the account recon job only reconcile the account and the mapping attributes. to be able to reconcile access and group association you will need to run an Access Recon Job after building the configuration on your connector.
If this reply answered your question, please Accept As Solution to help other who may have a same problem. Give Kudos 😉
Azure AD needs 2 Jobs