Planning and configuring entitlement management
Azure AD entitlement management is Microsoft’s identity governance capability through which you can automate who has access to what and for how long. In this section, we will learn how to create access packages, which are used to grant groups of users (both internal and external) access to a collection of roles and settings to simplify access, administration, and lifecycle management.
Entitlement management is available with an Azure AD Premium P2 license and enables organizations to do the following:
- Control access to applications, groups, teams, and SharePoint sites, using multi-stage approval, time-limited assignments, and recurring access reviews
- Automatically provide users with access to resources based on the user’s properties, such as a department or location, and remove access should such properties change
- Use delegation to allow non-administrative users the ability to create access packages ...