Azure ● Sealed v1.0

Entra ID PIM

Azure AD Privileged Identity Management eligible role assignments

What it does

Discovers Azure AD Privileged Identity Management (PIM) eligible role assignments. Identifies JIT access paths for users and groups across directory roles.

How the app exposes it

The module feeds into the ACQI app's dedicated results view. From there, conflicts, dependencies, and readiness scores roll up into the deal workspace.

Route in app:
/discovered/azure-pim

Outputs

Each module produces a CSV with readiness and risk scores, evidence-source counts, and last-seen timestamps. The exact columns vary by module — the app's results view shows the live schema.