This is the Trace Id: 5ccb0acf6ade9e8c2f12f4a4d193ff46
Skip to main content Microsoft Defender Microsoft Entra Microsoft Intune Microsoft Purview Microsoft Security Copilot Microsoft Sentinel View all products AI-powered cybersecurity Cloud security Data security & governance Identity & network access Privacy & risk management Security for AI Small and medium business Unified SecOps Zero Trust Pricing Services Partners Why Microsoft Security Cybersecurity awareness Customer stories Security 101 Product trials How we protect Microsoft Industry recognition Microsoft Security Insider Microsoft Digital Defense Report Security Response Center Microsoft Security Blog Microsoft Security Events Microsoft Tech Community Documentation Technical Content Library Training & certifications Compliance Program for Microsoft Cloud Microsoft Trust Center Security Engineering Portal Service Trust Portal Microsoft Secure Future Initiative Business Solutions Hub Contact Sales Start free trial Microsoft Security Azure Dynamics 365 Microsoft 365 Microsoft Teams Windows 365 Microsoft AI Azure Space Mixed reality Microsoft HoloLens Microsoft Viva Quantum computing Sustainability Education Automotive Financial services Government Healthcare Manufacturing Retail Find a partner Become a partner Partner Network Microsoft Marketplace Software companies Blog Microsoft Advertising Developer Center Documentation Events Licensing Microsoft Learn Microsoft Research View Sitemap

Azure Active Directory (Azure AD) is now Microsoft Entra ID.

Learn more

Discover, restrict, and monitor access rights

Ensure your admin accounts stay secure by limiting access to critical operations with privileged identity management (PIM) solutions.

Meet the new Conditional Access Optimization Agent

Now generally available, discover how the new CA Optimization Agent in Microsoft Entra helps you close security gaps faster — and keep protection up to date, every day.

What is privileged identity management?

Privileged identity management provides time-based and approval-based role activation to mitigate the risks of excessive, unnecessary, or misused access to important resources in your organization.

Privileged identity management in Microsoft Entra ID

Microsoft Entra privileged identity management enables you to limit standing admin access to privileged roles, discover who has access, and review privileged access.

Intro to privileged identity management

Manage, control, and monitor access to important resources in your organization with Microsoft Entra ID privileged identity management.

Manage least-privilege access

Enforce the principle of least privilege by periodically reviewing, renewing, and extending access to resources.

Use just-in-time privileged access

Eliminate persistent access and enforce time-limited access for critical roles in privileged identity management.

Discover and monitor access

Ensure you know who has access to what and receive notifications when privileged roles are activated.

Take a deep dive into Microsoft Entra privileged identity management

Additional privileged identity management resources

Get started with privileged identity management

Learn about the prerequisites and prepare your privileged identity management deployment.

Deploy privileged identity management

Get step-by-step instructions on how to plan deployment of privileged identity management in your organization.

Configure privileged identity management

Find out about configuring privileged identity management with discovery and insights for Microsoft Entra ID roles.

Safeguard your organization with a seamless identity solution

Follow Microsoft Security