Loading...

A Guide To Azure Management Groups For User Security in Dynamics 365 Finance & Operations

A Guide To Azure Management Groups For User Security in Dynamics 365 Finance & Operations

Business Scenario: CliffsNotes is a fictional company getting ready for its Business As Usual (BAU) processes as the production go-live for D365 Finance and Operations is scheduled for next week. However, looking at the number of entries of joiners and movers in the organization as well as the proper segregation of duties of each department an organization is looking at more control and a RBAC-driven solution in D365 Finance and Operations to manage the security roles.

Solution: A feature called Active directory security group can be leveraged as it allows AZURE AD groups driven access to a respective department.

Security should be top of mind for every D365 Finance and Operations Administrator. One of the best parts of this feature is a one-time setup and the remaining steps can be executed by the Administrator in a well-controlled manner through the Azure portal.

To my mind, this is an underdiscussed or perhaps underutilized feature. Consultants are often familiar with normal processes, such as adding users to D365 FOs and directly assigning security roles.

In this blog post, I am going to describe step by step approach to enabling the Azure AD group functionality.

Before we deep dive into Azure AD groups feature in Dynamics 365 Finance and Operations, first understand

image.png

What is the Azure AD group? An Azure AD group helps Administrators organize users making it easier to manage permissions. These groups let the resource owner, add a set of users to groups or assign a set of access permissions to all the members of the group.

Azure AD groups support two unique types
A. Security: The purpose of this type of group is to manage member resources for a group of users. E.g., You can create a security group for a specific security policy.

B. Microsoft 365: This type of group allows collaboration options by giving members access to apps such as Outlook, files, etc. Also, you add people outside of your organization access to the groups.

Prerequisite: A configuration key "Active Directory security group" is required to be enabled

image.png Here is a step-by-step explanation
Add a new user with the Azure portal image.png Create new Azure Active directory group with the Azure portal
image.png

image.png Select newly created Azure Active Directory groups

image.png Navigate to left pane and select Member option and then click on Add member

image.png

image.png Navigate to System administration > Users > Groups

image.png Click on Import groups option
Select Azure Active Directory security, groups
Click on Import Groups button

Note: Please enter unique ID for Azure directory group

image.png Click on Assign roles
Select the appropriate roles to assign to Azure groups that were imported earlier
Click on OK

image.png Note: Please ensure that the user has already been imported into the D365 Finance & Operations environment without any security roles assigned

image.png And that's it, Isn't cool 😎

Conclusion

By following the above step-by-step guide, you will be able to manage user role assignment in a controlled manner and provide end-to-end role traceability for Administrator personas.

Thank you for Reading - Let's Connect!

Enjoy my blog? For more such awesome blog articles - follow, subscribe and let's connect on LinkedIn , Twitter ,YouTube

Stay tuned!

Published on:

Learn more
Rakesh Darge's Blog
Rakesh Darge's Blog

Rakesh Darge's Blog

Share post:

Related posts

From Real-Time Analytics to AI: Your Azure Cosmos DB & DocumentDB Agenda for Microsoft Ignite 2025

Microsoft Ignite 2025 is your opportunity to explore how Azure Cosmos DB, Cosmos DB in Microsoft Fabric, and DocumentDB power the next generat...

3 hours ago

Episode 414 – When the Cloud Falls: Understanding the AWS and Azure Outages of October 2025

Welcome to Episode 414 of the Microsoft Cloud IT Pro Podcast.This episode covers the major cloud service disruptions that impacted both AWS an...

11 hours ago

Now Available: Sort Geospatial Query Results by ST_Distance in Azure Cosmos DB

Azure Cosmos DB’s geospatial capabilities just got even better! We’re excited to announce that you can now sort query results by distanc...

1 day ago

Query Advisor for Azure Cosmos DB: Actionable insights to improve performance and cost

Azure Cosmos DB for NoSQL now features Query Advisor, designed to help you write faster and more efficient queries. Whether you’re optimizing ...

1 day ago

Azure Developer CLI: Azure Container Apps Dev-to-Prod Deployment with Layered Infrastructure

This post walks through how to implement “build once, deploy everywhere” patterns using Azure Container Apps with the new azd publ...

2 days ago

Accelerate Your Growth: Azure Cosmos DB Partner Acceleration Program

Accelerate Your Growth: Azure Cosmos DB Partner Acceleration Program Unlock 360° Success with the Cosmos DB Engineering Team Are you ready to ...

3 days ago

Transforming Field Operations with AI, Azure Maps & Dynamics 365

Efficient field operations are the backbone of successful, data-driven organizations. Yet, many businesses continue to struggle with scattered...

5 days ago
Stay up to date with latest Microsoft Dynamics 365 and Power Platform news!
* Yes, I agree to the privacy policy