Event banner

Microsoft Entra Permissions Management AMA 2023

Event Ended
Monday, Jan 30, 2023, 09:00 AM PST
In-Person

Event details

If you attended our Permissions Management swarm and have any additional questions about the CIEM solution, join our Ask Me Anything event to get your questions answered by our product experts!

 

An AMA is a live text-based online event similar to a “YamJam” on Yammer or an “Ask Me Anything” on Reddit. This AMA gives you the opportunity to connect with Microsoft product experts who will be on hand to answer your questions and listen to feedback.

 

Feel free to post your questions about Entra Permissions Management anytime in the comments below beforehand, if it fits your schedule or time zone better, though questions will not be answered until the live hour.

Trevor_Rusher
Updated Jan 30, 2023
  • Naresh2174's avatar
    Naresh2174
    Copper Contributor
    What is the baseline or benchmark that Entra uses to indicate the risk or issue?
    • singhanmol's avatar
      singhanmol
      Icon for Microsoft rankMicrosoft
      Hi Naresh, if your question refers to Microsoft Entra Permissions Management, our CIEM solution, we use PCI (Permissions Creep Index) as a quantitative measure of risk associated with an identity or role determined by comparing permissions granted versus permissions exercised. It allows to instantly evaluate the level of risk associated with the number of unused or over-provisioned permissions across identities and resources.
  • Patrick Goggins's avatar
    Patrick Goggins
    Copper Contributor

    Will Entra introduce reduced privilege capabilities around OAuth token administration? How about browser based adding/deleting/updating? Currently GA permissions and uploading csv files are required for use.

    • SteveBall's avatar
      SteveBall
      Icon for Microsoft rankMicrosoft
      Thank you, Patrick. We're working on developing and releasing new scenarios in a short term and longer term roadmap - we'd love to hear your ideas (like OAuth token support which we do not support today.) Our current remediation processes are browser-based (or you can remediate via cut and pasting scripts from Entra Permissions Management into the console of choice.) If useful, could you expand on your CSV comment to clarify what you'd like to see with more detail?
      • dinglehart's avatar
        dinglehart
        Copper Contributor
        I want to kind of echo Patrick's comments but more broadly. There are a lot of functions in AAD altogether that require pretty high-level rights to manage, making it hard to delegate to appropriate personnel without over provisioning them. A specific example: If a user reports Fraud via Authenticator, it requires pretty high rights to clear. I would love to be able to delegate this to our SOC, but not giving them all kinds of other access.
  • John Willson's avatar
    John Willson
    Copper Contributor
    Has Entra been reviewed by ISACA or other umbrella auditing organization? If not what is the relationship of Entra to regular/annual IT audits?
  • dinglehart's avatar
    dinglehart
    Copper Contributor
    Do you have a publicly available roadmap for upcoming features?
    • SteveBall's avatar
      SteveBall
      Icon for Microsoft rankMicrosoft
      Hi David - great question, we do not have a (public) roadmap update yet, however we are continuously working on new scenarios and features for Entra and Entra Permissions Management. If you have a specific scenario, need, or request, we'd love to hear more details?
  • Andy Bowen's avatar
    Andy Bowen
    Copper Contributor
    Are there plans to improve the ID management between Microsoft and VMware Horizons?
  • John Willson's avatar
    John Willson
    Copper Contributor

    Similar to Andy Bowen's question: Are there plans to improve the ID management between Microsoft and (software X - such as CKAN etc)? An open API (encrypted but published not completely open) between third party software products such as say ChatGPT conversations?

    • singhanmol's avatar
      singhanmol
      Icon for Microsoft rankMicrosoft
      Hi John, we offer an extensive RESTful API platform, Microsoft Graph (https://learn.microsoft.com/en-us/graph/overview) that enables third-party software platforms (like the ones you mentioned, Software X and ChatGPT) to access Microsoft Cloud services, including Microsoft identity platform that helps you build applications for users and customers to sign in and integrate with our identity services.
      • John Willson's avatar
        John Willson
        Copper Contributor
        Thanks Anmol. OData with encryption or hashing would work didn't know it was on Graph.
  • Trevor_Rusher's avatar
    Trevor_Rusher
    Icon for Community Manager rankCommunity Manager
    Welcome to the Microsoft Entra Permissions Management Ask Microsoft Anything (AMA)! This live hour gives you the opportunity to ask questions directly to the Microsoft team. Please post any questions in a separate, new comment thread. Thanks!
  • Rajiv Misra's avatar
    Rajiv Misra
    Copper Contributor
    What tools do you recommend protecting your laptop from viruses and attacks?
  • Trevor_Rusher's avatar
    Trevor_Rusher
    Icon for Community Manager rankCommunity Manager
    Thank you for joining our AMA today! We appreciate all the great questions and hope you learned something new! I'll be locking this event to new questions and sharing a summary of the questions and answers in this space in a bit.
Date and Time
Jan 30, 20239:00 AM - 10:00 AM PST