In my previous blog post, I explained how to use Entra ID lifecycle workflow to trigger actions based on user attribute changes. You can find the step-by-step guide here: Configure Entra ID lifecycle workflow to trigger mover task on user profile changes. In that post, I used an attribute assigned to a set of users to define the workflow scope. Now, we can also use Custom Security Attributes…
The Entra ID lifecycle workflow is a feature of Microsoft Entra ID identity governance and Microsoft Entra Suite licences that helps automate the Joiner, Mover, and Leaver lifecycle processes. Within a lifecycle workflow, configured tasks are triggered when execution conditions are met. There are three types of triggers available in an Entra ID lifecycle workflow:
Attribute changes – The…
In my previous blog post, I discussed what Entra ID Administrative Units are and how they can be implemented to limit the administrative scope of a role to a specific logical group. If you haven’t read it yet, I recommend checking it out before continuing with this article: https://www.rebeladmin.com/step-by-step-guide-entra-id-administrative-unit/.
In that post, I also presented a use case…
If you have worked with Microsoft Active Directory before, you may be familiar with ‘Organizational Units‘. These units allow you to logically group users, groups, or computers into a single administrative scope. By using Organizational Units, you can delegate administrative tasks and permit specific users to manage the resources within that unit.
What about the cloud? Even in the cloud, we…


