{"id":6533,"date":"2023-01-05T03:18:25","date_gmt":"2023-01-05T03:18:25","guid":{"rendered":"https:\/\/pariswells.com\/blog\/?p=6533"},"modified":"2023-06-04T22:34:20","modified_gmt":"2023-06-04T22:34:20","slug":"how-to-leverage-azure-pim-to-protect-onpem-ad-groups","status":"publish","type":"post","link":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups","title":{"rendered":"How to leverage Azure PIM to protect onpem AD Groups"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Make sure you set this up with the correct service user to start with<br>Add Groups that have roles assigned will be synced onprem<br>Make sure you do not sure this back to Azure<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/goodworkaround.com\/2020\/09\/17\/using-azure-ad-privileged-identity-management-with-active-directory-roles-such-as-domain-admin\/\">Using Azure AD Privileged Identity Management with Active Directory roles (such as domain&nbsp;admin)<\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Requests for privileged access to systems and applications are validated when first requested<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[1464,4129,4067],"class_list":["post-6533","post","type-post","status-publish","format-standard","hentry","category-research","tag-azure","tag-onprem","tag-pim"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 4.9.8 - aioseo.com -->\n\t<meta name=\"description\" content=\"Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not sure this back to Azure Using Azure AD Privileged Identity Management with Active Directory roles (such as domain admin) Requests for privileged access to systems and applications are validated\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"paris\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 4.9.8\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"Welcome to Pariswells.com |\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"How to leverage Azure PIM to protect onpem AD Groups | Welcome to Pariswells.com\" \/>\n\t\t<meta property=\"og:description\" content=\"Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not sure this back to Azure Using Azure AD Privileged Identity Management with Active Directory roles (such as domain admin) Requests for privileged access to systems and applications are validated\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2023-01-05T03:18:25+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2023-06-04T22:34:20+00:00\" \/>\n\t\t<meta name=\"twitter:card\" content=\"summary\" \/>\n\t\t<meta name=\"twitter:title\" content=\"How to leverage Azure PIM to protect onpem AD Groups | Welcome to Pariswells.com\" \/>\n\t\t<meta name=\"twitter:description\" content=\"Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not sure this back to Azure Using Azure AD Privileged Identity Management with Active Directory roles (such as domain admin) Requests for privileged access to systems and applications are validated\" \/>\n\t\t<script type=\"application\/ld+json\" class=\"aioseo-schema\">\n\t\t\t{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#article\",\"name\":\"How to leverage Azure PIM to protect onpem AD Groups | Welcome to Pariswells.com\",\"headline\":\"How to leverage Azure PIM to protect onpem AD Groups\",\"author\":{\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/author\\\/paris#author\"},\"publisher\":{\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/#organization\"},\"datePublished\":\"2023-01-05T03:18:25+00:00\",\"dateModified\":\"2023-06-04T22:34:20+00:00\",\"inLanguage\":\"en-US\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#webpage\"},\"isPartOf\":{\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#webpage\"},\"articleSection\":\"Research, Azure, onprem, PIM\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#breadcrumblist\",\"itemListElement\":[{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog#listItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/pariswells.com\\\/blog\",\"nextItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/category\\\/research#listItem\",\"name\":\"Research\"}},{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/category\\\/research#listItem\",\"position\":2,\"name\":\"Research\",\"item\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/category\\\/research\",\"nextItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#listItem\",\"name\":\"How to leverage Azure PIM to protect onpem AD Groups\"},\"previousItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog#listItem\",\"name\":\"Home\"}},{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#listItem\",\"position\":3,\"name\":\"How to leverage Azure PIM to protect onpem AD Groups\",\"previousItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/category\\\/research#listItem\",\"name\":\"Research\"}}]},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/#organization\",\"name\":\"Welcome to Pariswells.com\",\"url\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/author\\\/paris#author\",\"url\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/author\\\/paris\",\"name\":\"paris\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#authorImage\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/93b8ee3f592ac401167f870452bd82d43de80152cd3524e2853403658ada9984?s=96&d=mm&r=g\",\"width\":96,\"height\":96,\"caption\":\"paris\"}},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#webpage\",\"url\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups\",\"name\":\"How to leverage Azure PIM to protect onpem AD Groups | Welcome to Pariswells.com\",\"description\":\"Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not sure this back to Azure Using Azure AD Privileged Identity Management with Active Directory roles (such as domain admin) Requests for privileged access to systems and applications are validated\",\"inLanguage\":\"en-US\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/#website\"},\"breadcrumb\":{\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/research\\\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#breadcrumblist\"},\"author\":{\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/author\\\/paris#author\"},\"creator\":{\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/author\\\/paris#author\"},\"datePublished\":\"2023-01-05T03:18:25+00:00\",\"dateModified\":\"2023-06-04T22:34:20+00:00\"},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/\",\"name\":\"Welcome to Pariswells.com\",\"inLanguage\":\"en-US\",\"publisher\":{\"@id\":\"https:\\\/\\\/pariswells.com\\\/blog\\\/#organization\"}}]}\n\t\t<\/script>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"How to leverage Azure PIM to protect onpem AD Groups | Welcome to Pariswells.com","description":"Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not sure this back to Azure Using Azure AD Privileged Identity Management with Active Directory roles (such as domain admin) Requests for privileged access to systems and applications are validated","canonical_url":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#article","name":"How to leverage Azure PIM to protect onpem AD Groups | Welcome to Pariswells.com","headline":"How to leverage Azure PIM to protect onpem AD Groups","author":{"@id":"https:\/\/pariswells.com\/blog\/author\/paris#author"},"publisher":{"@id":"https:\/\/pariswells.com\/blog\/#organization"},"datePublished":"2023-01-05T03:18:25+00:00","dateModified":"2023-06-04T22:34:20+00:00","inLanguage":"en-US","mainEntityOfPage":{"@id":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#webpage"},"isPartOf":{"@id":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#webpage"},"articleSection":"Research, Azure, onprem, PIM"},{"@type":"BreadcrumbList","@id":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#breadcrumblist","itemListElement":[{"@type":"ListItem","@id":"https:\/\/pariswells.com\/blog#listItem","position":1,"name":"Home","item":"https:\/\/pariswells.com\/blog","nextItem":{"@type":"ListItem","@id":"https:\/\/pariswells.com\/blog\/category\/research#listItem","name":"Research"}},{"@type":"ListItem","@id":"https:\/\/pariswells.com\/blog\/category\/research#listItem","position":2,"name":"Research","item":"https:\/\/pariswells.com\/blog\/category\/research","nextItem":{"@type":"ListItem","@id":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#listItem","name":"How to leverage Azure PIM to protect onpem AD Groups"},"previousItem":{"@type":"ListItem","@id":"https:\/\/pariswells.com\/blog#listItem","name":"Home"}},{"@type":"ListItem","@id":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#listItem","position":3,"name":"How to leverage Azure PIM to protect onpem AD Groups","previousItem":{"@type":"ListItem","@id":"https:\/\/pariswells.com\/blog\/category\/research#listItem","name":"Research"}}]},{"@type":"Organization","@id":"https:\/\/pariswells.com\/blog\/#organization","name":"Welcome to Pariswells.com","url":"https:\/\/pariswells.com\/blog\/"},{"@type":"Person","@id":"https:\/\/pariswells.com\/blog\/author\/paris#author","url":"https:\/\/pariswells.com\/blog\/author\/paris","name":"paris","image":{"@type":"ImageObject","@id":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#authorImage","url":"https:\/\/secure.gravatar.com\/avatar\/93b8ee3f592ac401167f870452bd82d43de80152cd3524e2853403658ada9984?s=96&d=mm&r=g","width":96,"height":96,"caption":"paris"}},{"@type":"WebPage","@id":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#webpage","url":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups","name":"How to leverage Azure PIM to protect onpem AD Groups | Welcome to Pariswells.com","description":"Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not sure this back to Azure Using Azure AD Privileged Identity Management with Active Directory roles (such as domain admin) Requests for privileged access to systems and applications are validated","inLanguage":"en-US","isPartOf":{"@id":"https:\/\/pariswells.com\/blog\/#website"},"breadcrumb":{"@id":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups#breadcrumblist"},"author":{"@id":"https:\/\/pariswells.com\/blog\/author\/paris#author"},"creator":{"@id":"https:\/\/pariswells.com\/blog\/author\/paris#author"},"datePublished":"2023-01-05T03:18:25+00:00","dateModified":"2023-06-04T22:34:20+00:00"},{"@type":"WebSite","@id":"https:\/\/pariswells.com\/blog\/#website","url":"https:\/\/pariswells.com\/blog\/","name":"Welcome to Pariswells.com","inLanguage":"en-US","publisher":{"@id":"https:\/\/pariswells.com\/blog\/#organization"}}]},"og:locale":"en_US","og:site_name":"Welcome to Pariswells.com |","og:type":"article","og:title":"How to leverage Azure PIM to protect onpem AD Groups | Welcome to Pariswells.com","og:description":"Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not sure this back to Azure Using Azure AD Privileged Identity Management with Active Directory roles (such as domain admin) Requests for privileged access to systems and applications are validated","og:url":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups","article:published_time":"2023-01-05T03:18:25+00:00","article:modified_time":"2023-06-04T22:34:20+00:00","twitter:card":"summary","twitter:title":"How to leverage Azure PIM to protect onpem AD Groups | Welcome to Pariswells.com","twitter:description":"Make sure you set this up with the correct service user to start withAdd Groups that have roles assigned will be synced onpremMake sure you do not sure this back to Azure Using Azure AD Privileged Identity Management with Active Directory roles (such as domain admin) Requests for privileged access to systems and applications are validated"},"aioseo_meta_data":{"post_id":"6533","title":null,"description":null,"keywords":[],"keyphrases":{"focus":{"keyphrase":"","score":0,"analysis":{"keyphraseInTitle":{"score":0,"maxScore":9,"error":1}}},"additional":[]},"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":"","og_custom_url":null,"og_article_section":null,"og_article_tags":[],"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":"default","schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":"-1","robots_max_videopreview":"-1","robots_max_imagepreview":"large","priority":null,"frequency":"default","location":null,"local_seo":null,"breadcrumb_settings":null,"limit_modified_date":false,"ai":null,"created":"2023-01-05 03:17:50","updated":"2023-06-04 22:49:04","primary_term":null,"seo_analyzer_scan_date":null},"aioseo_breadcrumb":"<div class=\"aioseo-breadcrumbs\"><span class=\"aioseo-breadcrumb\">\n\t\t\t<a href=\"https:\/\/pariswells.com\/blog\" title=\"Home\">Home<\/a>\n\t\t<\/span><span class=\"aioseo-breadcrumb-separator\">&raquo;<\/span><span class=\"aioseo-breadcrumb\">\n\t\t\t<a href=\"https:\/\/pariswells.com\/blog\/category\/research\" title=\"Research\">Research<\/a>\n\t\t<\/span><span class=\"aioseo-breadcrumb-separator\">&raquo;<\/span><span class=\"aioseo-breadcrumb\">\n\t\t\tHow to leverage Azure PIM to protect onpem AD Groups\n\t\t<\/span><\/div>","aioseo_breadcrumb_json":[{"label":"Home","link":"https:\/\/pariswells.com\/blog"},{"label":"Research","link":"https:\/\/pariswells.com\/blog\/category\/research"},{"label":"How to leverage Azure PIM to protect onpem AD Groups","link":"https:\/\/pariswells.com\/blog\/research\/how-to-leverage-azure-pim-to-protect-onpem-ad-groups"}],"_links":{"self":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts\/6533","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/comments?post=6533"}],"version-history":[{"count":3,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts\/6533\/revisions"}],"predecessor-version":[{"id":6930,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts\/6533\/revisions\/6930"}],"wp:attachment":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/media?parent=6533"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/categories?post=6533"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/tags?post=6533"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}