Forum Discussion
SharePoint Permissions Management
Felt this in my soul lol. SharePoint permissions are one of those things that seem simple until you actually have to manage them at scale.
A couple things that helped us: First, we stopped using item-level permissions almost entirely. We restructure into separate libraries or folders with inherited permissions instead. Its more upfront work but saves you from the nightmare of broken inheritance everywhere. Second, we lean heavily on security groups in Entra ID rather than adding individuals. Makes offboarding way cleaner.
For auditing, the SharePoint admin center has gotten better with the sharing reports, but honestly we still supplement with PowerShell scripts that dump permissions weekly. Not ideal but at least you catch the weird stuff early.