Unable to create AWS and GCP connectors in Defender for Cloud

Ragusa, Carmelo 0 Reputation points
2025-04-22T11:22:38.5766667+00:00

Hello,

I'm trying to connect an AWS account and a GCP project to Defender for Cloud. My roles is contributor and security admin, but I get an insufficient permissions issue in both cases:

Failed to create security connector. Error: 'Insufficient privileges to complete the operation.

All the prerequisites I believe have been done.

Any suggestions?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,531 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Marcin Policht 45,155 Reputation points MVP
    2025-04-22T12:23:55.7366667+00:00

    Ensure that the roles are assigned on the subscription level and account for https://learn.microsoft.com/en-us/azure/defender-for-cloud/quickstart-onboard-aws#prerequisites and https://learn.microsoft.com/en-us/azure/defender-for-cloud/quickstart-onboard-gcp#prerequisites

    You'll also need to have sufficient permissions on the corresponding AWS account and GCP project


    If the above response helps answer your question, remember to "Accept Answer" so that others in the community facing similar issues can easily find the solution. Your contribution is highly appreciated.

    hth

    Marcin


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.