Automate onboarding & offboarding tasks with Microsoft Entra | Identity Lifecycle Management

preview_player
Показать описание
When users enter or leave your organization, automate manual steps to onboard and offboard with Microsoft Entra. For onboarding, manage user identities, grant permissions to access necessary information, and provide users with what they need to be productive, such as computer hardware. As people leave the organization, deprovisioning is critical to maintain security and compliance. Lifecycle Workflows in Microsoft Entra ID Governance can help with pre-built templates for common tasks.

Microsoft Entra is a complete identity management platform with everything you knew about Azure Active Directory, along with new capabilities. Identity lifecycle management automation removes many of the manual steps of everyday identity management tasks. With Lifecycle Workflows, users experience more consistency for better job satisfaction and reduced risk. It works with HR systems, like Workday and SuccessFactors, as part of the onboarding and offboarding workflow.

Jeremy Chapman, Director of Microsoft 365, walks through Identity Lifecycle Management automation in Microsoft Entra.

► QUICK LINKS:
00:00 - Introduction
01:28 - Automate employee onboarding
04:19 - Automate employee offboarding
05:41 - Workflow history
06:58 - Built-in change tracking for version history
08:30 - Wrap up

► Link References:

► Unfamiliar with Microsoft Mechanics?
As Microsoft's official video series for IT, you can watch and share valuable content and demos of current and upcoming tech from the people who build it at Microsoft.

► Keep getting this insider knowledge, join us on social:

#IdentityManagement #AzureAD #MicrosoftEntra #WorkflowAutomation
Рекомендации по теме
Комментарии
Автор

These videos really need to begin with "In this video we'll be discussing a product that requires the following licenses..." Save me the time of watching the whole thing then discovering we're not licensed for it.

mburland
Автор

Great explanation, great feature. Onboarding employees has been one of the pain areas in big organizations as they use reactive systems and not the other way around.

edsonraimundocongolo
Автор

I'ts a nice feature, but I can't understand why it's so expensive. 6€ per user ? In addition, you need to have Entra P1 license :(

shynel
Автор

Sooo... why are distribution groups not included in this? This is a common task for all users associated with onboarding employees.

gary
Автор

One day, I will be the only one running my company, no more humans... Not even a dashboard will be needed for I will not have eyes nor feelings!

SR-fief
Автор

doesnt see to be in canada? anyone else able to see it

michellew
Автор

Is Automate onboarding & offboarding cloud based only for now? What about a Hybrid environment where new account syncs from AD to AAD?

frankmvabaza
Автор

Thanks for this. Brilliant for Admin roles. Is there a way we could leverage PIM to delegate access on behald of another user as a role? E.g. EA on behalf of CEO? (or anything else within Microsoft universe)?

YouKayTen
Автор

though. the question is, how much of this is accessible with a business premium license? Seems like most videos on 365 are geared towards E3-E5 users.

abdavey
Автор

I feel what is really needed here is a process that allows you to copy one user to another, you know like on prem was able to do in ADUC?
That way it takes maybe five minutes to create a new user who will be fulfilling the same tasks as another user, and copy all the Role Groups, File Access groups and such instead of the sometimes up to ONE HOUR to copy and ensure all 120+ AAD groups have been successfully mimicked. (and PowerShell isn't capable of this either).

downundarob
Автор

An issue with the onboarding flow is that a pre-generated password is created with the user account. Sure you've provided the manager with the TAP and they, than give it to the new hire. But they can't and will not be able to modify their password unless IT manually send/provides one to them separately.

KingCode_
Автор

Would be good if there was a feature that would add someone into the same groups / teams as someone else

chaomac
Автор

How do I change a users employeeleavedatetime attribute?

jl