Apple @ Work: Understanding Apple Business Manager roles and permissions
Apple's expanded Business API enables IT administrators to automate device management and audit operations at scale, but requires careful configuration of role-based permissions to avoid access errors. Organizations must navigate Apple Business Manager's role and permission structure—with options for up to 15 custom roles—to properly provision API accounts, making clear guidance and tools essential for successful implementation. This capability shift empowers IT organizations managing large Apple device fleets to achieve greater automation and operational efficiency, though proper governance setup is critical to avoid configuration missteps.

Apple @ Work is exclusively brought to you by Mosyle, the only Apple Unified Platform. Mosyle is the only solution that integrates in a single professional grade platform all the solutions necessary to seamlessly and automatically deploy, manage, and protect Apple devices at work. Over 45,000 organizations trust Mosyle to make millions of Apple devices work ready with no effort and at an affordable cost. Request your EXTENDED TRIAL today and understand why Mosyle is everything you need to work with Apple. At this year’s WWDC, Apple announced an expanded Apple Business API. This update allows IT admins to retrieve device information, review audit events, and assign or unassign devices directly via the API. It is a fantastic update for enterprise IT folks building on Apple and Apple Business, but properly configuring the API can be a bit frustrating according to reports from developers.