Planning and configuring access reviews
Azure AD access reviews are a feature of Azure AD Premium P2. They enable administrators to ensure that users within the tenant have the appropriate level of access. Access reviews are also useful for weeding out stale accounts or accounts that are not often used. Users can participate in this process themselves, or their supervisors can review their current level of access. Once a review is completed, changes can be made and access can be revoked from users, as deemed appropriate.
To create and execute an access review, you need to follow these steps:
- Log in to the Azure portal as either a Global Administrator or a User Administrator. Navigate to Azure Active Directory | Identity Governance and select Access reviews.
- Choose the New access review option:
Figure 4.32: Access reviews
- You can select either Teams + Groups or Applications. For this example, create an access review by selecting...