DSCResources/MSFT_EXODataAtRestEncryptionPolicyAssignment/settings.json

{
    "resourceName": "EXODataAtRestEncryptionPolicyAssignment",
    "description": "Use the Set-M365DataAtRestEncryptionPolicyAssignment cmdlet to assign a Microsoft 365 data-at-rest encryption policy at the tenant level.",
    "roles": {
        "read": [
            "Global Reader"
        ],
        "update": [
            "Exchange Administrator"
        ]
    },
    "permissions": {
        "graph": {
            "delegated": {
                "read": [],
                "update": []
            },
            "application": {
                "read": [],
                "update": []
            }
        },
        "exchange": {
            "requiredroles": [
                "Compliance Admin"
            ],
            "requiredrolegroups": "Organization Management"
        }
    }
}