Planning and configuring PIM
Azure AD PIM enables you to take greater control of your privileged accounts within Azure AD. So, what exactly is a privileged account? Essentially, this is any user account within your Microsoft 365 environment that grants elevated privileges above the scope of a standard user.
By default, Microsoft 365 standard user accounts are created without any sort of administrative privileges. However, it may be necessary to grant certain users elevated privileges as per their jobs. There are many built-in administrator roles within Microsoft 365 for this, including (but not limited to) the following:
- Billing Administrator
- Exchange Administrator
- Global Administrator
- Helpdesk Administrator
- Service Administrator
- SharePoint Administrator
- Teams Administrator
- User Administrator
- Privileged Role Administrator
If you’d like to know more, please refer to the Further reading section at the end of this chapter.
Now...