Microsoft Privileged Identity Management
When an organization wants to protect its admins and privileged roles, Microsoft Entra Privileged Identity Management or Microsoft Entra PIM is the go-to service in Azure. By using this service, IT admins can make sure that no admin has access to their permissions all the time. The advantage of using PIM is also that there is an audit trail tracking when an admin activates their role.
To use Microsoft Entra PIM, an organization needs to have the correct license. One of the following is required before Microsoft Entra PIM can be used:
- Microsoft Entra ID Governance
- Microsoft Entra ID P2
- Microsoft 365 E5
The next steps require PIM to be configured in your environment.
In the previous section of this chapter, we configured Azure Bastion. In this section, let’s combine the custom roles that were created earlier in this chapter:
- In the Azure portal, go to Microsoft Entra PIM > Azure resources and put...