Users joined to Azure AD have no local admin rights.
- Log in to Azure Active Directory Admin Centre
- On the left, click on Azure Active Directory
- On the left, click on Devices
- On the left, click on Device Settings
- Mid page, under “Additional local administrators on Azure AD joined devices”, enable
- Add members