Azure AD Privileged Identity Management (PIM) integration with Azure Lighthouse is now in public preview
Published date: July 06, 2021
Azure AD PIM integration with Azure Lighthouse promotes a Zero Trust model, mitigating risk for service providers in multi-tenant management and enabling industry standard security best practices for you with just-enough and just-in-time access controls.
Partners will create eligible authorizations to obtain privileged just-in-time access in your environments through ARM templates and Partner Center. Approval-based workflows notify you of the request and once granted, all actions are made available directly in ARM activity logs. The integration also allows a you to require Multi-Factor authentication before a partner's elevated access request is granted.
Licensing is only required on the managing tenant, including all users who are activating a role in the managing tenant. There are no license requirements for customers.