09-08-2018
05:02 AM
- Subscribe to RSS Feed
- Mark as New
- Mark as Read
- Bookmark
- Subscribe
- Email to a Friend
- Printer Friendly Page
- Report Inappropriate Content
09-08-2018
05:02 AM
First published on CloudBlogs on Oct, 14 2014
Throughout this series
I’ve written quite a bit about
identity management
and its pivotal role in any enterprise mobility strategy. While I don’t want to be too repetitious on this topic, I do think it’s important to continually emphasize its ongoing value.
Any strategy that attempts to enable device usage anywhere with any platform has to give you the tools to set policies about how corporate data is accessed and used. This seemingly simple (but incredibly difficult) process is all based on your infrastructure’s ability to identify the individuals and devices accessing your network. Identity management helps keep your data in the right hands at the right times.
As enterprises continue to consume more and more SaaS offerings (the workforce in an average enterprise uses more than 300 SaaS apps!), IT has to
take an active position
when it comes to extending identity management to each of these SaaS apps. Today the majority of SaaS apps that are being used are completely unmanaged by IT – and this puts corporate reputation and assets at risk.
When we look at the
big trends and challenges
the IT industry is facing, identity management is the key element at play in all of them. For example: The device-based consumerization of IT would be impossible if we couldn’t quickly and easily verify and manage a user’s identity
and
their devices. A move to a cloud-based or
hybrid cloud-based
IT infrastructure would be impossible if there wasn’t a way to manage access, and compounding that problem, all your carefully gathered data would be worthless if there wasn’t a simple way to identify who should (and should not) be able to access it.
Identity management is an area where Microsoft excels because it is a big part of our
DNA as a company
. Today, over 90% of businesses around the world (and 95% of the Fortune 1000) use Active Directory for their identity management. We have spent millions of person-hours building and fine tuning software that enables enterprises to expand their on-prem investments to the cloud – and now we have
optimized our solutions for device management
with
Azure Active Directory
(you can read about AAD in depth
here
).
Whenever I get the opportunity to look at the scale and usage of Azure Active Directory I am really impressed. AAD is the premiere Enterprise Identity solution that’s delivered as cloud service. To give you an idea of its scale and power, it is servicing up to 18 billion authentication requests every day. There are 4 million organizations using AAD to manage access to their Microsoft Enterprise services (
e.g.
Azure, Office 365, EMS, etc.) and it is time to extend AAD’s trusted, reliable functionality to all of the SaaS apps your organization uses.
Considering the massive install base of AD, it is safe to say that the industry would prefer not to reinvent the wheel or manually recreate all of their identities in the cloud. The good news is that this kind of reinvention is unnecessary since this is exactly what Azure Active Directory (AAD) provides in a secure and comprehensive way. AAD combines directory services, advanced identity governance, application access management, and a developer’s identity management platform. Impressive, right?
Using Azure Active Directory to Set Your Organization Apart
When building your enterprise mobility solution, you want it to deliver a small handful of critical things that I believe you should list as requirements around identity:- Integration into your existing infrastructure.
- Easy syncing of your internal AD identities with 3rd party SaaS apps – and bring them under common management.
- Easy syncing with your on-prem directories (aka Active Directory).
- Self-service capabilities like password reset, group management, user profile, management, etc.
- Connect SaaS identities with their on-prem Active Directory users.
- Seamlessly connect with a variety of cloud applications.
- Integrate with various web protocols.
- Scale around the globe to authenticate users in any location, from any device, in a way that integrates simply with their existing identities.
- Provide SSO to all these apps for users.
- And you do not want to have to do all this integration yourself. That’s why we do it for you.
- Many applications, one identity repository.
- Managing identities and access to cloud applications.
- Monitoring and protecting access to enterprise applications.
- Personalizing access and self-service capabilities.
