+ Add your CIPP-SAM application Service Principal directly to Admin Roles in the tenant.
+ This is an advanced use case where you need access to additional Graph endpoints or
+ Exchange Cmdlets otherwise unavailable via Delegated permissions.
+
+
+ This functionality is in
+ beta and should be treated as such. Roles are added during the Update Permissions process
+ or a CPV refresh.
+