Users can be found under AAD in the Azure portal menu .

A subscription is the Umbrella for all resource groups.

Users can be OWNERS at a subscription level or at a Resource Group level.

To restrict access for a user, simply assign them ownership of a particular RG – and nothing else (remove them as subscription owner)


To get even more specific, you can define custom roles – to restrict a user to only ‘VM creation’

Anuj holds professional certifications in Google Cloud, AWS as well as certifications in Docker and App Performance Tools such as New Relic. He specializes in Cloud Security, Data Encryption and Container Technologies.

Initial Consultation

Anuj Varma – who has written posts on Anuj Varma, Hands-On Technology Architect, Clean Air Activist.