and relationships have been reviewed against the official sources below.

Role definition ID: 2d84a65a-63b2-4343-bbb6-31105d857bc1

Control-plane actions (3)

Data-plane actions (10)

Excluded actions (0)

None

Assignable scopes (1)

Practical scope

Assign on the SRE Agent resource. This controls user interaction with the agent, not the Azure resource groups the agent can access; those roles belong to the agent's user-assigned managed identity.

Common use cases (2)

Prerequisites (2)

Best practices (2)

Security considerations (2)

Assignment guidance

Assign to responders at the agent resource. Keep approval, connector, run-mode, settings, and managed-resource changes on Administrator, and manage the agent identity's resource access independently.

Related roles (2)

Common questions

When should I assign the SRE Agent Standard User Azure role?

Assign SRE Agent Standard User when you need to: Let L1 or L2 engineers and first responders investigate incidents through chat and diagnostics.; and Draft remediation requests for Administrator review without granting approval or agent configuration authority.. Practical scope: Assign on the SRE Agent resource. This controls user interaction with the agent, not the Azure resource groups the agent can access; those roles belong to the agent's user-assigned managed identity.

What permissions does the SRE Agent Standard User Azure role grant?

The role definition grants 13 combined control-plane and data-plane actions. Representative operations include: Microsoft.Authorization/*/read; Microsoft.Insights/alertRules/read; Microsoft.App/agents/read; Microsoft.App/agents/threads/read; Microsoft.App/agents/graph/read; and Microsoft.App/agents/memory/read. Review the permission sections above for the complete definition and exclusions.

What are the security risks of the SRE Agent Standard User Azure role?

Key considerations when assigning SRE Agent Standard User: The user can supply prompts and knowledge and request actions, which can influence an agent operating against production context.; and Standard User cannot approve actions or authorize OBO, and it does not receive the agent managed identity's Azure permissions.. Follow the assignment guidance above and use the narrowest practical scope.

Editorial sources (6)

Official Microsoft Learn documentation →