Microsoft Purview compliance portal: Upcoming Update to Audit Records for Microsoft Purview Role Group Changes

Vendor
Microsoft
Product
Microsoft Purview
Type
Security
Announcement date
2025-05-20
Effective date
Date not published
Impact
Affected

In brief

Microsoft Purview compliance portal: Upcoming Update to Audit Records for Microsoft Purview Role Group Changes

What the source says

To improve clarity and transparency, we’re updating the audit data for events related to Microsoft Purview role group membership changes. This update affects audit events under the SecurityComplianceRBAC workload (RecordType 87), specifically for operations for GrantPermission, DeletePermission. While the audit schema remains unchanged, the PreExecutionMessage and PostExecutionMessage fields will be refined to better reflect the nature of the changes captured in the logs. Action Required: If your organization consumes these audit log events programmatically (e.g., via scripts or automation tools), please review and update your parsing logic to accommodate the enhanced message content. Rollout Timeline: This change will be rolled out starting in August. We recommend validating your systems against the updated message format as soon as it becomes available in your environment. GA date: August CY2025 Preview date: August CY2025 Launched General Availability Worldwide (Standard Multi-Tenant) GCC GCC High DoD Microsoft Purview Web

Continue from here

Read the primary source

Choose your reading

The role changes the reading angle, not the facts, date or level of evidence.

Reading for a salesperson

Who is affected: The audience described by the Microsoft update is represented by: Microsoft Purview compliance portal: Upcoming Update to Audit Records for Microsoft Purview Role Group Changes To improve clarity and transparency, we’re updating the audit data for events related to Microsoft Purview role group membership changes. This update affects audit events under the SecurityComplianceRBAC workload (RecordType 87), specifically for operations for GrantPermission, DeletePermission. While the audit schema remains unchanged, the PreExecutionMessage and PostExecutionMessage f

Why it matters: The change matters because the official source describes: Microsoft Purview compliance portal: Upcoming Update to Audit Records for Microsoft Purview Role Group Changes To improve clarity and transparency, we’re updating the audit data for events related to Microsoft Purview role group membership changes. This update affects audit events under the SecurityComplianceRBAC workload (RecordType 87), specifically for operations for GrantPermission, DeletePermission. While the audit schema remains unchanged, the PreExecutionMessage and PostExecutionMessage f

Urgency: Monitor

Next action: Review affected accounts with the customer using the official announcement.

Commercial opportunities

  • Use the verified change to open a scoped customer conversation.

Technical actions

  • Assess whether the documented change intersects the customer's current stack.

Questions to ask the customer

  • Does this documented change affect a product or workload in scope?

Risks and objections

  • The official source does not establish facts beyond the quoted material.

Points to confirm

  • The effective date is unknown and must be confirmed before scheduling action.

Evidence and traceability

Each excerpt is linked to the primary source and retained for verification.

  • Raw capture
    2026-08-29T09:22:49.319599+00:00
  • Event
    Microsoft Purview compliance portal: Upcoming Update to Audit Records for Microsoft Purview Role Group Changes To improve clarity and transparency, we’re updating the audit data for events related to Microsoft Purview role group membership changes. This update affects audit events under the SecurityComplianceRBAC workload (RecordType 87), specifically for operations for GrantPermission, DeletePermission. While the audit schema remains unchanged, the PreExecutionMessage and PostExecutionMessage fields will be refined to better reflect the nature of the changes captured in the logs. Action Required: If your organization consumes these audit log events programmatically (e.g., via scripts or automation tools), please review and update your parsing logic to accommodate the enhanced message content. Rollout Timeline: This change will be rolled out starting in August. We recommend validating your systems against the updated message format as soon as it becomes available in your environment. GA date: August CY2025 Preview date: August CY2025 Launched General Availability Worldwide (Standard Multi-Tenant) GCC GCC High DoD Microsoft Purview Web
    source
  • Product Microsoft Purview
    Microsoft Purview compliance portal: Upcoming Update to Audit Records for Microsoft Purview Role Group Changes To improve clarity and transparency, we’re updating the audit data for events related to Microsoft Purview role group membership changes. This update affects audit events under the SecurityComplianceRBAC workload (RecordType 87), specifically for operations for GrantPermission, DeletePermission. While the audit schema remains unchanged, the PreExecutionMessage and PostExecutionMessage fields will be refined to better reflect the nature of the changes captured in the logs. Action Required: If your organization consumes these audit log events programmatically (e.g., via scripts or automation tools), please review and update your parsing logic to accommodate the enhanced message content. Rollout Timeline: This change will be rolled out starting in August. We recommend validating your systems against the updated message format as soon as it becomes available in your environment. GA date: August CY2025 Preview date: August CY2025 Launched General Availability Worldwide (Standard Multi-Tenant) GCC GCC High DoD Microsoft Purview Web
    source
  • Insight a salesperson
    Microsoft Purview compliance portal: Upcoming Update to Audit Records for Microsoft Purview Role Group Changes To improve clarity and transparency, we’re updating the audit data for events related to Microsoft Purview role group membership changes. This update affects audit events under the SecurityComplianceRBAC workload (RecordType 87), specifically for operations for GrantPermission, DeletePermission. While the audit schema remains unchanged, the PreExecutionMessage and PostExecutionMessage fields will be refined to better reflect the nature of the changes captured in the logs. Action Required: If your organization consumes these audit log events programmatically (e.g., via scripts or automation tools), please review and update your parsing logic to accommodate the enhanced message content. Rollout Timeline: This change will be rolled out starting in August. We recommend validating your systems against the updated message format as soon as it becomes available in your environment. GA date: August CY2025 Preview date: August CY2025 Launched General Availability Worldwide (Standard Multi-Tenant) GCC GCC High DoD Microsoft Purview Web
    source

Back to the public feed