I have application user security group where we add users for a particular application and then it gets added to device collection in SCCM but i want to convert them to device security group where if i add device in that application security group it should add the device to the device collection in SCCM. For now we have application user security group but have device collection with deployment in SCCM so devices are not getting added accurately. How should i plan this?