From the course: Microsoft Security, Compliance, and Identity Fundamentals (SC-900) Cert Prep by Microsoft Press

Unlock this course with a free trial

Join today to access over 23,200 courses taught by industry experts.

Describe the capabilities of privileged identity management (PIM)

Describe the capabilities of privileged identity management (PIM)

- Describe the identity protection and governance. Here we're going to describe the capabilities of Azure AD Privilege Identity Management, otherwise known as PIM. Azure AD Privilege Identity Management, PIM, is a service in Azure Active Directory, or Azure AD, that enables you to manage, control, and monitor access to important resources in your organization. PIM provides time-based and approval based role activation to mitigate the risk of excessive, unnecessary, or misused access permissions on a resource you care about. Here are some of the key capabilities of Azure AD Privileged Identity Management. Just in time privilege access. PIM provides just in time privilege access to Azure AD and Azure resources. Administrators can assign time bound access to resources, using start and end dates, require approval to activate privileged roles, and enforce multifactor authentication to activate any role. We also have access reviews. PIM provides access reviews to ensure users still need the…

Contents