Skip to content

Commit e1e45a0

Browse files
committed
clarified that this section is only for sentinel roles
1 parent 5c56315 commit e1e45a0

File tree

1 file changed

+1
-3
lines changed

1 file changed

+1
-3
lines changed

articles/sentinel/roles.md

Lines changed: 1 addition & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -68,8 +68,6 @@ Users with particular job requirements may need to be assigned additional roles
6868

6969
For a user to create and delete an Azure Sentinel workbook, the user will also need to be assigned with the Azure Monitor role of [Monitoring Contributor](../role-based-access-control/built-in-roles.md#monitoring-contributor). This role is not necessary for using workbooks, but only for creating and deleting.
7070

71-
For a side-by-side comparison, see the [table below](#roles-and-allowed-actions).
72-
7371
### Other roles you might see assigned
7472

7573
In assigning Azure Sentinel-specific Azure roles, you may come across other Azure and Log Analytics Azure roles that may have been assigned to users for other purposes. You should be aware that these roles grant a wider set of permissions that includes access to your Azure Sentinel workspace and other resources:
@@ -80,7 +78,7 @@ In assigning Azure Sentinel-specific Azure roles, you may come across other Azur
8078

8179
For example, a user who is assigned the **Azure Sentinel Reader** role, but not the **Azure Sentinel Contributor** role, will still be able to edit items in Azure Sentinel if assigned the Azure-level **Contributor** role. Therefore, if you want to grant permissions to a user only in Azure Sentinel, you should carefully remove this user’s prior permissions, making sure you do not break any needed access to another resource.
8280

83-
## Roles and allowed actions
81+
## Azure Senitnel roles and allowed actions
8482

8583
The following table summarizes the Azure Sentinel roles and their allowed actions in Azure Sentinel.
8684

0 commit comments

Comments
 (0)