ADFS map group and roles

I’m working on integration with Auth0 <-> ADFS<->AD
and need to map the AD user group and new roles I created in Auth0.
For example :
in AD → Bob is in the Marketing group.
I would like to set ‘Marketing group’ users to be “readonly” so at the end Bob’s jwt will contain the role: “readonly”
Please assist with what should I do in Auth0 and what rule I need to add to ADFS.
Best Regards,