From policies or apps point of view we can create multiple user groups and assign permissions to it like BYOD policy to one group and CORP policy to another group. In SCCM environment, we can create user collections instead of User groups
Product :
Microsoft, Intune/Current, all
Feature :
Containerization, App Security, Mobile Application Management(MAM)