SC‑300 Study Portal Path 5

Unit 4: Exercise – Configure Privileged Identity Management for Microsoft Entra roles

In this exercise, you configure Privileged Identity Management (PIM) settings for a Microsoft Entra directory role. Specifically, you review and modify the Compliance Administrator role to require approval before activation.

This exercise demonstrates how organizations can add oversight and control to privileged role activation.

Objective of this exercise

By completing this exercise, you will learn how to:

Prerequisites

Before starting, ensure:

Step 1: Open Privileged Identity Management

Step 2: Navigate to Microsoft Entra roles

This section is used to manage directory roles, such as Global Administrator, Compliance Administrator, Security Administrator, and others.

Step 3: Open role settings

The Settings page displays all Microsoft Entra roles that can be managed by PIM.

Step 4: Locate the Compliance Administrator role

Step 5: Review current role settings

This page shows:

At this stage, no changes are made.

Step 6: Edit role settings

This opens the Edit role setting – Compliance Administrator screen.

Step 7: Require approval to activate the role

Important behavior:

Step 8: Select approvers

Approvers are responsible for approving role activation requests.

Step 9: Save the configuration

The Compliance Administrator role now requires approval before any eligible user can activate it.

Result of this exercise

After completing this exercise:

Key takeaways