* Accessor for the groups for the requestor.
* In case request is made from a Root SP (one having access to all the groups in the tenant)
* we will query the TenantInfo collection to return all the groups
* OID for this Root SP is read from the key-vault
* Note: This approach of whitelisting a certain Service Principal is an interim solution
* to enable Root level access and will get changed once entitlements-azure has
* support for hierarchical groups
* @return The groups.
public Groups getGroups()
