SC‑300 Study Portal Path 5

Unit 6: Automate access review management tasks

Purpose of this unit

Manually reviewing access is necessary, but manual follow-up does not scale. This unit explains how Microsoft Entra access reviews can automatically enforce decisions, reduce administrative overhead, and help organizations continuously remove unnecessary access.

Automation ensures that access reviews result in action, even when reviewers don’t respond.

Automatically apply access review results

When creating an access review, administrators can enable Auto apply results to resource.

When this setting is enabled:

What “removal” means depends on the resource type:

This prevents reviews from becoming “advisory only” and enforces governance consistently.

Take recommendations automatically

What recommendations are

Access review recommendations are system-generated suggestions based on:

Example:

What happens when “Take recommendations” is selected

Microsoft continuously improves recommendation logic, but recommendations are only as strong as the review criteria you define.

Review guest user access

Access reviews are a critical tool for cleaning up external identities.

External users may gain access through:

Over time, these users often no longer require access, increasing risk.

Focus reviews on guest users

When creating access reviews for groups or applications, administrators can scope the review to:

Using Guest users only:

Visibility into external user access

External users invited into the tenant can have:

Access reviews allow organizations to:

Important limitation:

Why automation is critical (exam focus)

Automation in access reviews:

Common exam pitfall: