Microsoft Purview: Role Group changes in Purview
We are introducing a new Microsoft Purview RBAC role—Purview Agent Deployment—and adding it to various existing built in role groups used by analysts and admins across Purview. This change enables users who use built-in role analyst groups to deploy Security Copilot Agents in Purview without needing any additional roles. If your organization prefers to limit agent deployment permissions, you can create a custom role group that does not include the Purview Agent Deployment role and assign that custom role group to analysts who should not be able to deploy agents. This update does not change default data access or expand visibility into customer content. All other permissions within each role group remain unchanged. Analysts who are assigned to custom role groups will not be able to deploy agents unless the Purview Agent Deployment role is explicitly added to those custom groups. We recommend reviewing and updating your organization’s RBAC documentation, internal processes, or onboarding guides to reflect these change We recommend reviewing and updating your organization’s RBAC documentation, internal processes, or onboarding guides to reflect these changes.

| Product | |
|---|---|
| Release phase | General Availability |
| Release date | February CY2026 |
| Platform | Web |
| Cloud Instance | Worldwide (Standard Multi-Tenant) |
| Created | 2026-02-04 00:15:25Z |
| Roadmap ID | 551147 |
| Roadmap Link | https://www.microsoft.com/microsoft-365/roadmap?id=551147 |

HANDS ON tek
M365 Admin


