Exchange Online eDiscovery Transitioning to Office 365 Security & Compliance Center - Permissions

%3CLINGO-SUB%20id%3D%22lingo-sub-51201%22%20slang%3D%22en-US%22%3EExchange%20Online%20eDiscovery%20Transitioning%20to%20Office%20365%20Security%20%26amp%3B%20Compliance%20Center%20-%20Permissions%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-51201%22%20slang%3D%22en-US%22%3E%3CP%3EHello%20Team%2C%3C%2FP%3E%3CP%3EIs%20there%20currently%20a%20way%20to%20add%20a%20security%20group%20to%20the%20the%20Ediscovery%20Adminitrator%20role%20in%20the%20new%20Security%20and%20compliance%20module%20in%20o365.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3ECurrent%20it%20appears%20that%20one%20has%20to%20add%20individual%20users%20to%20the%20role.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EAppreciate%20your%20answers.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EBosco%20Joseph%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-61909%22%20slang%3D%22en-US%22%3ERe%3A%20Exchange%20Online%20eDiscovery%20Transitioning%20to%20Office%20365%20Security%20%26amp%3B%20Compliance%20Center%20-%20Permis%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-61909%22%20slang%3D%22en-US%22%3E%3CP%3EFinally%20got%20some%20time%20to%20look%20at%20this.%20So%2C%20this%20is%20the%20situation%3A%20you%20can%20use%20the%20Add-RoleGroupMember%20cmdlet%20to%20add%20users%20to%20the%20Role%20Group%2C%20as%20you%20would%20do%20in%20Exchange%2C%20this%20makes%20them%20eDiscovery%20Managers.%20To%20make%20a%20user%20eDiscovery%20Admin%2C%20you%20need%20to%20use%20the%20Add-CeDiscoveryCaseAdmin%20cmdlet.%20This%20is%20not%20tied%20in%20to%20specific%20eDiscovery%20case%2C%20he%20will%20have%20Admin%20access%20to%20all%20eDiscovery%20cases.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThe%20cmdlet%20is%20really%20easy%20to%20use%3A%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EAdd-CeDiscoveryCaseAdmin%20-User%20vasil%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3Ewhere%20%22C%22%20is%20the%20prefix%20I%20use%20for%20the%20SCC%20cmdlets.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-51384%22%20slang%3D%22en-US%22%3ERe%3A%20Exchange%20Online%20eDiscovery%20Transitioning%20to%20Office%20365%20Security%20%26amp%3B%20Compliance%20Center%20-%20Permis%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-51384%22%20slang%3D%22en-US%22%3E%3CP%3ENot%20sure%20on%20that%20part%2C%20I%20think%20it's%20a%20different%20role%20assignment%2C%20however%20the%20relevant%20cmdlets%20are%20not%20available%20for%20the%20Protection%20center%20PowerShell...%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-51268%22%20slang%3D%22en-US%22%3ERe%3A%20Exchange%20Online%20eDiscovery%20Transitioning%20to%20Office%20365%20Security%20%26amp%3B%20Compliance%20Center%20-%20Permis%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-51268%22%20slang%3D%22en-US%22%3EThanks%20Vasil%20for%20your%20inputs..%3CBR%20%2F%3EHowever%20I%20was%20looking%20to%20add%20a%20sec%20grp%20only%20to%20the%20%22eDiscovery%20Administrator%22%20grp%20which%20is%20a%20sub%20role%20within%20the%20eDiscoveryManager%20role%20group.%3CBR%20%2F%3E%3CBR%20%2F%3EDon't%20see%20the%20%22eDiscovery%20Administrator%22%20role%20group%20listed%20when%20I%20pipe%20my%20get-rolegroup%3CBR%20%2F%3E%3CBR%20%2F%3EName%3CBR%20%2F%3E----%3CBR%20%2F%3EReviewer%3CBR%20%2F%3ETenantAdmins%3CBR%20%2F%3ESecurityAdministrator%3CBR%20%2F%3EOrganizationManagement%3CBR%20%2F%3EHelpdeskAdmins%3CBR%20%2F%3ESupervisoryReview%3CBR%20%2F%3EComplianceAdministrator%3CBR%20%2F%3ESecurityReader%3CBR%20%2F%3EeDiscoveryManager%3CBR%20%2F%3EUserAccountAdmins%3CBR%20%2F%3EServiceAssuranceUser%3CBR%20%2F%3E%3CBR%20%2F%3EI%20was%20able%20to%20add%20a%20grp%20to%20the%20eDiscoveryManager%20role%20but%20was%20unable%20to%20find%20the%20%22eDiscovery%20Administrator.%3CBR%20%2F%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-51255%22%20slang%3D%22en-US%22%3ERe%3A%20Exchange%20Online%20eDiscovery%20Transitioning%20to%20Office%20365%20Security%20%26amp%3B%20Compliance%20Center%20-%20Permis%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-51255%22%20slang%3D%22en-US%22%3E%3CP%3EYou%20can%20add%20groups%2C%20via%20PowerShell%3A%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%23%20Get-CRoleGroupMember%20-Identity%20%22Supervisory%20Review%22%3C%2FP%3E%3CP%3EName%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%20RecipientType%3CBR%20%2F%3E----%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%20-------------%3CBR%20%2F%3EVasil%20Michev%20MailUser%3C%2FP%3E%3CP%3E%3CBR%20%2F%3E%23%20Add-CRoleGroupMember%20-Identity%20%22Supervisory%20Review%22%20-Member%20secgrp%3C%2FP%3E%3CP%3E%23%20Get-CRoleGroupMember%20-Identity%20%22Supervisory%20Review%22%3C%2FP%3E%3CP%3EName%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%20RecipientType%3CBR%20%2F%3E----%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%20-------------%3CBR%20%2F%3EVasil%20Michev%20MailUser%3CBR%20%2F%3Esecgrp%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%20MailUniversalSecurityGroup%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EOn%20the%20second%20question%2C%20the%20answer%20is%20no%2C%20at%20least%20last%20time%20we%20asked%20this%20they%20had%20no%20plans%20of%20doing%20anything%20similar.%20Old%20searches%20will%20remain%20in%20ExO%2C%20you%20simply%20wont%20be%20able%20to%20create%20new%20ones.%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-51203%22%20slang%3D%22en-US%22%3ERe%3A%20Exchange%20Online%20eDiscovery%20Transitioning%20to%20Office%20365%20Security%20%26amp%3B%20Compliance%20Center%20-%20Permis%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-51203%22%20slang%3D%22en-US%22%3E%3CP%3EAlso%20is%20MS%20planning%20on%20providing%20any%20scripts%20to%20migrate%20the%20existing%20disovery%20searches%20in%20EXO%20to%20the%20new%20module.%3C%2FP%3E%3C%2FLINGO-BODY%3E
Occasional Contributor

Hello Team,

Is there currently a way to add a security group to the the Ediscovery Adminitrator role in the new Security and compliance module in o365.

 

Current it appears that one has to add individual users to the role.

 

Appreciate your answers.

 

Bosco Joseph

5 Replies

Also is MS planning on providing any scripts to migrate the existing disovery searches in EXO to the new module.

You can add groups, via PowerShell:

 

# Get-CRoleGroupMember -Identity "Supervisory Review"

Name         RecipientType
----         -------------
Vasil Michev MailUser


# Add-CRoleGroupMember -Identity "Supervisory Review" -Member secgrp

# Get-CRoleGroupMember -Identity "Supervisory Review"

Name         RecipientType
----         -------------
Vasil Michev MailUser
secgrp       MailUniversalSecurityGroup

 

On the second question, the answer is no, at least last time we asked this they had no plans of doing anything similar. Old searches will remain in ExO, you simply wont be able to create new ones.

Thanks Vasil for your inputs..
However I was looking to add a sec grp only to the "eDiscovery Administrator" grp which is a sub role within the eDiscoveryManager role group.

Don't see the "eDiscovery Administrator" role group listed when I pipe my get-rolegroup

Name
----
Reviewer
TenantAdmins
SecurityAdministrator
OrganizationManagement
HelpdeskAdmins
SupervisoryReview
ComplianceAdministrator
SecurityReader
eDiscoveryManager
UserAccountAdmins
ServiceAssuranceUser

I was able to add a grp to the eDiscoveryManager role but was unable to find the "eDiscovery Administrator.

Not sure on that part, I think it's a different role assignment, however the relevant cmdlets are not available for the Protection center PowerShell...

Finally got some time to look at this. So, this is the situation: you can use the Add-RoleGroupMember cmdlet to add users to the Role Group, as you would do in Exchange, this makes them eDiscovery Managers. To make a user eDiscovery Admin, you need to use the Add-CeDiscoveryCaseAdmin cmdlet. This is not tied in to specific eDiscovery case, he will have Admin access to all eDiscovery cases.

 

The cmdlet is really easy to use:

 

Add-CeDiscoveryCaseAdmin -User vasil

 

where "C" is the prefix I use for the SCC cmdlets.