ai administrator
AI Automation

AI Administrator: Microsoft Has Two of Them

AI Administrator is a specific, assignable role in Microsoft Entra, with the template ID d2562ede-74db-457e-a7b6-544e236ebb61. It is also a completely separate Azure RBAC role called Azure AI Administrator, with a different ID. And it is a role name inside other platforms like Anaplan. Three different things, one label.

If you are searching because someone told you to assign it, the first question is which one they meant. The second is whether you know what it changed into, because the Entra role was substantially rewritten in March 2026.

The Three You’ll Actually Run Into

Role Where it lives What it governs
AI Administrator Microsoft Entra ID Copilot settings, copilot agents, AI-related enterprise services
Azure AI Administrator Azure RBAC Control plane permissions for Azure AI and its dependencies
AI administrator Anaplan Access to Agent Studio, where Anaplan Analyst and CoModeler are configured

The Entra and Azure roles are the ones people confuse most, because both are Microsoft and both sound identical. They are not interchangeable. The Entra role sits in your identity tenant and governs Microsoft 365 and Copilot. The Azure one is a resource-level RBAC role covering the Azure AI control plane. Assigning one does not grant the other.

Anaplan’s version is unrelated to Microsoft entirely. Tenant administrators there assign it to internal and visiting users purely to unlock Agent Studio.

What the Entra Role Actually Does

Microsoft introduced it in late 2024 as a way to delegate AI configuration without handing out Global Administrator. The original permission set covered a specific list:

  • Managing AI-related enterprise services, extensibility and copilot agents from the Integrated apps page in the Microsoft 365 admin center
  • Approving and publishing line-of-business copilot agents
  • Allowing users to install an app, or installing one for them, where the app needs no permissions
  • Reading and configuring Azure and Microsoft 365 service health dashboards
  • Viewing usage reports, adoption insights and organisational insight
  • Creating and managing support tickets

The logic was least privilege. Copilot governance is its own discipline, and the person tuning agent policy does not need the ability to reset every password in the tenant.

The March 2026 Change Is the Part Worth Knowing

The original role had a design problem that anyone who held it will recognise immediately. It sat between two worlds: more than a read-only observer, less than what was needed to run agent operations day to day.

The practical result was constant escalation. AI admins had to go to a Global Administrator for routine tasks, which defeats the entire purpose of having a delegated role. If your governance model depends on a specialist who cannot act without borrowing someone else’s privileges, you have added a bottleneck rather than removed one.

Microsoft rewrote it in March 2026. The updated role covers the full operational lifecycle of agents without that escalation dependency.

One exception survived deliberately, and it is the right one. Microsoft Graph application permissions stayed out of scope. Those grant app-only access with no user context to tenant-wide data, things like read and write across every mailbox, or directory-wide write access. That is a genuinely different blast radius from configuring a copilot, and it belongs behind a higher bar.

If you assigned this role in 2025 and wrote a runbook around its limitations, that runbook is out of date.

Treat It as a High-Privilege Position

The delegation framing can make this sound like a minor administrative role. It is not.

Whoever holds it approves which agents run inside your organisation and what they can reach. That is a decision about data access dressed up as a configuration setting, and it needs the same governance discipline you would apply to any privileged account.

The coordination map matters too. An AI Administrator cannot operate alone. Security administrators own AI-related security policy and incident response. Application administrators handle enterprise app management. Compliance administrators cover data protection. Without explicit handoffs between those four, agent approvals fall through gaps.

Establish the governance policy before you assign the role, not after. Microsoft’s own role comparison tool in the admin center will show you where permissions overlap with roles you have already handed out.

Why This Role Exists At All

The broader driver is agent sprawl. Organisations are accumulating copilot agents faster than anyone is tracking them, built by different teams, connected to different data, approved by nobody in particular.

That is the same problem we looked at when covering the governance platform built around shadow AI: individual productivity rises while organisational reliability does not, because nobody can say what is running or who authorised it.

A dedicated admin role is Microsoft’s answer inside its own ecosystem. It works to the extent that someone actually owns it. A role assigned to a general IT admin who also handles four other things is a checkbox, not governance.

For the wider picture of how enterprise agent platforms handle this, our look at Agentforce covers Salesforce’s approach to the same question, and our guide to AI operations automation covers where these decisions land operationally.

Frequently Asked Questions

Is AI Administrator the same as Azure AI Administrator?

No. The Entra AI Administrator role governs Copilot and Microsoft 365 AI services from your identity tenant. Azure AI Administrator is a separate Azure RBAC role granting control plane permissions for Azure AI resources. Different scopes, different template IDs, no overlap in assignment.

Can an AI Administrator manage agents without Global Admin?

Now, yes. The March 2026 update gave the role the permissions it needed for the full agent operational lifecycle. Before that, routine tasks required escalation to a Global Administrator.

What can’t an AI Administrator do?

Grant Microsoft Graph application permissions. Those give app-only, tenant-wide data access with no user context, and Microsoft deliberately kept them outside this role’s scope.

The Practical Call

Work out which product you are actually in before you assign anything. Entra, Azure and Anaplan all use this name for roles that do not overlap.

Then treat the assignment as a privileged one. The person holding it decides which AI agents operate inside your organisation and what they can touch, and since March 2026 they can do that without asking anyone. That is the point of the role, and it is also the reason it needs a named owner, a written policy and a review cycle rather than a quick tick in the admin center.

Published: September 14, 2026

Leave a Reply

Your email address will not be published. Required fields are marked *