← Back to Skills Library

Azure Active Directory

Information Technology > Access & Identify Management

Description

Microsoft Azure Active Directory (Azure AD) is a cloud-based identity and access management service. It helps organizations ensure that the right people have the right access to the right resources. With Azure AD, you can manage users and groups, implement single sign-on (SSO), and set up multi-factor authentication for added security. It also allows integration with on-premises Active Directory and offers advanced features like conditional access policies. Azure AD is not just about user management; it's a crucial component in securing your organization's data and applications in the cloud.

Stack

Microsoft Cloud

Expected Behaviors

LEVEL 1

Fundamental Awareness

At this level, individuals are expected to have a basic understanding of Azure Active Directory (AD) and its role in cloud computing. They should be familiar with the fundamental features of Azure AD and understand how it differs from on-premises Active Directory.

🌱
LEVEL 2

Novice

Novices should be able to perform basic administrative tasks in Azure AD such as creating and managing users and groups. They should also be able to configure single sign-on (SSO) and implement password management. A basic understanding of Azure AD Connect is also expected at this level.

🌍
LEVEL 3

Intermediate

Individuals at the intermediate level should be capable of implementing more complex features such as multi-factor authentication (MFA) and managing device identities. They should also be able to configure application access and have an understanding of Azure AD B2B and B2C.

LEVEL 4

Advanced

Advanced users should be proficient in implementing conditional access policies and managing Azure AD using various tools like Azure AD Portal, PowerShell, and Graph API. They should also be able to integrate on-premises Active Directory with Azure AD using Azure AD Connect and troubleshoot common issues.

🏆
LEVEL 5

Expert

Experts are expected to design and implement complex identity solutions using Azure AD. They should be able to secure Azure AD by implementing advanced security features and optimize its performance and scalability. Developing custom solutions using Azure AD Graph API is also expected at this level.

Micro Skills

LEVEL 1

Fundamental Awareness

Recognizing the purpose and benefits of Azure AD
Identifying the key components of Azure AD
Understanding the difference between Azure AD and traditional on-premises AD
Awareness of user and group management in Azure AD
Knowledge of single sign-on (SSO) feature
Understanding the role of Azure AD in identity and access management
Understanding the limitations of on-premises AD compared to Azure AD
Recognizing the additional features provided by Azure AD
Awareness of the scalability and accessibility advantages of Azure AD
Understanding how Azure AD supports cloud-based applications
Recognizing the role of Azure AD in Microsoft 365 services
Awareness of Azure AD's role in securing cloud resources
🌱
LEVEL 2

Novice

Understanding the user creation process in Azure AD
Navigating to the user creation page in Azure AD
Filling out the user details form in Azure AD
Saving and verifying the new user in Azure AD
Understanding the role assignment process in Azure AD
Navigating to the role assignment page in Azure AD
Selecting a user and assigning a role in Azure AD
Verifying the role assignment in Azure AD
Understanding the group creation process in Azure AD
Navigating to the group creation page in Azure AD
Filling out the group details form in Azure AD
Saving and verifying the new group in Azure AD
Adding and removing users from the group in Azure AD
Understanding the process of adding and removing users from groups in Azure AD
Navigating to the group management page in Azure AD
Adding a user to a group in Azure AD
Removing a user from a group in Azure AD
Verifying the changes in Azure AD
Understanding the concept of SSO in Azure AD
Navigating to the SSO configuration page in Azure AD
Configuring SSO settings for a web application in Azure AD
Testing and verifying SSO functionality in Azure AD
Understanding how to test SSO in Azure AD
Performing a test sign-in with SSO in Azure AD
Verifying the results of the SSO test in Azure AD
Understanding common SSO issues in Azure AD
Identifying symptoms of SSO issues in Azure AD
Applying solutions to common SSO issues in Azure AD
Understanding password policies in Azure AD
Navigating to the password policy configuration page in Azure AD
Setting password policies in Azure AD
Verifying the password policies in Azure AD
Understanding the concept of self-service password reset in Azure AD
Navigating to the self-service password reset configuration page in Azure AD
Enabling self-service password reset in Azure AD
Testing and verifying self-service password reset in Azure AD
Understanding password protection in Azure AD
Navigating to the password protection configuration page in Azure AD
Configuring password protection settings in Azure AD
Verifying the password protection settings in Azure AD
Understanding the installation process of Azure AD Connect
Downloading the Azure AD Connect installer
Running the Azure AD Connect installer
Completing the Azure AD Connect installation
Understanding the configuration process of Azure AD Connect for directory synchronization
Navigating to the Azure AD Connect configuration page
Setting up directory synchronization in Azure AD Connect
Verifying the directory synchronization setup in Azure AD Connect
Understanding how to monitor and troubleshoot Azure AD Connect
Using the Azure AD Connect health dashboard
Identifying common Azure AD Connect issues
Applying solutions to common Azure AD Connect issues
🌍
LEVEL 3

Intermediate

Understanding the concept of MFA
Configuring MFA settings
Enabling MFA for users
Managing MFA service settings
Troubleshooting common MFA issues
Understanding device identity management
Registering devices in Azure AD
Managing device settings
Configuring device-based conditional access policies
Troubleshooting device identity issues
Understanding application access and permissions
Adding and configuring applications in Azure AD
Assigning users and groups to applications
Managing application access settings
Troubleshooting application access issues
Understanding the concepts of B2B and B2C
Creating and managing B2B and B2C tenants
Configuring user flows in B2C
Inviting external users with B2B collaboration
Troubleshooting common B2B and B2C issues
LEVEL 4

Advanced

Understanding the concept of conditional access
Creating and managing conditional access policies
Configuring conditions for conditional access policies
Applying conditional access policies to apps and users
Navigating and utilizing Azure AD Portal
Executing basic commands in PowerShell for Azure AD management
Understanding and using Graph API for Azure AD
Monitoring Azure AD health and performance
Understanding the architecture of Azure AD Connect
Installing and configuring Azure AD Connect
Synchronizing on-premises AD with Azure AD
Troubleshooting Azure AD Connect issues
Identifying common issues in Azure AD
Using Azure AD logs for troubleshooting
Resolving user sign-in issues
Fixing synchronization issues between on-premises AD and Azure AD
🏆
LEVEL 5

Expert

Knowledge of different identity architectures
Designing Azure AD for complex scenarios
Capacity planning for Azure AD
Designing Azure AD for high availability
Configuring Azure AD Connect for hybrid scenarios
Implementing federation with Azure AD
Azure AD integration with Office 365
Azure AD integration with Azure resources
Understanding Azure AD Identity Protection
Implementing Azure AD Privileged Identity Management
Understanding PIM concepts
Configuring PIM
Monitoring and auditing PIM
Understanding risk detections
Configuring risk-based policies
Remediating risks
Understanding password protection
Configuring password protection
Monitoring password protection
Understanding Azure AD performance metrics
Using monitoring tools
Troubleshooting performance issues
Understanding scalability limits
Optimizing for large number of objects
Monitoring and managing performance
Understanding Azure AD's built-in redundancy
Monitoring service health
Understanding disaster recovery concepts
Configuring disaster recovery
Monitoring and managing disaster recovery
Knowing the basics of Azure AD Graph API
Working with Azure AD Graph API
Securing Azure AD Graph API
Understanding OData queries
Building complex queries
Testing queries
Authenticating with Azure AD Graph API
Calling Azure AD Graph API from an application
Securing an application with Azure AD
Understanding common errors
Debugging Azure AD Graph API
Resolving issues

Skill Overview

  • Expert4 years experience
  • Micro-skills142
  • Roles requiring skill4

Sign up to prepare yourself or your team for a role that requires Azure Active Directory.

LoginSign Up