Blog Post

Analytics on Azure Blog
2 MIN READ

General Availability: Automatic Identity Management (AIM) for Entra ID on Azure Databricks

AnaviNahar's avatar
AnaviNahar
Icon for Microsoft rankMicrosoft
Sep 10, 2025

In February, we announced that Automatic Identity Management in public preview and loved to hear your overwhelmingly positive feedback. Prior to public preview, you either had to set up an Entra Enterprise Application or involve an Azure Databricks account admin to import the appropriate groups. This required manual steps whether it was adding or removing users with organizational changes, maintaining scripts, or requiring additional Entra or SCIM configuration. Identity management was thus cumbersome and required management overhead. 

Today, we are excited to announce that Automatic Identity management (AIM) for Entra ID on Azure Databricks is generally available. This means no manual user setup is needed and you can instantly add users to your workspace(s). Users, groups, and service principals from Microsoft Entra ID are automatically available within Azure Databricks, including support for nested groups and dashboards. 

This native integration is one of the many reasons Databricks runs best on Azure. 

Here are some addition ways AIM could benefit you and your organization: 

Seamlessly share dashboards 

You can share AI/BI dashboards with any user, service principal, or group in Microsoft Entra ID immediately as these users are automatically added to the Azure Databricks account upon login. Members of Microsoft Entra ID who do not have access to the workspace are granted access to a view-only copy of a dashboard published with embedded credentials. This enables you to share dashboards with users outside your organization, too. To learn more, see share a dashboard. 

Updated defaults for new accounts 

All new Azure Databricks accounts have AIM enabled – no opt in or additional configuration required.  For existing accounts, you can enable AIM with a single click in the Account Admin Console. Soon, we will also make this the default for existing accounts. 

Automation at scale enabled via APIs 

You can also register users, groups, or service principles in Microsoft Entra ID via APIs. Being able to do this programmatically enables the enterprise scale most of our customers need. You can also enable automation via scripts leveraging these APIs. 

Read the Databricks blog here and get started via documentation today!

Published Sep 10, 2025
Version 1.0
No CommentsBe the first to comment