As an Azure admin, it is crucial to understand how to manage user group properties for effective identity and access management.
Some of the user properties you need to be familiar with include:
- User attributes like: display name, email address, job title etc.
- User roles, roles are tailored to the responsibilities of the user.
- Groups, what security groups and Microsoft 365 groups the user belong to.
- Licenses, for Azure services and Microsoft 365 applications
- Applications, the custom or SaaS applications owned by your organisation that the user can access.
Other vital properties include Devices, Authentication methods, and Custom security attributes.
And some Group Properties include:
- Group attribute: group name, description, type membership type (dynamic/assigned), object ID and Entra roles (whether the group can be assigned to roles)
- Group Membership: you can add or remove the group from other groups.
Other vital group properties include: Members, Owners, Roles and administrators, Administrative units, Applications, Licenses and Azure role assignments.
Groups allow you to easily manage users, for example you want to give a group of users certain privilege, instead doing one by one, you can simply create a group, add the users to the group and assign the needed privilege to the group.