Why am I unable to assign a reader role to subscriptions and/or getting an Access Denied critical error when adding my new Azure Service Principal?

Follow