Defining catalogs and access packages
Up to this point, you have worked on planning and implementing various aspects of security identity and access throughout the company tenant. This has included providing access to the tenant for members and external users. When adding a member or external user, you need to govern that they have the authorization to access immediately upon authenticating them to the company tenant. The catalogs that are created define the resources that a user or group is authorized to use. This allows clear governance of the resources that a user or group has access to use once they authenticate to the tenant. Entitlement management provides this governance through the creation of catalogs and access packages that you can build for these groups of users. Entitlement management is a premium feature and requires Azure AD Premium P2 licenses to assign to users and groups. Entitlement management is found under Identity Governance within Azure AD. Figure 12.1 shows...