maciejrebisz.com

IT

How to setup Azure AD Privileged Identity Management (PIM) – Mobile-First Cloud-First

maximios June 25, 2022

Azure AD Privileged Identity Management – also called AzureAD PIM.

This it a Azure AD Premium feature that give you Just-in-Time Admin Access in Azure.

The feature is just what you need is you a concerned about who, where and when a admin user have access to your Microsoft cloud. This is the first of a series of blogpost about AzureAD PIM.

AzureAD PIM is at the moment still in preview – that’s not a reason not to getting started with access management for users that have some kind of admin rights.

To setup  AzureAD PIM – you need to signin to the new Azure portal with a Global Admin that has a Azure AD Premium license: https://portal.azure.com/

Go to the marketplace and search for Azure AD and select Azure AD Privileged Identity Management (Preview)

Select Create

Select verify your permission to PIM – after you have verified select Create

Now the PIM service will search your Azure AD for Administrators

Select Next

Select Admins that you what to make eligible to activate PIM on

Select Next

Select Ok

Then the Azure AD Privileged Identity Management is pined to your Azure dashboard

You also receive a mail notification

Getting into the service for the first time:

he first ting you will notice is the Alert about you have Roles that don’t requires MFA

Select the link

Select … at the Global Administrator

Select Fix

Select Yes – and all the AzureAD Global Administrators now requires MFA to login.

You need to try this out if you care about security and who have administrators access to your Azure AD.

See my other post about AzureAD PIM

AzureAD PIM – how to setup a privileged role

Related Posts

IT /

Intune – Windows device enrollment restrictions – Cloud First

IT /

How to add “hidden” Windows UWP to Windows Store for Business – Cloud First

IT /

Office 2016 Active Directory-Based activation – Cloud First

‹ How to deploy OMS agent with SCCM (Part 3/4) – Mobile-First Cloud-First › How to migrate Delivery optimization (DO) setting from WUfB to the new Intune DO profile – Mobile-First Cloud-First

Recent Posts

  • Intune – Windows device enrollment restrictions – Cloud First
  • How to add “hidden” Windows UWP to Windows Store for Business – Cloud First
  • Office 2016 Active Directory-Based activation – Cloud First
  • How to deploy Windows Local Experience Packs with Intune – Cloud First
  • Conditional Access for Outlook Web Access (OWA) – Cloud First

Recent Comments

No comments to show.

Archives

  • November 2025
  • October 2025
  • August 2025
  • July 2025
  • June 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • November 2024
  • September 2024
  • July 2024
  • June 2024
  • March 2024
  • December 2023
  • August 2023
  • June 2023
  • March 2023
  • February 2023
  • December 2022
  • September 2022
  • August 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • January 2022
  • December 2021
  • October 2021
  • September 2021
  • August 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • February 2020
  • January 2020
  • December 2019
  • October 2019
  • September 2019
  • June 2019
  • April 2019
  • March 2019
  • February 2019
  • March 2018
  • February 2018
  • December 2017
  • October 2017
  • August 2017

Categories

  • IT

Back to Top

© maciejrebisz.com 2026
Powered by WordPress • Themify WordPress Themes