Hi Tom Nesbitt
Welcome to the Microsoft Q&A Platform! Thank you for asking your question here.
Log into the vSphere Client.
Navigate to Administration > Roles.
Identify or create a role that includes the Cryptographer.ManageKeyServers privilege.Assign this role to the VSPHERE.LOCAL\cloudadmin user or group at the appropriate level.
Verify that the VSPHERE.LOCAL\cloudadmin user has all necessary privileges for SRM deployment, including permissions related to disaster recovery and replication.
Restart the vCenter Server and SRM services on both the protected and recovery sites after updating permissions to apply the changes.Retry deploying AVS SRM in Azure after resolving the permissions issue.
Check that the same account used to install SRM has administrative privileges on both sites, as SRM deployments often require this consistency.
If you have any further queries, do let us know.
If the answer is helpful, please and "Upvote it".