Assign mobile device management admin privileges based on organizational unit

What’s changing

We’re giving admins more granular control over how mobile device management privileges are delegated. Specifically, admins can be assigned privileges for specific organizational units (OUs). This adds yet another layer of security by ensuring that access is scoped to the necessary OUs only. This feature is available as an open beta, which means you can use it without enrolling in a specific beta program.

Creating a custom role, which is assignable at the OU level.
Assigning permissions at the OU level

Example experience for an admin with OU level permissions

Getting started

Admins: Visit the Help Center to learn more about administrator roles and mobile device management.End users: There is no end user impact or action required.

Rollout pace

Rapid Release and Scheduled Release domains: Extended rollout (potentially longer than 15 days for feature visibility) starting on February 15, 2024

Availability

Available to all Google Workspace customers

Resources