Commands › Exchange Online
New-ManagementRole
Create a management role based on an existing role or create an unscoped management role.
Quick start script
# New-ManagementRole — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org
# 2. Capture the current state first — you cannot roll back what you never recorded
$before = Get-ManagementRole
$before | Format-List
# 3. Make the change (dry run first)
New-ManagementRole -Name <String> -Parent <RoleIdParameter> -UnScopedTopLevel <SwitchParameter> -WhatIf
New-ManagementRole -Name <String> -Parent <RoleIdParameter> -UnScopedTopLevel <SwitchParameter>
# 4. Verify and diff
$after = Get-ManagementRole
Compare-Object ($before | Out-String) ($after | Out-String)
Syntax — 2 parameter sets
NewDerivedRole
New-ManagementRole [-Name] <String> -Parent <RoleIdParameter>
[-EnabledCmdlets <String[]>]
[-Confirm]
[-Description <String>]
[-DomainController <Fqdn>]
[-Force]
[-WhatIf]
[<CommonParameters>]
UnScopedTopLevelRole
New-ManagementRole [-Name] <String>
[-UnScopedTopLevel]
[-Confirm]
[-Description <String>]
[-DomainController <Fqdn>]
[-Force]
[-WhatIf]
[<CommonParameters>]
Parameters (9)
Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.