Skip to content

Commit 9235e00

Browse files
remove template spec, update tables
no more edge cases requiring template spec role
1 parent b94644e commit 9235e00

File tree

1 file changed

+1
-5
lines changed

1 file changed

+1
-5
lines changed

articles/sentinel/roles.md

Lines changed: 1 addition & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ Users with particular job requirements might need to be assigned other roles or
4141

4242
- **Install and manage out-of-the-box content**
4343

44-
Find packaged solutions for end-to-end products or standalone content from the content hub in Microsoft Sentinel. To install and manage content from the content hub, assign the **Microsoft Sentinel Contributor** role at the resource group level. For some solutions, the [**Template Spec Contributor**](../role-based-access-control/built-in-roles.md#template-spec-contributor) role is still required.
44+
Find packaged solutions for end-to-end products or standalone content from the content hub in Microsoft Sentinel. To install and manage content from the content hub, assign the **Microsoft Sentinel Contributor** role at the resource group level.
4545

4646
- **Automate responses to threats with playbooks**
4747

@@ -86,12 +86,9 @@ This table summarizes the Microsoft Sentinel roles and their allowed actions in
8686
| Microsoft Sentinel Contributor | -- | -- | ✓ | ✓ | ✓ | ✓|
8787
| Microsoft Sentinel Playbook Operator | ✓ | -- | -- | -- | -- | --|
8888
| Logic App Contributor | ✓ | ✓ | -- | -- | -- |-- |
89-
| Template Spec Contributor | -- | -- | -- | -- | -- |✓[**](#content-hub) |
9089

9190
<a name=workbooks></a>* Users with these roles can create and delete workbooks with the [Workbook Contributor](../role-based-access-control/built-in-roles.md#workbook-contributor) role. Learn about [Other roles and permissions](#other-roles-and-permissions).
9291

93-
<a name=content-hub></a>** The requirement for the Template Spec Contributor role to install and manage content from content hub is still required for some edge cases in addition to Microsoft Sentinel Contributor.
94-
9592
Review the [role recommendations](#role-and-permissions-recommendations) for which roles to assign to which users in your SOC.
9693

9794
## Custom roles and advanced Azure RBAC
@@ -116,7 +113,6 @@ After understanding how roles and permissions work in Microsoft Sentinel, you ca
116113
| | [Microsoft Sentinel Playbook Operator](../role-based-access-control/built-in-roles.md#microsoft-sentinel-playbook-operator) | Microsoft Sentinel's resource group, or the resource group where your playbooks are stored | Attach playbooks to analytics and automation rules. <br>Run playbooks. |
117114
|**Security engineers** | [Microsoft Sentinel Contributor](../role-based-access-control/built-in-roles.md#microsoft-sentinel-contributor) |Microsoft Sentinel's resource group | View data, incidents, workbooks, and other Microsoft Sentinel resources. <br><br>Manage incidents, such as assigning or dismissing incidents. <br><br>Create and edit workbooks, analytics rules, and other Microsoft Sentinel resources.<br><br>Install and update solutions from content hub. |
118115
| | [Logic Apps Contributor](../role-based-access-control/built-in-roles.md#logic-app-contributor) | Microsoft Sentinel's resource group, or the resource group where your playbooks are stored | Attach playbooks to analytics and automation rules. <br>Run and modify playbooks. |
119-
||[Template Spec Contributor](../role-based-access-control/built-in-roles.md#template-spec-contributor)|Microsoft Sentinel's resource group |Install and manage content from the content hub.|
120116
| **Service Principal** | [Microsoft Sentinel Contributor](../role-based-access-control/built-in-roles.md#microsoft-sentinel-contributor) | Microsoft Sentinel's resource group | Automated configuration for management tasks |
121117

122118

0 commit comments

Comments
 (0)